The pathway
How you actually get there, here
How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.
- 1
Senior Security Analyst (L3)
3-5 yearsSkills to master
- Leading complex incidents, proactive threat hunting, designing initial detection rules, and mentoring junior analysts.
You're ready to move on when
- Consistently leading major incident response efforts with positive outcomes.
- Successfully authoring and deploying high-fidelity detection rules.
- Demonstrable mentorship of junior team members, resulting in their growth.
- Proactively identifying and addressing security gaps without direct instruction.
- 2
Security Engineer (from a different specialism)
5-7 yearsSkills to master
- Deep understanding of security architecture, secure coding practices, and infrastructure security, with a strong desire to specialise in detection.
You're ready to move on when
- Successfully designing and implementing secure systems from the ground up.
- Strong scripting skills and experience with automation.
- A proven interest in offensive security or threat intelligence.
- Ability to translate architectural knowledge into detection opportunities.
- 3
Consultant (Cyber Security)
6-8 yearsSkills to master
- Broad exposure to various security domains, strong client-facing communication, and experience designing security programmes for different organisations.
You're ready to move on when
- Successfully delivering complex security projects for multiple clients.
- Excellent communication and presentation skills, especially to executive audiences.
- Adaptability to different technical environments and security challenges.
- A desire to move from advisory to hands-on, in-house defence building.