The market for self-taught cyber talent has gone absolutely bonkers in 2026. I just placed three SOC analysts with no formal certs last month alone - each commanding salaries that would've been unthinkable even 18 months ago.
Not that long ago, you'd hit a hard ceiling without those blessed letters after your name. CISSP. CREST. Whatever.
But the skills gap has blown the doors wide open. Thing is, while employers are more willing than ever to consider non-traditional backgrounds, you still need to prove you can actually do the job.
As someone who's hired dozens of analysts and now helps place cyber talent across the UK market, I see both sides of this equation daily. The gap between what hiring managers say they want and what they'll actually accept is getting wider by the month.
The Portfolio Paradox
Most career advice tells candidates to "build a portfolio" - great advice if you're a web developer or graphic designer. Completely useless if you're trying to break into threat intelligence or security operations.
What exactly are you supposed to show? Screenshots of attacks you've mitigated? IOCs you've identified? Client network diagrams?
Of course not.
Instead, focus on building what I call "proximate evidence" - work that demonstrates adjacent skills without crossing ethical or legal boundaries.
For SOC roles, I've seen candidates create detailed writeups of public CVEs, build simple SIEM rules for detecting common attack patterns, or document their home lab setup. One candidate I placed at a fintech last quarter created video walkthroughs showing how they'd approach specific alert scenarios using freely available tools.
Is this perfect? No. But it's significantly better than certificates alone.
Beyond Tick Boxes: Diversity Recruitment Strategies That Actually Transform UK Workplaces
Master the Virtual Hot Seat: 7 Video Interview Techniques Recruiters Don't Tell You
How to Master 'Tell Me About Yourself' Interview Question: UK Expert Insights
The GitHub Graveyard
GitHub profiles have become the de facto skills showcase. But let's be honest - most are digital graveyards of half-finished projects and tutorial code.
If you're going to use GitHub (and you absolutely should), remember that quality trumps quantity. A single well-documented, thoughtfully architected project will impress more than twenty abandoned repositories.
Focus on building something that solves an actual problem you've encountered. Document your thought process, explain your design decisions, acknowledge limitations.
A candidate I recently placed in a mid-sized consultancy had a repository showing how he'd built a custom logging solution for his homelab after being frustrated with existing options. The technical director reviewing his application spent more time discussing this project than anything on his CV.
The Overlooked Value of Write-ups
Most technical folks underestimate how much hiring managers value clear communication. If you can explain complex concepts clearly, you're already ahead of 70% of the market.
Start a technical blog. Contribute to documentation for open source projects. Write detailed READMEs for your GitHub projects.
Can't demonstrate a skill directly? Write about it. Analyse a recent breach. Deconstruct a malware sample already documented by a security vendor. Compare different methodologies for vulnerability assessment.
Words matter. Use them.
Microcredentials That Actually Mean Something
Say what you will about the certification industrial complex, but some shorter credentials do carry weight. The trick is knowing which ones.
Most candidates focus on the big names - CISSP, OSCP, etc. - without realising that specialised microcredentials can be more effective for proving specific skills.
Look at the NCSC-certified courses. Many are short, targeted, and carry genuine weight with UK employers. Similarly, vendor-specific credentials from major platforms you're targeting can open doors. Just completed a Crowdstrike Falcon certification that's become a surprisingly effective door-opener for junior threat hunting roles.
The best part? Many can be completed in weeks rather than months, giving you quick wins to add to your CV while you build deeper expertise.
Kill the Coding Test With Preparation
If you're self-taught, you'll likely face more rigorous technical assessments than your formally qualified peers. Unfair? Absolutely. Reality? Unfortunately.
I've sat in on dozens of technical interviews over the years. The candidates who perform best aren't necessarily the most skilled - they're the ones who've prepared specifically for the assessment format.
Ask detailed questions about the interview process upfront. Will there be a live coding exercise? A take-home assignment? A technical discussion?
Then practice accordingly. Sites like HackerRank and TryHackMe have become industry standards for a reason. If you know you'll face a particular type of assessment, find similar examples and practice until it becomes second nature.
A candidate I worked with recently bombed a technical interview despite having excellent practical skills. The reason? He'd never practiced explaining his thought process while solving problems in real-time. A week of deliberate practice later, he sailed through his next interview.
The Volunteer Shortcut
Open-source contributions. Pro bono work for charities. Community education initiatives.
These paths provide legitimate experience you can reference in interviews. They also demonstrate something formal qualifications can't - initiative.
I recently placed a self-taught security analyst who'd volunteered with a local charity to help improve their security posture. The hiring manager was impressed not just with the technical skills displayed, but with the candidate's ability to translate security concepts for non-technical users - a crucial skill in enterprise environments.
Find opportunities where skills gaps align with your learning goals. Document everything meticulously. Treat volunteer work with the same professionalism you would paid positions.
And crucially - get references. A glowing testimony from a volunteer position can outweigh years of theoretical study.
The Conversation That Gets You Hired
At the end of the day, hiring decisions happen in conversations. Your ability to discuss your self-taught skills convincingly matters more than any line on your CV.
Learn to talk about your skills in terms of problems solved rather than technologies used. Practice explaining technical concepts at different levels of complexity - can you explain the same security concept to both a CISO and a non-technical CEO?
Be upfront about your non-traditional path, but frame it as a strength. Self-teaching demonstrates determination, intellectual curiosity, and the ability to overcome obstacles - all qualities in chronically short supply.
The market is shifting faster than the formal education system can adapt. Those who can prove their skills - papers or not - are the ones who'll thrive.
If you're looking to break into cybersecurity without traditional qualifications, you might want to check out The OHub's specialised job listings where employers are increasingly focusing on demonstrated skills over formal credentials.
