United Kingdom · Technical roles · Mid-Level (2-5 years)

Security Assistant

Here is the whole job, in plain words. What it is, a real day, what you decide, how you're judged, how people get here and where they go next. Then the part no course gives you: twelve AI tutors who learn your work.

  • Experience bandMid-Level (2-5 years)
  • Direct reportsNo direct reports
  • Reports toSecurity Analyst I
  • UK framework levelUsually a coordinator, or early in a professional job

Also advertised as Security Operations Assistant · Access Management Specialist · Junior Security Analyst

Built on an analysis of 43,079 real UK job descriptions · grounded in qualifications employers recognise

Start with a free Future Fluency check, tuned to Security Assistant

Ten quick questions, one per Future Fluency, asked against this role rather than a generic one. About five minutes, and no card.

Start the check, free

1What this role really is

This isn't just about ticking boxes; it's about being the reliable pair of hands that keeps our digital doors locked and our users safe. You'll be the person who makes sure everyone has the right access—no more, no less—and that those annoying phishing emails get dealt with quickly. Think of yourself as the frontline defender, making sure the day-to-day security operations run smoothly, allowing the senior team to focus on bigger threats. It’s a crucial role, honestly, because if you mess up, things can get pretty messy for everyone else.

2What you'd actually use

The tools this job runs on, and how well you'd need to know each one.

ServiceNow / JiraIntermediate

Creating, updating, and triaging security tickets (access requests, phishing reports, incident tracking). You'll follow existing workflows and help refine them for efficiency.

Azure Active Directory / OktaIntermediate

Performing user provisioning and deprovisioning, handling routine group membership changes, and password resets following strict procedures. You'll manage access roles.

Microsoft Sentinel / SplunkIntermediate

Monitoring pre-configured dashboards for alerts, escalating notable events, and running basic KQL/SPL queries to investigate low-level alerts. You'll help tune rules.

Tenable.io / Qualys VMDRIntermediate

Reviewing completed scan reports, identifying and ticketing new vulnerabilities, configuring and scheduling basic vulnerability scans, and tracking remediation.

Confluence / NotionIntermediate

Updating existing documentation like runbooks and contact lists, formatting and publishing meeting notes, and creating new documentation for processes you manage.

CrowdStrike Falcon / SentinelOneIntermediate

Viewing endpoint alerts, checking agent health, and investigating basic EDR alerts. You'll be able to isolate a host from the network using the console when needed.

3What you get to decide, and how that grows

Power in a job isn't your title. It's what you're allowed to decide. Here's how it grows as you move up.

The choiceComing inWhere you are nowThe step above
User Access Provisioning/DeprovisioningPerforms actions only under direct supervision, all changes reviewed.Independently executes routine access changes based on approved tickets and documented procedures; escalates complex or unusual requests.Designs and implements access control policies; approves non-standard access requests; audits access configurations.
Phishing Email Triage & EscalationFlags all suspicious emails for review by a senior team member.Independently analyses and closes obvious spam/known safe emails; escalates genuinely suspicious or novel threats to a Security Analyst I.Develops new phishing detection rules; leads investigations into sophisticated campaigns; trains junior staff on triage techniques.
Security Alert ResponseNotifies supervisor of any triggered alert.Follows documented runbooks to investigate and respond to known alert types; escalates alerts requiring deeper investigation or not covered by existing playbooks.Tunes SIEM rules to reduce false positives; develops new runbooks for emerging threats; leads initial incident containment.
Vulnerability Management TrackingRecords new vulnerabilities identified by scans.Creates tickets for identified vulnerabilities, assigns to asset owners, and tracks remediation progress; escalates stalled tickets.Prioritises vulnerabilities based on risk; validates remediation efforts; reports on overall vulnerability posture to leadership.

4How you'll be judged

The scoreboard, honestly: the hard targets, how often each one is actually looked at, and the quiet human signals that never make it onto a dashboard.

Mean Time to Acknowledge (MTTA) for Access Requests
How quickly you pick up and start working on new access requests once they land in your queue.
Target · <2 hours

If 20 access requests come in, and you acknowledge 18 of them within 2 hours, that's a good sign. We're looking for consistent, quick responses to keep our users happy and productive.

Phishing Triage Accuracy
The percentage of user-reported phishing emails you correctly identify as malicious or benign, without false positives or negatives.
Target · 98%+

Out of 100 suspicious emails you analyse, you correctly categorise 99 of them. That means you didn't miss a real threat and didn't waste time on obvious spam that should have been closed quickly.

User Access Review (UAR) Completion Rate
The percentage of assigned user access review tasks that you complete by their deadlines.
Target · 100%

Every quarter, you're given a list of 50 accounts to review their permissions. You complete all 50 reviews, documenting your findings and any changes, before the deadline. This is non-negotiable for compliance.

Vulnerability Remediation Ticket Tracking
The percentage of assigned vulnerability tickets that you track and follow up on until they are closed, ensuring asset owners are doing their bit.
Target · 95%+

You're tracking 30 vulnerability remediation tickets. You actively follow up on 29 of them, making sure they're not forgotten and pushing for their resolution. The one you missed might be a valid exception, but we want to see you on top of almost everything.

Adherence to Security Procedures
Consistently following documented runbooks and established security procedures for all tasks, especially during incident response or access provisioning.
  • Incident reports show all steps were followed
  • audit trails for access changes match documented processes
  • peer reviews confirm procedural compliance
  • no shortcuts taken, even under pressure.
Quality of Documentation and Record-Keeping
Maintaining clear, concise, and up-to-date records for all security activities, including incident timelines, access changes, and process updates.
  • Your incident tickets are easy to understand and contain all necessary details
  • runbooks you update are accurate and helpful for others
  • audit requests for historical data are easily fulfilled from your records.
Proactive Problem Identification
Spotting potential issues or inefficiencies in security operations before they become bigger problems, and proposing sensible solutions.
  • You flag a recurring issue with a specific type of phishing email and suggest a new rule
  • you notice a common mistake in access requests and propose a template change
  • you highlight a gap in a runbook before it's needed.
Effective Communication with Users and Internal Teams
Communicating clearly and professionally with users who have security queries or issues, and providing timely updates to internal teams.
  • Users give positive feedback on your helpfulness
  • you provide clear, jargon-free explanations
  • you keep the IT Service Desk informed of ongoing security incidents
  • your emails are easy to understand and get the point across.

5Would you like it

The honest version. What people enjoy, and what grinds them down.

What people enjoy
Protecting the Organisation

You get a genuine sense of satisfaction from knowing your meticulous work directly contributes to keeping the company safe from cyber threats. Closing a phishing campaign or correctly revoking access for a leaver feels like a small victory every time.

Successfully identifying and blocking a sophisticated phishing campaign before anyone clicks, or ensuring a critical vulnerability is tracked to remediation, gives you a real buzz.

Order and Structure

You thrive in environments where there are clear processes, runbooks, and checklists to follow. The idea of bringing order to potential chaos, especially during an incident, is deeply satisfying. You enjoy the systematic nature of security operations.

Organising a messy queue of access requests into a manageable, prioritised list, or meticulously documenting an incident timeline, feels like a job well done.

Continuous Learning & Improvement

While much of the role is process-driven, you're always keen to understand the 'why' behind the 'what'. You enjoy learning about new threats, tools, and techniques, and finding small ways to make existing processes better or more efficient.

After dealing with a new type of malware, you'll spend some extra time researching its behaviour or suggesting a small tweak to a runbook to handle it better next time.

What frustrates people
  • Chasing people for information or action on security tasks.
  • Dealing with users who bypass security procedures or click on obvious phishing links.
  • The sheer volume of low-priority alerts that need to be triaged.
  • Updating documentation when you'd rather be doing something more 'exciting'.
  • Being seen as a 'no' person or a blocker by other departments.
  • The constant need to stay updated on new threats and technologies.
What this role does not give you
  • A quiet, predictable routine with no urgent interruptions.
  • Constant greenfield project work or building things from scratch.
  • Immediate, high-level strategic decision-making authority.
  • A role where you're always the 'hero' and get public recognition for every task.
  • A job where you never have to deal with legacy systems or messy data.

6Who you work with

Your work directly underpins our operational security posture. Get it right, and our systems are secure, access is managed, and users are protected from common threats. Get it wrong, and we're looking at potential security incidents, compliance failures, and a loss of trust across the business. You're the bedrock of our day-to-day defence, honestly.

Inside the business
  • IT Service Desk (for incident handovers and user support)
  • HR Operations (for onboarding and offboarding access requests)
  • Departmental Managers (for approving user access and understanding security policies)
  • Security Analyst I and II (for escalations and collaboration on investigations)
  • Internal Audit team (they'll be checking your work, so good documentation is key)
Outside the business
  • Security software vendors (for basic support queries or understanding new features)
  • External auditors (occasionally, they might review your work on access controls)

7What you need before you start

Not a wish list. The things you would be expected to already have.

  • At least 2 years of experience in an IT support, helpdesk, or junior security role, where you've regularly dealt with user access, basic troubleshooting, or ticket management.
  • A solid understanding of IT fundamentals, including operating systems (Windows, some Linux), basic networking, and common applications.
  • Demonstrable experience following detailed technical instructions or runbooks accurately and consistently.
  • Proven ability to communicate clearly, both in writing and verbally, with technical and non-technical colleagues.
  • A keen eye for detail and a methodical approach to problem-solving, even when under pressure.

8What to practise next

Where the job is going, and what to do about it starting this week.

Advanced SIEM Querying (KQL/SPL)

While you currently run basic queries, the ability to write more complex KQL (for Microsoft Sentinel) or SPL (for Splunk) queries will allow you to proactively hunt for threats, investigate incidents more thoroughly, and build custom dashboards that provide real insight, not just noise. This moves you from reactive to proactive.

Aggregations and joins · Time-series analysis · Regular expressions for pattern matching · Building custom functions and macros · Optimising queries for performance

  • This month: Dedicate an hour a day to practicing KQL/SPL queries in a test environment, focusing on different data sources.
  • Month 2: Try to recreate a simple dashboard using only queries you've written yourself.
  • Month 3: Work with a Security Analyst I to help them build a more complex query for an ongoing investigation.
  • Month 4: Explore advanced features like alert suppression logic and custom parsing.

Quick win: Find a common alert and try to write a query that provides more context than the default alert. Can you pull in user details or recent login attempts with a simple join?

Threat Intelligence Consumption & Application

You'll move beyond just reading summaries to actively consuming raw threat intelligence feeds, understanding how to extract Indicators of Compromise (IOCs), and applying them to our detection rules or vulnerability prioritisation. This means understanding the 'who, what, and how' of our adversaries.

Different types of threat intelligence (strategic, · IOC types (IPs, domains, hashes, TTPs) · Threat actor groups and their motivations · Integrating TI into SIEM rules and EDR policies · Evaluating TI source reliability

  • This month: Follow 2-3 reputable threat intelligence blogs or Twitter feeds daily.
  • Month 2: Identify 5-10 IOCs from a recent report and try to search for them in our SIEM logs.
  • Month 3: Work with a senior analyst to understand how they use TI to tune detection rules.
  • Month 4: Present a summary of a recent threat report to the team, highlighting key takeaways.

Quick win: Subscribe to a daily security newsletter (e.g., SANS Internet Storm Centre, The Hacker News) and commit to reading it every morning. Just staying informed is a great start.

9Staying current once you are in

What people here do to keep up
  • Regularly participate in security webinars, industry conferences (even virtual ones), and local meetups to stay current with emerging threats and technologies.
  • Engage with online security communities (e.g., Reddit's r/cybersecurity, specific Discord channels) to learn from peers and share knowledge.
  • Dedicate time each week to hands-on labs or personal projects using free security tools or cloud sandbox environments to practice new skills.
  • Read industry publications and blogs (e.g., SANS, KrebsOnSecurity) to keep up with the latest breaches, vulnerabilities, and best practices.
  • Actively seek feedback from your manager and senior colleagues, and use it to identify areas for personal and professional growth.

10How the AI economy is changing work like this

Before we ask anything of you, here's what we can already say about AI and work of this kind:

The new skill this role is being asked for: Basic Automation Scripting (e.g., PowerShell, Python)

Many routine security tasks, like checking logs, generating reports, or even basic user provisioning, are ripe for automation. Knowing how to write simple scripts will dramatically increase your efficiency and free you up for more complex work. Honestly, if you're still doing repetitive tasks manually in 2-3 years, you'll be behind.

We'll only ever tell you what we can actually back up. No hype, no scare tactics.

The rising capability

Zavmo analysis

What's rising in its place

This is where the work is heading, and the higher pay with it. Get fluent here and the shift stops being a threat and starts being your edge.

Basic Automation Scripting (e.g., PowerShell, Python)

Many routine security tasks, like checking logs, generating reports, or even basic user provisioning, are ripe for automation. Knowing how to write simple scripts will dramatically increase your efficiency and free you up for more complex work. Honestly, if you're still doing repetitive tasks manually in 2-3 years, you'll be behind.

  • Variables and data types
  • Conditional logic (if/else statements)
  • Loops (for/while)
  • Interacting with APIs (e.g., for security tools)
  • Error handling basics

Cloud Security Fundamentals (Azure/AWS/GCP)

More and more of our infrastructure and data are moving to the cloud. Understanding the basics of cloud security—how access works, common misconfigurations, and cloud-specific threats—will become essential, even for operational roles. You can't secure what you don't understand, and the cloud is different from on-prem.

  • Shared Responsibility Model in the cloud
  • Identity and Access Management (IAM) in Azure/AWS
  • Cloud storage security (S3 buckets, Azure Blob sto
  • Basic cloud networking concepts (VPCs, security gr
  • Common cloud security threats (e.g., misconfigured

What you’ll use

Skills this role draws on

Technical

  • Incident Response Lifecycle (PICERL)
  • Access Control Principles
  • Vulnerability Management Process
  • Phishing Triage & Analysis
  • Security Metrics & Reporting Basics
  • Evidence Handling & Chain of Custody

The pathway

How you actually get there, here

How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.

  1. 1

    Security Support Assistant (L1)

    1-2 years

    Skills to master

    • Mastering runbook execution, accurate ticket management, basic alert monitoring, and meticulous documentation. You'd be proving your reliability and attention to detail.

    You're ready to move on when

    • Consistently hitting all SLAs for basic security tasks.
    • Requiring minimal supervision for routine activities.
    • Proactively identifying minor issues or areas for improvement.
    • Demonstrating a strong understanding of core security principles.
  2. 2

    IT Helpdesk / Service Desk Analyst

    2-3 years

    Skills to master

    • Excellent troubleshooting skills, strong customer service, managing a high volume of tickets, and a foundational understanding of IT systems and user access. You'd be bringing that user-facing experience.

    You're ready to move on when

    • Successfully resolving complex IT issues for users.
    • Experience with user account management and basic access controls.
    • A clear interest in security beyond general IT support.
    • Strong communication skills, especially under pressure.
  3. 3

    Junior Systems Administrator

    2-4 years

    Skills to master

    • Hands-on experience with server management, network configurations, and system patching. You'd understand the underlying infrastructure that needs securing, which is a huge plus.

    You're ready to move on when

    • Proficiency in managing Windows or Linux servers.
    • Experience implementing or auditing system configurations.
    • A proactive approach to system hardening and security best practices.
    • An eagerness to specialise in security operations.

11Where this role leads

The long view:Your journey starts here, but where it goes is really up to you. We're committed to supporting your growth, whether that's becoming a deep technical expert, leading a team, or even moving into a more strategic role. The security world is vast, and this role is a brilliant launchpad for a challenging and rewarding career.

Pay & demand

The figure is the median for full-time employees in the ONS occupation this job title codes to (Security guards and related occupations), from the April 2025 survey — about six months old when published, as ASHE always is. It is that occupation's middle, not this role's. Half earn more.

The ten Future Fluencies

Zavmo analysis

The credential is what you can do today. These are what keep you valuable.

A qualification proves you can do the job as it's defined today. These ten are what decide whether you're still the obvious person for it in five years. They're the capabilities employers are now writing into senior roles faster than people are learning them. Zavmo weaves them through whatever you study, so you come out with both: the credential and the fluency.

The highlighted ones are the Fluencies your role leans on hardest, from how Security Assistant is actually changing. In about two minutes, the free confidence check asks where you stand on each of the ten. That's the whole check, and it's what makes the plan yours rather than generic.

12The team that's yours

No two people are taught the same way. This is one-to-one, not one-to-many.

Zavmo is a hyper-personalised AI learning platform. Twelve virtual tutors, each with a different way of teaching, and one orchestration agent that picks the right one for the moment. So every single lesson is shaped around you, your role, and the way you learn. Not a course everyone sits through. A conversation built for you, and no one else.

…and nine more, matched to you after your first chat. Meet all twelve

13What it feels like

A conversation, not a course

Because your tutor knows your role, your projects and your last session, learning sounds like this. And it's different for every single person:

Networked systems securityLevel 3

Applied to your work in Security Assistant

The objective of this unit is to enable learners to identify network attacks and their sources, and to understand the function of security-related hardware and software. Learners will also explore organisational aspects of network security, including policies and procedures, and apply appropriate security measures to protect a network.

How the thinking builds
  1. Remember
  2. Understand
  3. Apply
  4. Analyse
  5. Evaluate
  6. Create
An illustration of a Zavmo lesson, built from this role’s own route. The unit, its objective and every criterion above are the awarding body’s own words, not an example.

One to one, not one to many

No two people run this the same way

A course is written once and handed to everyone. This is assembled around you, and keeps changing as it learns you. Five things it reads, and what each one changes.

  1. Your actual work Every lesson is taught against a live piece of your own work, not a worked example from a textbook.
  2. What you already know The first conversation finds your starting point, so you skip what you can already do and spend the time on what you cannot.
  3. The conditions you learn under Not a learning-styles quiz. The evidence does not support those. The dimensions the research does back, read once and used to shape the plan.
  4. How far you got last time It picks up mid-thought. The tutor knows what you said, what you struggled with, and what it asked you to try.
  5. Which tutor suits the moment Twelve of them, each for a different kind of thinking. The one who walks you through a first idea is not the one who stress-tests it.

See how you learn, free. Eight questions, no sign-up. A directional taster; the diagnostic inside Zavmo goes deeper and keeps adapting.

DemonstrateIllustration

Evidenced on your work in Security Assistant

You do not finish by watching something. You finish by showing it on the work you already do, against the measures this job is judged on.

  • Mean Time to Acknowledge (MTTA) for Access RequestsHow quickly you pick up and start working on new access requests once they land in your queue.If 20 access requests come in, and you acknowledge 18 of them within 2 hours, that's a good sign. We're looking for consistent, quick responses to keep our users happy and productive.<2 hours
  • Phishing Triage AccuracyThe percentage of user-reported phishing emails you correctly identify as malicious or benign, without false positives or negatives.Out of 100 suspicious emails you analyse, you correctly categorise 99 of them. That means you didn't miss a real threat and didn't waste time on obvious spam that should have been closed quickly.98%+
  • User Access Review (UAR) Completion RateThe percentage of assigned user access review tasks that you complete by their deadlines.Every quarter, you're given a list of 50 accounts to review their permissions. You complete all 50 reviews, documenting your findings and any changes, before the deadline. This is non-negotiable for compliance.100%
  • Vulnerability Remediation Ticket TrackingThe percentage of assigned vulnerability tickets that you track and follow up on until they are closed, ensuring asset owners are doing their bit.You're tracking 30 vulnerability remediation tickets. You actively follow up on 29 of them, making sure they're not forgotten and pushing for their resolution. The one you missed might be a valid exception, but we want to see you on top of almost everything.95%+
These are this job's own measures, with its own targets. Nothing is marked evidenced, because nobody has started this yet. Yours would fill in from the work you bring.

Your passport

This isn't a certificate you file away. It's a passport to the life you're designing.

Every credit you earn and every fluency you build adds up: evidence where it counts, carried with you. Zavmo keeps the map: where you are, where you're heading, and the next step, at your pace, around your life. From Security Assistant to Security Analyst I (L3), and whatever you decide comes after.

Level 3 · in progressAI Fluency→ Security Analyst I (L3)→ your design
Where this takes you

Your journey starts here, but where it goes is really up to you. We're committed to supporting your growth, whether that's becoming a deep technical expert, leading a team, or even moving into a more strategic role. The security world is vast, and this role is a brilliant launchpad for a challenging and rewarding career.

See Your Progress GrowIllustration
Security Assistant
  • Incident Response Lifecycle (PICERL)
  • Access Control Principles
  • Vulnerability Management Process
  • Phishing Triage & Analysis
  • Security Metrics & Reporting Basics
  • Evidence Handling & Chain of Custody
This is your Mind Palace on learn.zavmo.ai. Every skill above comes from this role's own record, not an example borrowed from another job. A node lights up when you evidence it, and what you build stays yours between jobs. That is the part a course cannot do.

14The detail, folded away

Everything else the record holds

The career branches in full, how AI is already showing up in the day-to-day, and the questions people ask about this job. Here when you want them, out of the way while you decide.

Where it leads next, rung by rung

Where it leads

The career path, and where it branches

Security Assistant is a start, not a ceiling. Each step below asks for new skills and hands back more autonomy.

  1. Security Analyst I (L3)

    2-3 years from Security Assistant

    You'll move from owning specific queues and tasks to actively analysing alerts, investigating low-level incidents, and helping to improve our security processes. It's a shift from 'doing' to 'thinking and doing'.

    • Advanced SIEM querying (KQL/SPL) for threat hunting.
    • Basic malware analysis and reverse engineering concepts.
    • Developing and tuning security detection rules.
    • Leading initial incident containment and eradication efforts.
Working with AI on the job

Working with AI

Where AI is starting to help

Let's be honest, a big chunk of security operations can feel a bit like Groundhog Day. Sifting through alerts, triaging emails, drafting reports – it's all essential, but it can be a real time sink. Good news: AI is here to take on the grunt work, freeing you up for the more interesting, human-centric parts of the job.

For a Security Assistant, AI isn't about replacing you; it's about making you incredibly efficient. Imagine having an intelligent co-pilot that handles the repetitive, low-value tasks, allowing you to focus your sharp mind on actual threats and problem-solving. This isn't future tech; it's happening now, and we're embracing it.

Phishing Triage Autopilot

Our AI automatically scans and analyses emails in the 'phish bucket'. It'll instantly close 70-80% of the obvious spam or known marketing emails, flagging only the truly novel and suspicious ones for your human review. You'll spend less time on junk and more on real threats.

Alert Correlation Engine

Instead of sifting through dozens of low-level logs and alerts, our AI-powered SIEM feature automatically groups related events into a single, high-confidence incident. It even provides a summary of the suspected attack chain, so you get context instantly, not after hours of digging.

Threat Intel Briefing Prep

Use an AI assistant to quickly scan and summarise the latest threat intelligence reports, vulnerability disclosures, and security news from countless sources. It'll give you a concise daily briefing, saving you hours of reading and helping you stay ahead of the curve.

Incident Report First Draft

After an incident, an AI tool can generate a structured report draft by pulling data from tickets, chat logs, and alert timelines. It populates key sections, leaving you to add the critical human context, analysis, and recommendations. Think of the time saved on initial write-ups!

Common questions

Common questions

How do you become a Security Assistant?

Common routes in include Security Support Assistant (L1) (1-2 years), IT Helpdesk / Service Desk Analyst (2-3 years) and Junior Systems Administrator (2-4 years). Times vary with prior experience.

Where can a Security Assistant progress to?

This role can lead on to Security Analyst I (L3) (2-3 years from Security Assistant), depending on the skills you build.

What level is a Security Assistant in the UK?

This role aligns to RQF Level 3 on the UK framework, a guide to the depth of qualification it maps to, not a hard entry bar.

What new skills matter most for a Security Assistant?

Increasingly, Basic Automation Scripting (e.g., PowerShell, Python) and Cloud Security Fundamentals (Azure/AWS/GCP). These are the areas where the higher-paid, future-proof work is heading.

The honest bit

You’ve started things before

Most of them were built for a room full of people who aren’t you. A cohort moves on whether or not your week allowed it, and by the third week the thing you’re behind on becomes the reason you stop opening it.

There’s no cohort here, and no timetable to fall behind. Before anything starts, Zavmo asks when you’re sharpest and how long you can realistically sit down for, then builds the sessions around those answers. A bad fortnight changes your pace. It doesn’t put you behind.

And you only pay once you start learning. Searching and planning are free, and you can cancel any time — so the cost of finding out is an afternoon, not a year.

What it costs

Less than one coaching session. Every month.

A single career-coaching hour costs more than a month of this, and it ends when the hour does. Zavmo doesn't. It's £70 a month, about £2.30 a day, for a companion that knows a Security Assistant, works on the job you actually do, and keeps going at your pace rather than a timetable's.

  • Searching and planning stay free. You only pay when you start learning.
  • Your credits are yours. Regulated, and they don't vanish when a subscription ends.
  • Cancel any time and billing stops. No notice period, no minimum term.

Your path, personalised

You have the map. Walking it is the part we do together.

This route runs to 7 national skill standards. That is a real journey.

Zavmo shapes a learning experience as unique as you are. It fits how you learn, your pace and the work you already do. Every step stays benchmarked to recognised national standards. That’s the plan for becoming a Security Assistant: personal to you, and it still counts. The first steps are free.

Independent research finds well-designed intelligent tutoring performs nearly as well as one-to-one human tutoring: VanLehn (2011), Educational Psychologist.

A private tutor in the UK averages £35–40 an hour . Zavmo is £70/month.

A real plan on learn.zavmo.ai: Ofqual-regulated units, credits, and a three-month run at your own pace.
Start free No commitment. See your first steps free.

15Where to go from here

Other roles at Level 3

Same depth of qualification, different job. Useful if the work appeals but this particular role does not.

Other roles in Technical roles

Stay in the field you know and move sideways rather than up.

If you leave this industry

The skills you'll gain as a Security Assistant are highly transferable across almost any industry. Every company with a digital presence needs robust security operations. Whether you want to stay in tech, move into finance, healthcare, or government, your foundational security knowledge will be in demand.

Not sure this is the right direction?

Work out what you actually want from work first, then come back and see which roles fit it. Takes about ten minutes.

This role profile is © 2026Growth Engineering Technologies Ltd. Built from UK occupational standards and regulated qualification data, and written for Zavmo.

You're not behind. You're right on time. The shift is only just beginning. Your role won't look the same in two years. Be the one who leads the change, not the one it happens to. Build my plan, free Here's the first ten minutes: a 2-minute confidence check → your personalised roadmap → meet the tutors matched to you. No card, cancel any time. No card. Build your plan, see your roadmap and meet the twelve tutors matched to you. All free. When you're ready to start learning, it's £70 a month, billed monthly. Cancel any time and billing stops.