Security

Wanted. Top infosec pros willing to defend Britain on shabby salaries

GCHQ job ads seek top talent with bottom-end pay packets


While the wages paid by governments seldom match those available in the private sector, it appears that the UK's intelligence, security and cyber agency is a long way short of being competitive in its quest for talent.

In a recent job advert, the Government Communications Headquarters (GCHQ) sought a lead cyber security expert and advertised annual pay of £41,935 ($54,408). It's also looking for a senior cyber security expert willing to sign up for £50,937 ($66,085). The role is in the National Cyber Security Centre, based in the UK capital, so there's an additional £6,250 ($8,109) London Allowance, and the possibility of a small "skills payment."

"The roles are practical, technical roles that may involve software development, system configuration and testing, or software and hardware security analysis," the advert reads "You will engage with partners and user groups externally to gain insights and collaborate on developing solutions."

Candidates are also expected to show skills in hardware and software security, system and device security architectures, be familiar with commodity IT platforms and networking kit, and possess some cryptography skills.

GCHQ may struggle to find willing recruits, as less demanding private sector jobs offer significantly superior pay.

For example, entry-level workers joining consumer goods giant Unilever's cyber security graduate training scheme with no commercial security experience get a base pay of £35,000 ($45,400), plus gym membership and a pension. For more senior roles – like the IT security manager role at aerospace outfit BAE – the upper end of the salary limit is around £75,000 ($97,000) per annum. Cisco business unit Splunk will match that for the right security analyst.

As you'd expect for a security job – where there is a critical skills shortage – the sky's the limit with some firms. Six-figure salaries are not uncommon.

GCHQ does have one thing few employers can match: the chance to defend one’s country from the insides of Britain's cyber security hub. It seems a high price to pay for not being able to tell friends and family what you do for a living.

If the UK wants to get the best security talent, it might be worth paying market rates. Based on this listing that's just not happening. If anyone is interested the deadline for applications is Monday November 4. ®

Send us news
116 Comments

Just how private is Apple's Private Cloud Compute? You can test it to find out

Also updates bug bounty program with $1M payout

Five Eyes nations tell tech startups to take infosec seriously. Again

Only took 'em a year to dish up some scary travel advice, and a Secure Innovation … Placemat?

Windows Themes zero-day bug exposes users to NTLM credential theft

Plus a free micropatch until Redmond fixes the flaw

Sophos to snatch Secureworks in $859M buyout: Why fight when you can just buy?

Private equity giant Thoma Bravo adds another trophy to its growing collection

The billionaire behind Trump's 'unhackable' phone is on a mission to fight Tesla's FSD

Dan O'Dowd tells El Reg about the OS secrets and ongoing clash with Musk

Millions of Android and iOS users at risk from hardcoded creds in popular apps

Azure Blob Storage, AWS, and Twilio keys all up for grabs

Beijing claims it's found 'underwater lighthouses' that its foes use for espionage

Release the Kraken!

Perfctl malware strikes again as crypto-crooks target Docker Remote API servers

Attacks on unprotected servers reach 'critical level'

Merde! Macron's bodyguards reveal his location by sharing Strava data

It's not just the French president, Biden and Putin also reportedly trackable

Brazen crims selling stolen credit cards on Meta's Threads

The platform 'continues to take action' against illegal posts, we're told

AWS Cloud Development Kit flaw exposed accounts to full takeover

Remember Bucket Monopoly? Yeah, it gets worse

Emergency patch: Cisco fixes bug under exploit in brute-force attacks

Who doesn't love abusing buggy appliances, really?