- CISO Series Newsletter
- Posts
- [02-02-23] Join us tomorrow for “Hacking People and Process”
[02-02-23] Join us tomorrow for “Hacking People and Process”
Join us tomorrow for “Hacking People and Process”
Super Cyber Fridays!
Join us TOMORROW, Friday [02-03-23], for "Hacking People and Process"
Join us Friday, February 03, 2023, for “Hacking People and Process: An hour of critical thinking about how to prevent hackers taking advantage of how we work.”
It all begins at 1 PM ET/10 AM PT on Friday, February 03, 2023 with guests Patrick Harr, CEO, SlashNext and Steve Hindle, CIO/CISO, Mad Mobile. We'll have fun conversation and games, plus at the end of the hour (2 PM ET/11 AM PT) we'll do our meetup.
Thanks to our Super Cyber Friday sponsor, SlashNext
Defense in Depth
Why Is There a Cybersecurity Skills Gap?
Check out this post on the r/cybersecurity subreddit for the discussions that is the basis of our conversation on this week’s episode of Defense in Depth co-hosted by me, David Spark, the producer of CISO Series, and Geoff Belknap, CISO, LinkedIn. We welcome Edwin Covert, head of cyber risk engineering, Bowhead Specialty for this discussion on the cybersecurity skills gap. We debated the following topics:Is there really an “entry level” in cybersecurity work? Whenever this subject comes up there is so much ire from the community. People are quick to post job listings that show the irony of requiring X years of experience for “entry level” jobs. As Geoff Belknap points out, the cause of this may be all the confusion as to what cyber assignments you can really give a computer science student right out of college.Unrealistic expectations of how financially successful you can be in cyber. One redditor blamed the education programs that lure in prospective students with the riches they’ll have once they’ve got a certification from their organization. Another noted that while we have a shortage of security professionals with 10+ years experience, their success and ability to negotiate salary is driving a glut of people trying to enter the industry at around the same level solely because they hear demand is so high.When you can’t train people up, you get stuck with this problem of cyberskills shortage. A lot of redditors complained about no formal transfer of knowledge or mentor program. If organizations had educational programs in house, they could bring in junior people. But because they don’t, companies must pay for senior people. And when more organizations compete for the same senior talent it just keeps forcing cyber pay up higher, making a job in cyber even more attractive to the people desperate to get in.Lateral career moves within cybersecurity often mean you’re starting with zero experience. The breadth of knowledge a cybersecurity professional must have is vast. And while many cyber jobs require generalists, other require very specific talents that can pay well, but then if another skill is needed, it’s as if you’re starting at “entry level.”Listen to the full episode over on our blog where you can read the full transcript. If you’re not already a subscriber to CISO Series Podcast via your favorite podcast app, please go ahead and subscribe now.
Thanks to our podcast sponsor, Orca Security
LIVE!
Cyber Security Headlines - Week in Review
Make sure you
to join the LIVE "Week In Review" this Friday for
Cyber Security Headlines
with CISO Series reporter Richard Stroffolino. We do it this and every Friday at 3:30 PM ET/12:30 PM PT for a short 20-minute discussion of the week's cyber news. Our guest will be David Nolan, vp enterprise risk & CISO, The Aaron's Company.
Thanks to this week's headlines sponsor, Hunters AI
Jump in on these conversations
"How can I take cybersecurity seriously?" (
)
"Would you apply to a company with a recent cyber incident?" (
)
"In a toxic team, should you help your teammates or stay quiet?" (
)
Super Cyber Friday...
Coming up in the weeks ahead on Super Cyber Friday we have:
[02-03-23] Hacking People and Process
[02-10-23] Hacking Your Security Program
[02-17-23] NO SHOW
[02-24-23] Hacking Vulnerability Remediation
and register for them all now!
Thank you!
Thank you for supporting CISO Series and all our programming
We love all kinds of support: listening, watching, contributions, What's Worse?! scenarios, telling your friends, sharing in social media, and most of all we love our sponsors!
Everything is available at cisoseries.com.
Interested in sponsorship, contact me, David Spark.