The pathway
How you actually get there, here
How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.
- 1
IT Support Specialist / Helpdesk Analyst
2-3 years in IT support, then 1-2 years as a Junior Security Analyst.Skills to master
- Strong troubleshooting skills, understanding of user behaviour, basic networking, and a keen interest in security incidents beyond just 'fixing' the immediate problem.
You're ready to move on when
- Proactively identifying and escalating suspicious user activities (e.g., repeated password resets, unusual login times).
- Taking initiative to learn about phishing techniques and malware.
- Demonstrating an understanding of basic security principles in your daily work.
- 2
Junior Security Analyst
1-2 years in a junior security role.Skills to master
- Mastering L1 alert triage, basic vulnerability scanning, understanding of security playbooks, and clear incident documentation under supervision.
You're ready to move on when
- Consistently closing L1 tickets within SLA with minimal errors.
- Demonstrating a desire to understand the 'why' behind security incidents, not just the 'how'.
- Taking on more complex tasks and showing initiative to learn new tools.
- 3
Network Engineer / System Administrator
3-4 years in network or systems administration, then a dedicated move into security.Skills to master
- Deep understanding of network architecture, operating system internals, server hardening, and a shift in mindset from 'keeping systems running' to 'keeping systems secure'.
You're ready to move on when
- Actively implementing security best practices in your admin work (e.g., least privilege, secure configurations).
- Proactively identifying network vulnerabilities and proposing solutions.
- Showing a strong interest in threat detection and incident response.