Diversity In Cyber Security

Improving the diversity of the cyber security industry by hiring people from different backgrounds will allow information security teams to think and defend against concepts and attack methods they have never thought of before and significantly improve your organisation’s cyber online defenses.

Digital systems are a part of Britain's critical national infrastructure, and keeping them secure and resilient is more vital than ever. The NCSC Report on Decrypting Diversity details how over 85% of professionals working in cyber security are white, compared to under 15% from black, Asian or mixed ethic groups.

The Director of GCHQ Jeremy Fleming, recently told Britain’s largest forum on cyber security, CyberUK 2021, that “the UK will only be able to thrive in the digital era if we are able to draw people from all backgrounds to work together on these problems. Inclusion has become mission critical, not a nice to have... It’s vital to our intelligence and cyber security work. It’s not just the morally right thing to do, it’s smart business.”  

Two-thirds of the industry identifies as male, compared to 31% identifying as female, while over 84% of those surveyed identify as straight, compared with 10% who identified as LGBT. 

The NCSC Report says that, “over 40% of Black cyber security professionals feel they have experienced discrimination over their ethnicity in the past year. There are other, equally shocking, examples. They should be a source of deep shame for all in the industry, the kind of stark accounts which simply cannot be ignored.”  Not only does diversifying the cyber security industry help it better reflect the population, it can bring different ways of thinking and different skills to the table, and it could also help cyber security teams gain a better idea of how the malicious hacking operations they're trying to defend networks again work.

Improving diversity in cyber security teams should, therefore, be a key aim for organisations across the industry, because it can help protect people and businesses from a wider range of cyber threats.

It's also important to recognise that people can take different routes into cyber security, some might get qualifications from university or information security certifications, others might learn skills via online courses, some might even teach themselves entirely.

The Report says, “Gay and lesbian respondents reported feeling discriminated against over their sexual orientation at eight times the level of survey respondents as a whole. Female respondents reported nearly two and half times the level negative incidents as a result of their gender identity than the survey as a whole. “Given these findings, it is worrying to discover that the industry has low levels of incident reporting and resolution.... In the circumstances, it is little surprise that just over 9% of all those surveyed are considering changing employers or leaving the industry entirely.” 

NCSC:          iNews:        ZDNet:     FuentITech:     Digital Guardian:     Image: Unsplash

You Might Also Read: 

Psycho-Cyberchology:

 

 

« Russia Wants A Deal With The US On Cyber Security
Ukraine Cyber Police Crack Hacker Group »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

TÜV SÜD Academy UK

TÜV SÜD Academy UK

TÜV SÜD offers expert-led cybersecurity training to help organisations safeguard their operations and data.

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

Cyber Aware

Cyber Aware

Cyber Aware aims to drive behaviour change amongst small businesses and individuals, so that they adopt simple secure online behaviours.

Security University

Security University

Security University is a leading provider of Qualified Hands-On Cybersecurity Education, Information Assurance Training and Certifications for IT and Security Professionals.

achelos

achelos

achelos is an independent software development company providing innovative technical solutions for micro-processor chips / security chips and embedded systems in security-critical application fields.

Sapien Cyber

Sapien Cyber

Sapien Cyber is an Australian company bringing leading-edge cyber security and threat intelligence solutions.

Approachable Certification

Approachable Certification

Approachable Certification is a UKAS accredited certification body offering down-to-earth and competitively priced audits against ISO Management Systems standards.

Interos

Interos

Interos is the operational resilience company — reinventing how companies manage their supply chains and business relationships — through a breakthrough AI SaaS platform.

Institute for Pervasive Cybersecurity - Boise State University

Institute for Pervasive Cybersecurity - Boise State University

Boise State University’s Institute for Pervasive Cybersecurity is a leader of innovative cybersecurity research and advancement in Idaho and the region.

Cybergroot

Cybergroot

Cybergroot provides Cybersecurity Assessment services and professional Information Security trainings.

KBE Information Security

KBE Information Security

KBE is a global consulting firm, with offices in Toronto and Milan, which specializes in the area of IT and information security with over 20 years of experience.

CloudCoCo

CloudCoCo

CloudCoCo help UK businesses of all sizes and industries succeed by providing enterprise-grade technology at small-business prices.

Irys Technologies

Irys Technologies

Irys Technologies specialize in pioneering digital transformation solutions designed to streamline communications and enhance maintenance and operational efficiency for a variety of sectors.

Cyber Security Global

Cyber Security Global

Cyber Security Global is a leader in electronic security, consultancy, technology, cybersecurity solutions, training, and specialized products.

Cyber Guards

Cyber Guards

Cyber Guards provide comprehensive, turn-key cyber security programs for small and mid-size business for about the cost of one full-time cybersecurity hire.

InQuest

InQuest

InQuest specialize in providing comprehensive network-based security solutions that empower organizations to protect their most critical assets: their people.

CoinCover

CoinCover

Blockchain technology is changing everything. However, it brings its own set of unique risks. Coincover ensures everyone is protected, enabling them to innovate freely, without constraints.

Syteca

Syteca

Syteca is specifically designed to secure organizations against threats caused by insiders. It provides full visibility and control over internal risks.