For some time now, there has been a worrying lack of the requisite skills around cloud security, data security, and application security.
Part of the reason is that cloud architectures and the ever more distributed systems we are now used to today has created new attack surfaces that require specialised skills to secure.
Here, there is a real shortage of engineers who are well-versed in techniques like cloud access security, cloud encryption, and micro-segmentation.
With vast amounts of sensitive data now being collected and analysed, skills in data security governance, database activity monitoring, and data loss prevention are more important than ever before.
Entry-level cybersecurity hires often lack the soft skills needed for organisational collaboration, communicating cyber risks, and enabling behavioural change.
At the same time, due to advanced persistent threats evolving so rapidly, mid and senior level professionals skilled in threat intelligence gathering, dark web monitoring, and understanding the attacker mindset are also rare.
Shortages also exist in digital forensics and incident response skills like log analysis, reverse engineering malware, and determining root causes.
Cloud, mobile, IoT and AI adoption have all massively increased risk, vastly expanding the expertise required to secure a modern organisation.
Educational programmes are failing to keep students' skills current with technological change.
More public-private partnerships, certification programs and continuing education are needed.
There is no doubt that more diverse perspectives promote more innovative solutions.
Homogenous teams only end up reinforcing the blind spots that attackers can look to exploit.
Whereas teams incorporating diverse backgrounds provide much more cognitive diversity to imagine novel defensive approaches.
The industry needs to tap into underrepresented talent pools through inclusive hiring initiatives.
Intentional, equitable hiring is vital for the industry to access and develop previously untapped talent.
Blending junior energy and new approaches with senior experience creates vibrant, balanced teams that nurture skills development and help to secure the business.
To help fill the skills gap, organisations should look to cross-train staff to handle multiple roles.
Employees skilled across functional areas can improve response coordination while reducing costs.
Not being afraid to employ remote workers can also help to access wider talent pools cost-effectively.
Such remote models provide access to skills globally without relocation costs, improving diversity too.
This Cyber News was published on www.itsecurityguru.org. Publication date: Wed, 13 Mar 2024 16:28:04 +0000