The pathway
How you actually get there, here
How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.
- 1
Junior/Associate SOC Analyst
1-2 yearsSkills to master
- Mastering alert triage, understanding basic network traffic, initial host analysis, following incident response playbooks, and meticulous documentation.
You're ready to move on when
- Consistently closing Tier 1 alerts within SLA with minimal supervision.
- Demonstrating a clear understanding of common attack vectors and basic security tools.
- Actively asking 'why' and showing initiative to learn more about incidents beyond the playbook.
- 2
IT Support / Network Engineer with Security Focus
2-3 yearsSkills to master
- Deepening understanding of security principles, transitioning from 'fixing' to 'securing', learning SIEM/EDR tools, and understanding incident response processes.
You're ready to move on when
- Proactively identifying security risks in IT operations and suggesting improvements.
- Taking on security-related projects or tasks within an IT role.
- Pursuing security certifications and demonstrating a passion for cyber defence.
- 3
Security Consultant (Junior Level)
1-2 yearsSkills to master
- Translating theoretical security knowledge into practical application, understanding different client environments, and gaining exposure to various security tools and methodologies.
You're ready to move on when
- Successfully delivering security assessments or small projects for clients.
- Developing strong analytical and problem-solving skills in diverse technical contexts.
- Seeking to move from project-based work to a dedicated, in-house operational security role.