New York Tech Media
  • News
  • FinTech
  • AI & Robotics
  • Cybersecurity
  • Startups & Leaders
  • Venture Capital
No Result
View All Result
  • News
  • FinTech
  • AI & Robotics
  • Cybersecurity
  • Startups & Leaders
  • Venture Capital
No Result
View All Result
New York Tech Media
No Result
View All Result
Home Cybersecurity

Will vacancies create security voids?

New York Tech Editorial Team by New York Tech Editorial Team
March 16, 2022
in Cybersecurity
0
Will vacancies create security voids?
Share on FacebookShare on Twitter

Automation may be shortening the Mean Time to Response (MTTR) when it comes to detecting and responding to attacks, but there is still no substitute for the human in the kill chain. Playbooks need to be constructed by security professionals, triggers identified, and interaction points inserted to allow security analysts to corroborate events, and SOCs manned by security teams, meaning those skillsets are still required despite the technological advances of recent years.

shortage skills

The biggest skill gaps are predominantly in these threat detection and mitigation areas, namely incident management, investigation and digital forensics, closely followed by assurance, audits, compliance and testing. The bulk of vacancies are occurring in middle management and senior roles that require three or more years’ experience and, with the Great Resignation now in full swing, the danger is we are heading for a significant brain drain that could further compound the shortage.

What impact might this skills shortage have on the effectiveness of security operations? Could it lead to a backwards slide when it comes to cyber resilience? Alarmingly, WEF’s Global Cybersecurity Outlook 2022 revealed that almost 60 percent of those questioned said they would “find it challenging to respond to a cybersecurity incident owing to the shortage of skills within their team,” suggesting that responsiveness will be sacrificed. This will lead to businesses becoming more exposed and force growth ambitions to be curtailed.

Cumulative effect

It’s a situation set to worsen, with another DCMS report predicting an annual shortfall of 10,000 cybersecurity professionals in the UK because there isn’t sufficient new talent entering the market. Only 7,500 enter the profession each year, 4,000 of them graduates, with the rest comprising of those who have upskilled, changed career or come through apprenticeships. At the same time, while between 4,000 and 7,000 people exit the cybersecurity workforce, either because they retire or go work in other sectors. Yet 17,500 staff are needed every year, with demand growing on average 14 percent per year (over the course of the last five years). All of which means the skills shortage is cumulative and will intensify.

Yet there seems very little awareness of the precariousness of this situation out in the real world. The WEF report found that business executives were less aware of the implications of the shortage than their security counterparts, suggesting there remains a disconnect at board level. Failing to realize the seriousness of the situation could see recruitment drives and retention strategies not given priority and see those hiring misjudge the market – and there’s already evidence of this.

Many current job vacancies have unrealistic requirements, as shown by the example of the advertisement for a CISO with penetration testing expertise or a request for a technical team member conversant in GRC standards. Obviously, there are some businesses attempting to hire one person to fulfil more than one job remit. But given that the scales are currently tipped in the job seeker’s favor, these tactics will do little to win over potential candidates.

Cyber pathways

Job descriptions are symptomatic of a broader issue with cybersecurity in that the sector has grown so organically that there are no clearly mapped career pathways. Recognizing this, the UK Cyber Security Council has been tasked with devising a Career Pathways Framework to make it easier for employers to identify the specific cyber skills they need, create clearer information on career pathways, and prevent any unnecessary barriers to entry or progression.

Currently under consultation until 20 March, the proposals would see specific cyber job titles linked to existing qualifications and certifications, potentially paving the way for “job descriptions and suggested minimum qualifications requirements for typical roles,” as called for by the DCMS in its cyber skills report. The proposals also call for a Register of Practitioners, like the one for medical and legal professions, to recognize those who are ethical, suitably qualified or senior. Such steps could help stem the exodus from the industry caused by job creep, dissatisfaction, and burnout by providing professionals with a clear path of progression and recognition of their status.

Action plan

But what can the business do now to help alleviate the skills shortage? There are several ways to improve recruitment and retention.

  • Invest in your staff. Provide them with training to help them increase their knowledge and skills. Consider introducing incentive programs so that they don’t want to leave.
  • Cross train and transition. Enable IT staff to gain cybersecurity skills or to train and transition into specialist cyber roles.
  • Provide a path of progression. Develop a clear set of pathways for existing cyber professionals that shows how they can move up within the business.
  • Be flexible. When recruiting, ensure the skillsets related to the job you are advertising for are realistic. Be aware of market dynamics not just in terms of salary but whether you need to offer perks such as remote working.
  • Be open-minded. Around a third of those now in the profession entered via non-cyber related routes, so rather than looking purely at experience and certifications, explore ways to test for the skills you need such as analytical problem solving.
  • Outsource for expertise. The pandemic saw many decide to move out of permanent roles into consultancy. 38 percent of businesses currently outsource cybersecurity compared to 57 percent in the public sector, making this a growth market that businesses can tap into.

While the cyber pathways initiative promises to bring some much needed transparency to the sector it is still some way off. Those organizations that don’t adapt to the growing skills shortage today risk more than missing out on valuable talent, as they could find themselves under resourced and their systems over exposed.

Credit: Source link

Previous Post

(IN)SECURE Magazine issue 71 released

Next Post

Luno launches investment arm to back over 200 fintech and crypto/web3 startups yearly – TechCrunch

New York Tech Editorial Team

New York Tech Editorial Team

New York Tech Media is a leading news publication that aims to provide the latest tech news, fintech, AI & robotics, cybersecurity, startups & leaders, venture capital, and much more!

Next Post
Luno launches investment arm to back over 200 fintech and crypto/web3 startups yearly – TechCrunch

Luno launches investment arm to back over 200 fintech and crypto/web3 startups yearly – TechCrunch

  • Trending
  • Comments
  • Latest
Meet the Top 10 K-Pop Artists Taking Over 2024

Meet the Top 10 K-Pop Artists Taking Over 2024

March 17, 2024
Panther for AWS allows security teams to monitor their AWS infrastructure in real-time

Many businesses lack a formal ransomware plan

March 29, 2022
Zach Mulcahey, 25 | Cover Story | Style Weekly

Zach Mulcahey, 25 | Cover Story | Style Weekly

March 29, 2022
How To Pitch The Investor: Ronen Menipaz, Founder of M51

How To Pitch The Investor: Ronen Menipaz, Founder of M51

March 29, 2022
Japanese Space Industry Startup “Synspective” Raises US $100 Million in Funding

Japanese Space Industry Startup “Synspective” Raises US $100 Million in Funding

March 29, 2022
UK VC fund performance up on last year

VC-backed Aerium develops antibody treatment for Covid-19

March 29, 2022
Startups On Demand: renovai is the Netflix of Online Shopping

Startups On Demand: renovai is the Netflix of Online Shopping

2
Robot Company Offers $200K for Right to Use One Applicant’s Face and Voice ‘Forever’

Robot Company Offers $200K for Right to Use One Applicant’s Face and Voice ‘Forever’

1
Menashe Shani Accessibility High Tech on the low

Revolutionizing Accessibility: The Story of Purple Lens

1

Netgear announces a $1,500 Wi-Fi 6E mesh router

0
These apps let you customize Windows 11 to bring the taskbar back to life

These apps let you customize Windows 11 to bring the taskbar back to life

0
This bipedal robot uses propeller arms to slackline and skateboard

This bipedal robot uses propeller arms to slackline and skateboard

0
The Future of “I Do”: How Technology is Revolutionizing Weddings in 2025

The Future of “I Do”: How Technology is Revolutionizing Weddings in 2025

March 19, 2025
Eldad Tamir

AI vs. Traditional Investing: How FINQ’s SEC RIA License Signals a New Era in Wealth Management

March 17, 2025
Overcoming Payment Challenges: How Waves Audio Streamlined Transactions with BridgerPay

Overcoming Payment Challenges: How Waves Audio Streamlined Transactions with BridgerPay

March 16, 2025
Arvatz and Iyer

PointFive and Emertel Forge Strategic Partnership to Elevate Enterprise FinOps in ANZ

March 13, 2025
Global Funeral Traditions Meet Technology

Global Funeral Traditions Meet Technology

March 9, 2025
Canditech website

Canditech is Revolutionizing Hiring With Their New Product

March 9, 2025

Recommended

The Future of “I Do”: How Technology is Revolutionizing Weddings in 2025

The Future of “I Do”: How Technology is Revolutionizing Weddings in 2025

March 19, 2025
Eldad Tamir

AI vs. Traditional Investing: How FINQ’s SEC RIA License Signals a New Era in Wealth Management

March 17, 2025
Overcoming Payment Challenges: How Waves Audio Streamlined Transactions with BridgerPay

Overcoming Payment Challenges: How Waves Audio Streamlined Transactions with BridgerPay

March 16, 2025
Arvatz and Iyer

PointFive and Emertel Forge Strategic Partnership to Elevate Enterprise FinOps in ANZ

March 13, 2025

Categories

  • AI & Robotics
  • Benzinga
  • Cybersecurity
  • FinTech
  • New York Tech
  • News
  • Startups & Leaders
  • Venture Capital

Tags

3D bio-printing acoustic AI Allseated B2B marketing Business carbon footprint climate change coding Collaborations Companies To Watch consumer tech cryptocurrency deforestation drones earphones Entrepreneur Fetcherr Finance Fintech food security Investing Investors investorsummit israelitech Leaders LinkedIn Leaders Metaverse news OurCrowd PR Real Estate reforestation software start- up startupnation Startups Startups On Demand startuptech Tech Tech leaders technology UAVs Unlimited Robotics VC
  • Contact Us
  • Privacy Policy
  • Terms and conditions

© 2024 All Rights Reserved - New York Tech Media

No Result
View All Result
  • News
  • FinTech
  • AI & Robotics
  • Cybersecurity
  • Startups & Leaders
  • Venture Capital

© 2024 All Rights Reserved - New York Tech Media