Recently ISACA released the result of a survey as their State of Cyber Security Report 2017, part 1. You can download it at their website HERE.
Part 1 focuses on topics like "workforce challenges" and "persistent skills gap". Like many other groups, ISACA continues to push the narrative of a skills gap, and of course their solution is to train more folks in cybersecurity, ideally with their new set of CSX training and certifications.
Showing posts with label skills gap. Show all posts
Showing posts with label skills gap. Show all posts
Thursday, February 16, 2017
Friday, January 30, 2015
So you want to hire an InfoSecurity professional? [Part 1]
The following posting is an opinion piece. It's based on personal experiences and anecdotal information. deal with it.
So your organization is looking to hire one or more Information Security Professionals. Maybe you are growing your InfoSec organization, adding to your IT organization, or realizing that, yes, you need to create an InfoSec group. (all those big breaches in the news have you running scared)
Do you have a good idea of what you need in terms of skills, knowledge, and experience? Do you have a good idea what kind of role you are trying to fill? Do you have an idea of salary candidates with the skills you need are expecting? You best figure this out soon. (hopefully you've consulted with professionals to help you out, and I don't mean recruiters.) Here are some things to consider.
Now, a word of warning. It may seem that I am stating the obvious at several points, and in a condescending manner. But the sad thing is that in speaking with recruiters and HR people is that they don't seem to understand these points. As an infosec professional, this p*sses me off, and so I feel I need to state the obvious for those who don't get it.
So your organization is looking to hire one or more Information Security Professionals. Maybe you are growing your InfoSec organization, adding to your IT organization, or realizing that, yes, you need to create an InfoSec group. (all those big breaches in the news have you running scared)
Do you have a good idea of what you need in terms of skills, knowledge, and experience? Do you have a good idea what kind of role you are trying to fill? Do you have an idea of salary candidates with the skills you need are expecting? You best figure this out soon. (hopefully you've consulted with professionals to help you out, and I don't mean recruiters.) Here are some things to consider.
Now, a word of warning. It may seem that I am stating the obvious at several points, and in a condescending manner. But the sad thing is that in speaking with recruiters and HR people is that they don't seem to understand these points. As an infosec professional, this p*sses me off, and so I feel I need to state the obvious for those who don't get it.
Friday, November 14, 2014
Is your company causing the IT Skills gap?
I've posted previously on the "IT/IS Skills Gap". As I'm previously noted, I'm not convinced it's necessarily due to a lack of skilled people, but in how some companies are handling filling positions.
A recent article at CSO magazine is interesting.
A recent article at CSO magazine is interesting.
Monday, November 10, 2014
Is the Information Security Skills Gap misidentified?
In recent postings, I've touched on the information security skills gap. Many individuals and groups are pushing the idea that the large number of unfilled information security positions (40% is a number I've seen tossed around) is due to a "skills gap", that there are not enough skilled individuals to fill them. And so we need to pump out more infosec professionals.
As noted, I'm not in agreement with this idea. There may be a skills gap in certain areas and in certain markets, but don't think its correct to say we have an overall skills gap.
As noted, I'm not in agreement with this idea. There may be a skills gap in certain areas and in certain markets, but don't think its correct to say we have an overall skills gap.
Subscribe to:
Posts (Atom)