FireEye Breach - Supply Chain Risks and the Importance of People

FireEye Breach - Supply Chain Risks and the Importance of People

Friends,

Breaches can be significantly reduced by hiring talent. Duh, right? I know! Then why aren't most security leaders given budgets to hire talent from outside specialized staffing firms until the roles have been open 8 months? I have been sharing this fact for six years now. We don't see this problem in IT or SW staffing, where I spent 13 years. So why security? 

This week’s breach announcements show how tools alone won't protect us. Yes, we are short lots of people in our field. Yet no one organization can use that challenge as a reason they can't fill their jobs. 87% of the market is open to discussing a new role if the role is a good fit (LinkedIn). Nationally, we see security leaders not able to use outside staffing agencies unless the role has been open for 8 months on average (CyberSN and Chenxi Wang Hiring Report). Recruiting this talent is very possible. Cybersecurity talent is hard to get to and harder to match jobs and internal recruiting can’t be expected to find and match this niche skill.

Read our latest blog, from CyberSN CSO and Chief Strategist, Dom Glavach, about his take on the FireEye Breach and the importance of a talent strategy.

I share this information because I care and I have compassion for our security leaders. I know first-hand that our protectors aren't funded correctly for hiring talent and thus breaches will increase. 

Much love, 

Deidre

Deidre Diamond

Founder and CEO, CyberSN | Founder, Secure Diversity | Co-Founder, Day of Shecurity Conference | Cyversity Board Member

3 年

Truly mind blowing and not sustainable!

回复
Al (Albe) Lerberg

President - Cyber Security and Artificial Intelligence Recruiters

3 年

Yes... Yes.... amazing with how much is at risk!

Duane Brankley

Desktop / Field Support Analyst

3 年

Maybe it could be either they ARE not looking outside the BOX or it could the Snowden effect. Afraid someone they get from a contract company may Steal their Secerts.

Nothing more frustrating Deidre Diamond than not being able to leverage the expertise of companies like CyberSN because of short sighted hiring policies. And then we wonder why when we finally are able to fill a position we have zero diversify! To smarter hiring in 2021!

Deidre Diamond

Founder and CEO, CyberSN | Founder, Secure Diversity | Co-Founder, Day of Shecurity Conference | Cyversity Board Member

3 年

Cameron McEachern thanks for those points. It is true that people think the shortage of cyber talent means I have to go to the big consulting firms and pay a premium. Truth is, 82% of professionals are open to a recruiting call, these stats are in my blog. Bottom line is that bringing cyber talent in house is possible with specialized staffing support :)

要查看或添加评论,请登录

Deidre Diamond的更多文章

  • ROI for Hiring AppSec

    ROI for Hiring AppSec

    Background information: (Things to consider sharing with the client) The appsec hire ROI includes hard and soft values.…

    9 条评论
  • We Need To Train and Hire More Women in Cybersecurity

    We Need To Train and Hire More Women in Cybersecurity

    There is still time to register for this career-changing, free event! The 7th Day of Shecurity conference is upon us…

    13 条评论
  • #Shecurity2021 Welcomed 1700 Women in Cybersecurity!

    #Shecurity2021 Welcomed 1700 Women in Cybersecurity!

    Friends, When the Day of Shecurity 2021 Virtual Conference went live this week on March 23, 2021, it was electric!…

    33 条评论
  • #Shecurity2021: Going Virtual and Bigger Than Ever

    #Shecurity2021: Going Virtual and Bigger Than Ever

    Join us for our 5th free Day of Shecurity conference that will now be virtual, on March 23rd. Our one-day conference…

    11 条评论
  • 2021 Cybersecurity Jobs Outlook

    2021 Cybersecurity Jobs Outlook

    Happy New Year. After a year of uncertainty and emotional stresses, I look to 2021 with great optimism.

    13 条评论
  • How to Hire a Cyber Pro When Your Salary Offer is Low

    How to Hire a Cyber Pro When Your Salary Offer is Low

    Author - Mark Aiello, President, CyberSN, Originally published 12/02/20 on CyberSN.com Hiring cybersecurity…

    10 条评论
  • Cybersecurity Salaries and Compensation: Negotiate the Best Deal

    Cybersecurity Salaries and Compensation: Negotiate the Best Deal

    In today’s competitive cybersecurity job market, being comfortable having conversations with employers about…

    2 条评论
  • National Cybersecurity Career Awareness Week

    National Cybersecurity Career Awareness Week

    Hi friends, National Cybersecurity Career Awareness Week (NCCAW), brought to you by the National Initiative for…

  • Smart Cities and Privacy: A Choice, Or Not?

    Smart Cities and Privacy: A Choice, Or Not?

    Friends, Moderating the Bay area Cybersecurity Symposium for Smart Cities event last week made me think deeper about…

  • Why Inclusion Comes Before Diversity

    Why Inclusion Comes Before Diversity

    Diversity is often discussed at leadership summits and in C-level corporate offices around the country. It’s clear that…

    5 条评论

社区洞察

其他会员也浏览了