May 18, 2017 By Fran Howarth 2 min read

Much has been written about the skills gap in terms of the lack of qualified security practitioners to fill the roles available within organizations. In fact, the skills gap is currently one of the top concerns for CISOs, and the situation is poised to get event worse.

Look to the Millennials

A recent Frost & Sullivan report looked at the importance of the millennial generation in filling the skills gap, which it estimated will amount to 1.8 million information security workers by 2020. Millennials will be critical for closing this gap, since they will form an even larger cohort than the baby boomer generation.

Information security education has progressed, but it is still a work in progress. It is unlikely that any organization will be able to fill its needs with university graduates alone, especially given the competition for candidates. This makes it a necessity that organizations ramp up their training programs, taking into account not just the technical skills that are required for information security positions, but also the soft skills that link technology with business needs.

Train From Within the Ranks

The research by Frost & Sullivan found that the millennial generation is particularly open to on-the-job training. In fact, 65 percent of this demographic stated that it is very important to them — a higher clip than previous generations. Millennials place a particular emphasis on mentorship and leadership programs, which is one reason why they are likely to change jobs voluntarily: The research found that better perks are a greater motivation than low job satisfaction when considering a career move.

Embrace Diversity

Millennials are also more likely than previous generations to value diversity, with 46 percent saying that diversity is very important to them. A full two-thirds of millennials claimed to speak more than one language, compared to just over one-third of baby boomers. The value placed on diversity may also help organizations tap the pool of female workers who may not have been motivated to study technology previously.

Another recent study found that women comprise just 10 percent of the information security workforce. If women are not drawn to information security as an education option, on-the-job training may help organizations to train current female workers and increase diversity within their ranks. That move is likely to appeal to millennials.

A New Approach to Close the Skills Gap

Tackling the skills gap requires a new way of thinking for organizations. Rather than leaving everything to recruiters, they should look at current employees and seek to leverage what they already have. For the millennial generation, job satisfaction is vital. Ensuring that they can stay current through training and education will not only increase morale, but also help organizations to overcome the cybersecurity skills gap.

Read the IBM Executive Report: Addressing the Skills Gap with a New Collar Approach

More from CISO

Making smart cybersecurity spending decisions in 2025

4 min read - December is a month of numbers, from holiday countdowns to RSVPs for parties. But for business leaders, the most important numbers this month are the budget numbers for 2025. With cybersecurity a top focus for many businesses in 2025, it is likely to be a top-line item on many budgets heading into the New Year.Gartner expects that cybersecurity spending is expected to increase 15% in 2025, from $183.9 billion to $212 billion. Security services lead the way for the segment…

On holiday: Most important policies for reduced staff

4 min read - On Christmas Eve, 2023, the Ohio State Lottery had to shut down some of its systems because of a cyberattack. Around the same time, the Dark Web had a “Leaksmas” event, where cyber criminals shared stolen information for free as a holiday gift. In fact, the month of December 2023 saw more than 2 billion records breached and 1,351 disclosed security incidents, according to research from IT Governance — an increase of 332% and 187%, respectively, over the month of…

Overheard at RSA Conference 2024: Top trends cybersecurity experts are talking about

4 min read - At a brunch roundtable, one of the many informal events held during the RSA Conference 2024 (RSAC), the conversation turned to the most popular trends and themes at this year’s events. There was no disagreement in what people presenting sessions or companies on the Expo show floor were talking about: RSAC 2024 is all about artificial intelligence (or as one CISO said, “It’s not RSAC; it’s RSAI”). The chatter around AI shouldn’t have been a surprise to anyone who attended…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today