With the National Cyber Strategy Workforce Development Implementation strategy release just around the corner, the conversation around increasing diversity within the cybersecurity industry has never been more prevalent. With 3.5 million open cybersecurity roles, it is clear that a larger pool of qualified applicants is important, and that hiring more diverse professionals will benefit everyone. Progress has been made – according to a new (ISC)² study, 66% of new entrants into the cybersecurity field in the U.S., UK, and Ireland over the last year are not white.
It is no secret that the technology industry as a whole has been largely dominated by a homogenous workforce, but the millions of unfilled cybersecurity jobs around the world may be the linchpin for change. The Center for Cybersecurity Policy and Law is releasing our whitepaper, “Diverse Perspectives, Stronger Defenses: Growing the Cybersecurity Workforce Through Diversity.” The paper explores the ways that a diverse cybersecurity workforce can promote stronger security outcomes both by increasing the number of candidates and by channeling broad perspectives, lived experiences, and creative ways of thinking to work on cybersecurity’s most pressing challenges.
The current demand for cybersecurity professionals far outweighs the number of qualified professionals available to fill the open positions. Filling those vacancies with diverse professionals who possess different cultural and professional backgrounds will bring unique insights regarding different types of attacks or vulnerabilities, leading to more effective threat identification and prevention.
Threat actors are continuously seeking to exploit our increasingly connected world through cyber-attacks that impact the entire global community. The cybersecurity workforce will be best positioned to defend against the rising severity of digital threats when it reflects the diverse nature of the threat actors themselves can help challenge conventional thinking and produce innovative methods for countering cyber threats.
There are many ways that companies are making cybersecurity more accessible to a wider set of potential cybersecurity professionals, throughout the professional lifecycle. From innovative educational programs to rethinking rigid hiring processes, from looking for nontraditional candidates to empowering the workforce companies have already hired, companies are working to hire more and more diverse professionals. The paper spotlights current actions being taken by relevant companies in the cybersecurity industry and proposes tactics for retaining and uplifting a diverse workforce.
The cybersecurity industry is facing a significant gap in the workforce which affects the ability to deter and disrupt malicious actors. Bringing in people with diverse perspectives and lived experiences will allow the cybersecurity community to harness the power of collective knowledge and cultural awareness. A diverse cybersecurity workforce will be better equipped to adapt to the ever evolving threat landscape and the sundry of threat actors dwelling all over the world.
Read Next
European Commission 2028-2034 Budget Proposal Includes Substantial Increase for Cyber, Digital Programmes
The European Commission presented its initial proposal for the European Union’s 2028-2034 financial framework that, if approved, could authorise nearly EUR 2 trillion in spending over seven years for cyber and other digital efforts.
CCPL Report: Ensuring the Longevity of the CVE Program
Because the future of the CVE program faces some uncertainty it’s time to start a dialogue about the future of the program. This report is designed to provide that starting point.
Congress’ Proposed Chip Security Act Threatens to Create New Cyber Vulnerabilities in U.S. Semiconductors
As the U.S. races toward global AI dominance, a new bill aimed at preventing diversion of innovative U.S. semiconductors to China could inadvertently make those very same chips less secure.