Diversity In Cyber Security

Improving the diversity of the cyber security industry by hiring people from different backgrounds will allow information security teams to think and defend against concepts and attack methods they have never thought of before and significantly improve your organisation’s cyber online defenses.

Digital systems are a part of Britain's critical national infrastructure, and keeping them secure and resilient is more vital than ever. The NCSC Report on Decrypting Diversity details how over 85% of professionals working in cyber security are white, compared to under 15% from black, Asian or mixed ethic groups.

The Director of GCHQ Jeremy Fleming, recently told Britain’s largest forum on cyber security, CyberUK 2021, that “the UK will only be able to thrive in the digital era if we are able to draw people from all backgrounds to work together on these problems. Inclusion has become mission critical, not a nice to have... It’s vital to our intelligence and cyber security work. It’s not just the morally right thing to do, it’s smart business.”  

Two-thirds of the industry identifies as male, compared to 31% identifying as female, while over 84% of those surveyed identify as straight, compared with 10% who identified as LGBT. 

The NCSC Report says that, “over 40% of Black cyber security professionals feel they have experienced discrimination over their ethnicity in the past year. There are other, equally shocking, examples. They should be a source of deep shame for all in the industry, the kind of stark accounts which simply cannot be ignored.”  Not only does diversifying the cyber security industry help it better reflect the population, it can bring different ways of thinking and different skills to the table, and it could also help cyber security teams gain a better idea of how the malicious hacking operations they're trying to defend networks again work.

Improving diversity in cyber security teams should, therefore, be a key aim for organisations across the industry, because it can help protect people and businesses from a wider range of cyber threats.

It's also important to recognise that people can take different routes into cyber security, some might get qualifications from university or information security certifications, others might learn skills via online courses, some might even teach themselves entirely.

The Report says, “Gay and lesbian respondents reported feeling discriminated against over their sexual orientation at eight times the level of survey respondents as a whole. Female respondents reported nearly two and half times the level negative incidents as a result of their gender identity than the survey as a whole. “Given these findings, it is worrying to discover that the industry has low levels of incident reporting and resolution.... In the circumstances, it is little surprise that just over 9% of all those surveyed are considering changing employers or leaving the industry entirely.” 

NCSC:          iNews:        ZDNet:     FuentITech:     Digital Guardian:     Image: Unsplash

You Might Also Read: 

Psycho-Cyberchology:

 

 

« Russia Wants A Deal With The US On Cyber Security
Ukraine Cyber Police Crack Hacker Group »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

Information Risk Management (IRM)

Information Risk Management (IRM)

IRM is an international consultancy dedicated to helping organisations solve key business issues. We provide strategic cyber security advice across a wide range of sectors.

D-RisQ

D-RisQ

D-RisQ is focussed on delivering techniques to reduce the development costs of complex systems and software whilst maximising compliance

PROMIA

PROMIA

PROMIA is in the business of providing solutions that are designed to support highly secure, reliable, scalable and interoperable business applications.

CETIC

CETIC

CETIC is an applied research centre in the field of ICT. Key technologies include Big Data, Cloud Computing, the Internet of Things, software quality, and trust and security of IT systems.

Cyber Security Education

Cyber Security Education

CybersecurityEducation.org is an online directory of cyber security education and careers.

Noventiq

Noventiq

Noventiq (the brandname of Softline Holding plc) is a leading global solutions and services provider in digital transformation and cybersecurity.

Dynatrace

Dynatrace

Dynatrace provides software intelligence to simplify cloud complexity and accelerate digital transformation.

Next Peak

Next Peak

Next Peak provides cyber advisory and operational services based on deep business and national security experience, thought leadership, and a network of front-line defenders.

Sencode Cyber Security

Sencode Cyber Security

Sencode provides a range of IT security solutions and services, including penetration testing and cyber awareness training to help mitigate the growing risks to your corporate infrastructure.

Team Secure

Team Secure

Team Secure provide Enterprise-grade Cyber Security consultancy, managed security services and cyber security staffing services.

Cyber Security Works (CSW)

Cyber Security Works (CSW)

Cyber Security Works is your organization’s early cybersecurity warning system to help prevent attacks before they happen.

Opus Security

Opus Security

Opus dramatically reduces cloud security risks by enabling teams to define, orchestrate, automate and measure remediation processes across the entire distributed organization.

Narf Industries

Narf Industries

Narf Industries are a small group of reverse engineers, vulnerability researchers and tool developers that specialize in tailored solutions for government and large enterprises.

Xact IT Solutions

Xact IT Solutions

Xact IT Solutions are a certified cybersecurity firm offering cybersecurity, compliance and managed services.

Baidam Solutions

Baidam Solutions

Baidam Solutions is a 100% Australian owned and operated First Nations information technology business.

SGS Brightsight

SGS Brightsight

SGS Brightsight is the largest independent security evaluation lab in the world, with ten recognised labs worldwide.