Cyber security is competitive, and hiring managers see many similar CVs. A focused CV that shows hands-on evidence and role-specific understanding helps you stand out. This builds on our general how to write a CV guide.
Show hands-on evidence
Beyond certificates, employers want proof you've done the work: a home lab, CTFs, TryHackMe/Hack The Box progress, or documented projects. "Built a segmented home lab with a SIEM and documented detecting a brute-force attack" says more than a list of tools.
Tailor to the role family
- SOC/blue team: analytical skills, log analysis, SIEM familiarity (see SOC analyst interview questions).
- Pen-test/red team: methodology, tooling and labs (penetration tester interview questions).
- GRC: frameworks, risk and communication (GRC interview questions).
Certifications and skills
List relevant certifications (e.g. Security+) clearly, and include a focused skills section mirroring the advert. Keep it evidence-led and avoid buzzword stuffing. Plan progression with our cyber security career path.
Practise what you've learned
Turn this into a stronger CV now. CV Optimisation checks your CV against a specific role, and Job Intelligence™ decodes exactly which skills and keywords the vacancy wants so you can mirror them. Build the evidence behind your CV in your Career Passport™.
Lead with evidence, not tools
Recruiters see hundreds of CVs listing the same tools. Stand out by showing impact: "Investigated 40+ SOC alerts a week, reducing false positives 25% by tuning SIEM rules." Certifications (Security+, BTL1, SC-200) belong near the top for entry level; hands-on evidence (home lab, CTFs, TryHackMe/HackTheBox ranks, a documented project) matters just as much.
Structure for a cyber CV
- Summary naming your target (SOC analyst, security engineer, GRC).
- Technical skills grouped sensibly (SIEM, EDR, cloud, scripting, frameworks like MITRE ATT&CK).
- Experience/projects with quantified outcomes.
- Certifications & continuous learning — recency signals genuine interest.
Map to the role
A GRC CV emphasises frameworks, risk and communication; a SOC CV emphasises detection, triage and tooling. Mirror the advert, keep it ATS-friendly, and prepare to defend every claim in your cyber security interview.
