Cybersecurity career ladder
5 levels, from Security Analyst to Principal Security Engineer. Each one is rated on the same 39 skills — what changes between the rungs is how good you have to be at each. A security ladder from analyst to principal engineer, covering detection and response, vulnerability management, identity and access, cloud posture, secure architecture, and governance and risk.
- Level 1 of 5
Security Analyst
Monitors alerts and works incident playbooks under supervision.
Read the job description - Level 2 of 5
Senior Security Analyst
Investigates and closes incidents independently end to end.
Read the job description - Level 3 of 5
Security Engineer
Builds and hardens security controls across a domain.
Read the job description - Level 4 of 5
Senior Security Engineer
Owns a domain and leads response to major incidents.
Read the job description - Level 5 of 5
Principal Security Engineer
Sets security architecture and strategy across the organisation.
Read the job description
- Threat Operations 6 skills
- Exposure Management 5 skills
- Identity and Access 4 skills
- Secure Architecture 5 skills
- Governance and Risk 5 skills
- Certifications 5 certifications
- Delivery 4 skills
- Craft 3 skills
- Communication 4 skills
- Leadership 3 skills
Import the whole ladder
One click adds Cybersecurity to your org as a department: all 39 skills, with the mastery expected at each of your 5 career levels.