Cybersecurity Salary Benchmarks

Market ranges by role, level, and location. Based on BLS OES, CyberSeek, and ISC2 data.

Experience Level

Location Market

Sort By

Filter Roles (click to filter, empty = show all)

Bar widths are relative to the current filtered set. 19 roles shown.

CISO

Typical entry: 12+ yrs

mid
$230k$280k mid$340k
CISSPCISMCRISC

Security Architect

Typical entry: 7+ yrs

mid
$140k$165k mid$195k
CISSPSABSATOGAFCCSP

Cloud Security Engineer

Typical entry: 3+ yrs

mid
$120k$145k mid$170k
AWS Security SpecialtyCCSPAZ-500GCP Security

Security Program Manager

Typical entry: 5+ yrs

mid
$118k$145k mid$172k
CISSPCISMPMPCRISC

Application Security Engineer

Typical entry: 2+ yrs

mid
$115k$140k mid$165k
GWAPTCSSLPOSWEBSCP

DevSecOps Engineer

Typical entry: 3+ yrs

mid
$115k$140k mid$165k
AWS Security SpecialtyCKSCSSLPSecurity+

Security Engineer

Typical entry: 2+ yrs

mid
$110k$130k mid$155k
Security+CISSPAWS Security SpecialtyCCSP

OT/ICS Security Engineer

Typical entry: 3+ yrs

mid
$105k$130k mid$158k
GICSPCSSASecurity+ISA/IEC 62443

IAM Engineer

Typical entry: 2+ yrs

mid
$100k$122k mid$148k
Security+CISSPSailPoint IdentityNowOkta Certified

Penetration Tester

Typical entry: 1+ yrs

mid
$95k$120k mid$145k
OSCPPNPTGPENOSCE

Malware Analyst

Typical entry: 2+ yrs

mid
$95k$118k mid$142k
GREMGCFEOSCP

Network Security Engineer

Typical entry: 2+ yrs

mid
$90k$112k mid$135k
CCNP SecuritySecurity+PCNSEGICSP

Incident Response Analyst

Typical entry: 1+ yrs

mid
$88k$108k mid$130k
GCIHGCFAGNFAEnCE

Threat Intelligence Analyst

Typical entry: 1+ yrs

mid
$88k$108k mid$130k
GCTICTIASecurity+GREM

Data Security Analyst

Typical entry: 1+ yrs

mid
$86k$108k mid$130k
CIPPCIPMCDPSESecurity+

Vulnerability Management Analyst

Entry-accessible

mid
$82k$100k mid$120k
Security+CySA+GEVAQualys VMDR

GRC Analyst

Entry-accessible

mid
$78k$95k mid$115k
CISACRISCCISMSecurity+

SOC Analyst

Entry-accessible

mid
$75k$90k mid$110k
Security+CySA+GCIAGCIH

Security Awareness Specialist

Entry-accessible

mid
$68k$84k mid$102k
Security+SSAPCISM

Current Market

National Average

+0% vs. national average

National baseline — everything not in High Cost or Above Average metros.

What Moves the Number

Pushes comp up

  • Security clearance (TS/SCI can add 20–40% at defense contractors)
  • Niche specialization — OT/ICS, malware reversing, CISO-track
  • Certs aligned to the role (OSCP for pentest, CISSP for architect)
  • FAANG or defense contractor employer vs. mid-market
  • Remote with High Cost market anchor

Pushes comp down

  • Strictly on-site in a low-tier metro
  • Compliance-only GRC vs. hands-on technical work
  • Nonprofit, government, or education sector (10–20% below private)
  • Under-credentialed for the stated level
  • Years-of-experience proxies that aren't skill-based

Data: BLS OES (May 2024), CyberSeek 2025, ISC2 Workforce Study 2025, Glassdoor, PayScale. Ranges = 25th–75th percentile. Updated annually.