The pathway
How you actually get there, here
How you become one varies far more by country than what one does. This is the UK route. Most people take one of these ways in; the right one depends on where you're starting from.
- 1
Security Analyst (International)
2-3 yearsSkills to master
- Independent incident investigation and resolution, basic SIEM query and rule creation, understanding of common attack vectors, initial threat hunting techniques.
You're ready to move on when
- Consistently resolves routine security incidents without supervision.
- Proactively identifies areas for improvement in existing detection rules.
- Demonstrates a keen interest in deep-dive technical analysis and threat intelligence.
- Successfully mentors new joiners on basic SOC procedures.
- 2
Cloud Security Engineer
3-4 yearsSkills to master
- Deep expertise in cloud platforms (AWS/Azure) security, IaC security, container security, cloud-native security tools, and integrating security into DevOps pipelines.
You're ready to move on when
- Has successfully secured complex cloud environments and applications.
- Can articulate cloud-specific attack vectors and defence strategies.
- Is proficient in cloud security posture management (CSPM) tools.
- Has experience integrating security into CI/CD pipelines.
- 3
Network Security Engineer
3-5 yearsSkills to master
- Advanced knowledge of network protocols, firewall management, intrusion detection/prevention systems, network forensics, and secure network architecture.
You're ready to move on when
- Can perform deep-packet inspection and network forensic analysis.
- Has designed and implemented complex network segmentation strategies.
- Is an expert in configuring and optimising network security devices.
- Understands how network vulnerabilities can be exploited in an international context.