Cybersecurity Skill Shortage Has Industry Worried

After years of massive hacker attacks on industry and government, the realization that the bad guys are winning has led to a surge in cybersecurity jobs that has outpaced the supply of people to fill them.

Recently at the RSA 2016 security conference, the issue bubbled up in keynotes and seminars with discussions of how to get young people interested in tech careers to consider the field.

"The volume of threats has changed dramatically," said Christopher Young, vice president of Intel's Security Group. Years before Intel acquired it, McAfee Labs saw 25 threats a day, he said. "Today, we see about 500,000 threats a day."

But the professionals to counter those threats are small in number, he said in an interview.

"We just have to get after this problem," he said. "Students will tell you that even if you're a technical major in college, cybersecurity isn't a core part of the curriculum." Young called on the industry to reach out to colleges, universities and even high schools to raise awareness and launch educational programs.

A Stanford University study estimates there are 200,000 unfilled cybersecurity jobs this year. Cisco Systems says some estimates point to more than 1 million unfilled security jobs worldwide

The Boston-based consulting firm Burning Glass reported last year that the demand for cybersecurity jobs is twice that of all information technology jobs, with cybersecurity commanding a 9 percent salary premium over other IT categories. The jobs require years of training and experience, making them hard to fill.

Indiana is tackling the problem with a new Security Operations Center where Purdue University students work next to state government security personnel to identify threats to state networks. It's hoped that the center, announced in October, will encourage students to consider careers in cybersecurity.

At the end of his keynote talk, Young introduced Morgan Mayernik, a Purdue freshman majoring in materials science engineering and minoring in biometrics, who said students are often unaware of opportunities in cybersecurity.

"We're interested," Mayernik told the audience. "This is a problem that's dear to our hearts. We live in a technical world, but students aren't being told this is an option for them. And they need to be told this and they need to be given these problems, because given the opportunities, we will take them. We want to delve into these issues."

Beyond recruiting, the industry needs to automate to help cope with the labor gap, according Justin Somaini, chief security officer of SAP, the German software giant.

"We need to have really skilled individuals; you'll never get around that," Somaini said. "My stance is I might never find enough really good security people in the job market because it's challenging. We need to take a multifaceted approach to deal with the labor gap, focusing attention on how we innovate," he said.

"There is a natural evolution we're seeing into advanced machine learning. Artificial intelligence is one of these research areas we need to focus on," Somaini said. "Not true AI, but learning algorithms and how they can identify attacks."

The White House is tackling the issue with a proposed initiative to "develop a technologically-skilled and cyber-savvy workforce," according to the budget message.

MercuryNews: http://bayareane.ws/1pBgyiW

« Fighting The Invisible War In CyberSpace
Russian Scientists Have Solved Light-Based Computers »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

Directory of Cyber Security Suppliers

Directory of Cyber Security Suppliers

Our Supplier Directory lists 8,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

INSUREtrust

INSUREtrust

INSUREtrust is a pioneer in the industry, inventing the concept of cyber insurance.

APWG

APWG

APWG is the international coalition unifying the global response to cybercrime across industry, government, law-enforcement and NGO communities.

Cura Software Solutions

Cura Software Solutions

Cura Software Solutions (formerly Cura Technologies) is a market-leader in Governance, Risk and Compliance (GRC) enterprise applications.

Center for Research on Scientific & Technical Information (CERIST)

Center for Research on Scientific & Technical Information (CERIST)

CERIST is a scientific and technical research centre with activities focused in the area of networks, information systems and IT security.

Keepnet Labs

Keepnet Labs

Keepnet Labs is a phishing defence platform that provides a holistic approach to people, processes and technology to reduce breaches and data loss and presents anti-phishing solutions.

IXDen

IXDen

IXDen provides a novel software-based approach to OT systems protection, covering Industrial IoT cybersecurity and sensor data integrity.

DeuZert

DeuZert

DeuZert is an accredited German certification body in accordance with ISO/IEC 27001 (Information Security Management).

Cytomic

Cytomic

Cytomic is the business unit of Panda Security specialized in providing advanced cybersecurity solutions and services to large enterprises.

EvoNexus

EvoNexus

EvoNexus is a technology startup incubator with locations in San Diego, Orange County, and Silicon Valley.

Secberus

Secberus

SECBERUS creates cloud security technology to help organizations stay secure & compliant in the public cloud.

Alea Consulting

Alea Consulting

Alea Consulting is a global risk mitigation and investigative consulting firm, which helps organizations reduce reputation and operational concerns.

Forta

Forta

Forta is a real-time detection network for security & operational monitoring of blockchain activity.

Probity

Probity

Probity Inc. is a certified software development and systems engineering company, providing support to federal government and national defense related clients.

Cenobe Cyber Security

Cenobe Cyber Security

Cenobe provides customized solutions to keep you ahead of potential threats and ensure the security of your organization's systems and data.

Resemble AI

Resemble AI

Resemble AI is an innovator in Generative Voice AI technology and tools to combat AI fraud including audio watermarking and deepfake detection.

Autobahn Security

Autobahn Security

Autobahn Security is a growing team of 80+ experts from 25+ nationalities, established in 5 countries. We’re working hard to make Autobahn Security the No. 1 solution for improved hacking-resilience.