Sponsored by

STAT OF THE WEEK

Almost no job ad names SecAI+. Tens of thousands want the skill behind it.

For this week's video I checked the market myself, four months after SecAI+ launched. Searched as a named requirement, the cert barely appears in live job ads. Searched as a skill, AI security returns tens of thousands of live cyber roles on LinkedIn and around 2,000 with "AI security engineer" in the title on Indeed, at names like Amazon and Cisco. (Source: my own job-board check, June 2026.) What it means for you: do not chase the acronym, chase the skill it points to.

Hey everyone, welcome back to The Career Compass.

I just released a new video answering the question: Are employers actually hiring for SecAI+? CompTIA's AI security cert is four months old now, so I did the simple thing. I checked. I searched the live job ads and asked my network. The answer is more useful than a straight yes or no, and it is the whole focus of this issue. Let's get into it.

Are Employers Actually Hiring for SecAI+? My Four-Month Check

Here's the thing. This is a question I get asked alot, so I went and checked it properly. Four months ago, on 17 February 2026, CompTIA launched SecAI+, its first certification built specifically around securing AI. The thinking is smart, because AI is being bolted onto almost everything now, including the security tools we use every day. But a cert being a good idea and employers hiring for it by name are two very different things, and the gap between them is where beginners waste the most money.

CompTIA has not published official adoption numbers yet, which is completely normal for a new expansion cert aimed at experienced people, so ignore anyone flashing big SecAI+ figures or exact salaries at you. Here is the honest, recruiter's version of what to do with all this, in four steps.

  1. Separate interest from demand before you spend a cent. This is the lesson the whole video turns on. A cert can be buzzing online while employers have not written it into a single job ad yet. So do the recruiter test. Search the cert as a named requirement, then search the skill it represents. When I searched SecAI+ by name, I found almost nothing. When I searched AI security as a skill, I found tens of thousands of live roles. Same topic, completely different picture.

  2. Know what SecAI+ actually is. It launched on 17 February 2026 as CompTIA's first certification built around securing AI, and it is an expansion cert, not a beginner one. The recommended background is roughly three to four years in IT, a couple of years hands-on in security, and ideally Security+, CySA+ or PenTest+ already done. It is not your first cert, and it is not a Security+ replacement. People who skip that end up with a badge resting on nothing, and good employers spot it instantly.

  3. Put yourself in one of three groups. If you are brand new and chasing your first cyber role, wait. Build the fundamentals, get an entry-level cert, get hands-on, and keep SecAI+ on the list for later. If you are a year or two in and AI is already showing up in your world, SecAI+ is well worth considering, not because an ad demands it but because it builds capability in the exact direction your employer is heading. If you are not in cyber at all, this is not the cert that gets you in the door. Foundation first.

  4. Chase the skill, then let the cert signal it. AI security skills do seem to carry a premium right now, with third-party analyses pointing to roughly 15 to 30 per cent over traditional security skills, but treat that as directional, not a promise. No single cert is a pay rise on its own. What moves your money is the combination of strong fundamentals, real experience, and provable AI capability layered on top. And the bigger picture is simple. AI is here to stay, so the people who start using it now are the ones who will not get left behind.

Recruiter's Take
Here is my four-month verdict. Employers are not hiring for SecAI+ by name yet, and this early that is exactly what you would expect. But they are absolutely hiring for the skills it represents, and that demand is only growing. In Australia the direction is the same. APRA is pushing AI risk up the board agenda, and titles like AI Governance and Assurance Specialist are starting to appear. If you are established in cyber and your world is going AI heavy, SecAI+ is a smart, forward-looking bet. If you are a beginner, the fundamentals still come first. Do not confuse interest with demand, and do not let anyone rush you.

What’s next is almost here.

On July 16th at 1PM ET, beehiiv is going live with a look at the future of publishing, audience growth, and digital business.

What started as a newsletter platform has evolved into something much bigger: a place where creators and brands can grow, monetize, and own their audiences without stitching together half the internet to make it work.

The next chapter starts live at the Summer Release Event

Join us to see what’s coming next.

Recruiter Tip: Why a Tailored Resume Beats a Better One

Let's be honest. Most people write one resume, fire it at fifty jobs, and wonder why nothing comes back. As a recruiter, I can spot a generic resume in about three seconds, and the screening software spots it even faster. Most employers filter applicants with an applicant tracking system that scores your resume against the exact words in the job ad, so a strong resume that does not mirror the ad still scores low and never reaches a human. The fix is not a better resume. It is a tailored one.

  1. Mirror the ad's language. Pull the five or six skills and tools named in the job ad, and make sure those exact phrases appear on your resume wherever they are true. If the ad says SIEM and yours says log management, change it to match.

  2. Rewrite your top three bullets for that role. Lead with what this employer is asking for, not a generic summary. The first thing they read should look like the job they wrote.

  3. Match the job title. If they are hiring a SOC Analyst and your resume header says IT Support, add a line that bridges the two so the software and the human both connect the dots.

Yes, it costs you ten extra minutes per application. That is exactly why most people skip it, and exactly why it works. Ten tailored applications will beat a hundred copy-paste ones every time.

  • Cisco ships AI security agents, and the SOC starts to change shape. Cisco began rolling out automation and triage agents in June, and analysts expect agents to handle 30 percent or more of SOC workflows by the end of 2026. What it means: Tier-1 alert sorting is being automated, so aim your skills at investigation, tuning and judgment, the work AI cannot own.

  • ShinyHunters hit Oracle PeopleSoft across 100-plus organisations, many of them universities. Hundreds of thousands of student records were exposed. What it means: breaches now live in SaaS and identity systems, so identity and access management and third-party risk skills are in demand and underserved.

  • CISA flags an actively exploited PTC flaw (CVE-2026-12569, CVSS 9.3). It went straight onto the Known Exploited Vulnerabilities catalog. What it means: the KEV catalog is a free, recruiter-respected study list. Pick one entry, build a lab around it, and write up what you learned.

  • Accenture calls cyber hiring "stuck in the pre-AI era." From 550,000-plus postings, most roles now want technical and business skills together, but only 40 percent of pros have both. What it means: pair your tech skills with the ability to explain risk, and you skip most of the queue.

Video of the Week

CompTIA SecAI+ 4 Months On: Is Anyone Actually Hiring For It?

This whole issue is built around this week's video. I look at whether the new CompTIA SecAI+ certification is actually showing up in job ads four months after launch, who it makes sense for, and who should hold off and keep their money. If you are deciding where to put your study time as AI reshapes the field, watch my full verdict now.

New videos every week on cybersecurity careers, certifications, and what recruiters actually want. Subscribe at youtube.com/@Luke-Gough.

Quick Wins

  1. Run my exact test on your favourite job board. Search SecAI+ as a requirement, then search AI security as a skill, and compare how many results each returns. That gap is the whole lesson in one search.

  2. If you are new, write down the one fundamental cert and the one proof-of-work project you will finish before you even think about SecAI+. That order is what gets you hired.

  3. Whatever your level, use one AI tool on a real security task this week. The skill matters whether or not you ever sit the exam.

Weekly Challenge

Do my four-month check in miniature for your own target role. On one job board, search that role plus AI security, log ten live ads, and note the skills and certs they actually ask for. Then write one honest line: which of the three groups are you in, and is SecAI+ a now, a later, or a not-for-me? You will spend your study money far more wisely once it is on paper.

🎓 From the Desk: Cybersecurity Job-Ready Blueprint

Knowing which certs to chase, and in what order, is exactly where people waste the most time and money. That is what the Cybersecurity Job-Ready Blueprint sorts out. It is a step-by-step guide built from 15+ years of placing candidates into cybersecurity roles, and it covers the exact path from zero to job-ready: which certs to get first, how to build proof of work, how to write a resume that gets past ATS, and how to approach applications like a recruiter. Get the sequence right, and a cert like SecAI+ becomes a smart add-on later, not a guess today.

Thanks for reading, and as always, keep levelling up your career.

Best wishes,
Luke
Career Coach | Cybersecurity Recruiter

Subscribe here to get The Career Compass every fortnight.

Keep Reading