Security consultants writing their own pay cheques

Hourly rates soar as demand grows...

By Will Sturgeon, 4 October 2005 17:00

NEWS Pay for qualified security consultants has soared over the past year as budgets return and demand grows around the critical issues of application and system security.

On average, security consultants are currently charging 25 per cent more year-on-year, cashing in on demand in areas such as application testing, compliance and mobile device management as well as emerging technologies such as VoIP and Wi-Fi.

Skills such as penetration testing, computer forensics and ethical hacking are also increasingly in demand. With too few qualified consultants and high demand for their time, it is a situation in which the lucky few can charge a premium for their services.

According to research from the Association of Technology Staffing Companies (ATSCo), this has seen the average hourly rate for security consultants jump from £40 in 2004 to £50 this year.

Rob Chapman, founder of the Training Camp UK, said he isn't surprised by this situation as his company, like other training companies, is seeing huge demand among techies looking to reskill in lucrative areas of information security.

Chapman said this security 'gold rush' is resulting in packed classrooms for courses such as CISSP (certified information systems security professionals), certified ethical hacking and computer forensics.

Chapman said: "A lot of the people taking these courses aren't from a security background. Often they are professionals from other areas of the IT industry looking to learn these skills."

Universities are also waking up to the potential of training individuals in these areas.

Ann Swain, CEO of ATSCo, who conducted the research, said the elevation of data security issues to a board level consideration in the compliance age has enabled consultants to demand fatter pay packets.

Swain said a number of high-profile security breaches at high street names had forced companies to consider the issue of their own data integrity.

Comments

There are 2 comments. Join the discussion

  1. 1. anonymous

    I am the one of people who is from networking area, not from a security background and is seeking to learn security skills. I’ve been looking into getting CISSP. With my current job, I won’t have any experiences or people in order to get an endorsement. What would you suggest to people like me, where to start or how to go about pursuing that goal?

    Thanks!

  2. 2. anonymous

    I would advise getting plugged in to a local security group. You can start by looking for local ISC2, ISACA, or SANS meetings, and then build from there.

Post your comment

In order to post a comment you need to be registered and logged in.

Log in or create your silicon.com account below

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy.

Questions about membership? Find the answers in the Membership FAQ