Skip to content
NGTEdu Logo

NGTEdu

A PRODUCT OF NGTECH.CO.IN

NGTEdu Logo

NGTEdu

  • Home
  • Cyber Attacks
  • Malware
  • Vulnerabilities
  • Data Breach
  • Home
  • Data Breach
  • Cyber Workforce: Gender Diversity Challenges
  • Data Breach

Cyber Workforce: Gender Diversity Challenges

5 years ago Tripwire Guest Authors
Cyber Workforce: Gender Diversity Challenges

Over the years, there have been many news headlines, policy reports, white papers, and corporate newsletters that have highlighted cybersecurity workforce challenges; namely, the global shortage of cybersecurity professionals. Some of the challenges involved in achieving a more desirable cyber workforce include addressing the barriers to entry for marginalized individuals, gender disparities including the gender pay gap, and employer assertions of cyber workforce shortages due to unskilled, or low-skilled, individuals interested in working in the cybersecurity field.

In 2019, the Center for Strategic & International Studies (CSIS) published The Cybersecurity Workforce Gap. It summarizes the results of a survey that looked at the cyber workforce shortages across eight countries. The survey results revealed that 82% of employers reported a shortage of cybersecurity skills and that 71% believed the shortage created significant risk for their organizations. One explanation for challenges in hiring cybersecurity professionals is the lack of technology skills that employers believe are most desirable for the roles that they seek to fill. 

In addition to looking at the lack of technology skill set argument, it may be possible to address the shortage of cyber security professionals through the lens of the recruiting, hiring, and retention process as well as diversity, inclusion, and equity (DI&E) efforts.

Cybersecurity and DI&E Initiatives

In 2020, many cybersecurity companies publicly prioritized, or re-committed to, their DE&I initiatives. After last year’s social protests following several instances of injustice, civil unrest, and the new work-from-home status that many of us found ourselves in due to the Covid-19 pandemic, there was a significant uptick in public commitments to DI&E initiatives. Article after article and social media post after social media post, the world witnessed not only a renewed focus on DI&E programs but also an expansion of DI&E to include the concept of belonging. Hence the acronym DIE&B, which stands for the phrase “diversity, Inclusion, equity and belonging.” 

Thought leaders in the DI&E space often advocate for strong, well-funded initiatives by citing data that demonstrates how diversity in the workplace leads to greater productivity, expanded creativity, greater problem solving, enhanced employee engagement, and higher retention rates. Karima Mariama-Arthur, Esq., founder and CEO at WordSmithRapport, notes that bringing otherwise marginalized communities to the table as valued stakeholders and developing a culture that values the unfettered contributions of all are key to advancing these objectives and building goodwill that not only changes perspectives but also transforms interpersonal dynamics for the long haul. Organizations that recognize the need to increase their DI&E efforts is commendable, indeed. 

While diversity in the workplace can be described in many different ways, gender diversity will be the focus for this article.

Global Recruiting and Hiring Challenges

Cyber Women Ireland, an organization focused on the advancement of women in the security community in Ireland, noticed a DIE&B gap in the cybersecurity community. In response to a finding included in the Cyber Ireland 2021 Cyber Skills Report stating that 27% of companies reported difficulty retaining women in their cybersecurity team, the organization created the Diver{Se}curity Project and published a report that addresses recruiting, hiring and retention, DIE&B, and the gender pay gap.

Gender Diversity and Efforts to Recruit Women

Organizations focused on gender diversity in the cyber workforce must pinpoint why they are unable to recruit more women cyber professionals. They must also consider whether they truly understand the sentiment of a prospective candidate and employee as it relates to inclusiveness and belonging? 

On the topic of attracting more women to the cyber workforce, Joanne O’Connor, project lead of Diver{se}curity Report, founder of Cyber Women Ireland, and founder of Cyber Awareness Interdisciplinary Consortium Ireland (CAICI), believes that we don’t encourage enough diversity on our cyber panels and webinars. She points out what many women across industries, but especially in cybersecurity, have remarked about, and that is the term ‘manels.’ Evident on social media platforms like LinkedIn and Twitter prior to the COVID-19 pandemic, manels is a word used to describe all-male panels usually speaking at a technology or cybersecurity conference. Joanne posed a thoughtful question, which was “How can we inspire more women to join our industry when all they see is the men being allowed to speak on public platforms?” She logically concluded that “They might think, why would I join an industry that clearly doesn’t see women making it to the top?”

Based on the survey results, organizations may be able to improve their chances of recruiting more women if due consideration is given to the following:

  • A clear and visible career progression path
  • Improved, more thoughtful, gendered language in job postings
  • An inclusive recruitment process (e.g., one that considers people with neurodiversity needs)

Another way to improve the cyber workforce gender gap is to focus efforts on retaining those women. 

Hiring and Retention

The Diver{Se}curity Report asked respondents about the use of gender quotas for interview panels as well as quotas to meet an organization’s hiring needs. The survey results show that 25% of respondents indicated that their organizations use gender quotas for panel interviews, and 10% of respondents indicated that their organizations have gender quotas in place to support hiring a diverse cyber workforce. 

The report noted the issue of low retention numbers among women cybersecurity professionals and highlighted the need to dig deeper to identify the root cause of an organization’s inability to retain women cyber professionals. Digging deeper requires thoughtful questions that will help narrow in on exactly what prompted disengagement from the employer. Many times, this type of insight is provided in an exit interview. Interestingly, the report states that 66% of respondents did not participate in an exit interview at the time they left their employer. Failing to perform an exit interview puts the organization at a huge disadvantage, as they miss out on valuable data that they are unlikely to have an opportunity to obtain at any other point during their re-engagement with the employee. 

Some respondents provided suggestions for what they believe will contribute to improving retention numbers for women in the cyber workforce; they include:

  • Ensuring equal pay between men and women
  • Providing workplace flexibility
  • Fostering a family-friendly culture
  • Ensuring that the organization’s environment is one where women feel comfortable being their authentic self

Another necessary consideration for organizations is whether women feel that their unique experience is supported by the organization’s leadership. Some survey respondents stated that experiencing burnout during their work-from-home status due to Covid-19 was not openly discussed and that discussing it was “seen as a weakness” in women more so than men. In fact, in response to whether their organization encouraged taking time for mental health safety reasons, 42.7% answered “no.” Joanne O’Connor shared that “The onus is on the leaders to create that culture of openness around burnout.” 

Conclusion 

Resolving the gender disparities that continue to persist will require increased thoughtfulness, additional, diverse insights, and new strategies. It’s clear that in addition to the leadership within an organization and well-funded DI&E programs, the profession will also need to rely on those individuals who are in the best position to influence recruiting, hiring, and retention. They need to do their part to make the cybersecurity space a more rewarding and welcoming one for everyone.


About the Author: Ambler is an attorney with a background in corporate governance, regulatory compliance and data privacy. She currently consults on governance, risk and compliance, enterprise data management as well as data privacy and security matters in Washington, DC.  

LinkedIn: https://www.linkedin.com/in/amblertjackson/

Twitter: @amblerjackson

Editor’s Note: The opinions expressed in this guest author article are solely those of the contributor, and do not necessarily reflect those of Tripwire, Inc.

The post ” Cyber Workforce: Gender Diversity Challenges” appeared first on TripWire

Source:TripWire – Tripwire Guest Authors

Tags: COVID-19, Encryption, Low Severity, Privacy, TripWire

Continue Reading

Previous Hackers Trick Microsoft Into Signing Netfilter Driver Loaded With Rootkit Malware
Next Cybersecurity Challenges in the Construction Industry

More Stories

  • Critical Vulnerability
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

China-Linked DKnife AitM Framework Targets Routers for Traffic Hijacking, Malware Delivery

6 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Vulnerabilities

CISA Orders Removal of Unsupported Edge Devices to Reduce Federal Network Risk

7 hours ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

Asian State-Backed Group TGR-STA-1030 Breaches 70 Government, Infrastructure Entities

9 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach

How Samsung Knox Helps Stop Your Network Security Breach

11 hours ago [email protected] (The Hacker News)
  • Cyber Attacks
  • Data Breach
  • Malware
  • Vulnerabilities

Compromised dYdX npm and PyPI Packages Deliver Wallet Stealers and RAT Malware

12 hours ago [email protected] (The Hacker News)
  • Critical Vulnerability
  • Data Breach
  • Vulnerabilities

Claude Opus 4.6 Finds 500+ High-Severity Flaws Across Major Open-Source Libraries

15 hours ago [email protected] (The Hacker News)

Recent Posts

  • China-Linked DKnife AitM Framework Targets Routers for Traffic Hijacking, Malware Delivery
  • CISA Orders Removal of Unsupported Edge Devices to Reduce Federal Network Risk
  • Asian State-Backed Group TGR-STA-1030 Breaches 70 Government, Infrastructure Entities
  • How Samsung Knox Helps Stop Your Network Security Breach
  • Compromised dYdX npm and PyPI Packages Deliver Wallet Stealers and RAT Malware

Tags

Android APT Bug CERT Cloud Compliance Coronavirus COVID-19 Critical Severity Encryption Exploit Facebook Finance Google Google Chrome Goverment Hacker Hacker News High Severity Instagram iPhone Java Linux Low Severity Malware Medium Severity Microsoft Moderate Severity Mozzila Firefox Oracle Patch Tuesday Phishing Privacy QuickHeal Ransomware RAT Sim The Hacker News Threatpost TikTok TripWire VMWARE Vulnerability Whatsapp Zoom
Copyright © 2020 All rights reserved | NGTEdu.com
This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Read More here.Cookie settingsACCEPT
Privacy & Cookies Policy

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may have an effect on your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Non-necessary
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
SAVE & ACCEPT