Hey, my first byline since disability leave is up at Dark Reading! It's about the hiring gap in cybersecurity and where it comes from. Big thanks to @Xavier and @hexamander for helping me with the research. It ended up being pretty involved, but with help from my boss, it found focus. #DarkReading #journalism #TheEdge #HiringGap #JobMarket #SelfPromotion https://www.darkreading.com/cybersecurity-operations/hiring-gap-not-talent-gap
What Talent Gap? Hiring Practices Are the Real Problem

While the need for cybersecurity talent still exists, the budget may not. Here's how to maximize security staff despite hiring freezes.

@spiegelmama my problem with the "just automate work" advice is that that isn't free, either. If your people are already crushed under the workload, they don't have time to build things, and you don't have budget to buy tools -- or if you *do*, your people don't have the time to filter the few good tools from mass of snake oil and integrate it into the workflows.
@spiegelmama @Xavier @hexamander So glad you wrote this -- there's a serious disconnect between the understaffed security teams, stats that make it sound like there are a million openings available, and experienced security pros who can't find a job
@spiegelmama @Xavier @hexamander the article really hits the nail on the head with this quote "all that the surveys and studies tell us is that the cybersecurity sector is inadequately staffed, not that companies are looking to hire or that there are no people to fill positions."
There is work that needs to be done and plenty of #infosec professionals who want to do it. But no one wants to pay for the work. I fear with less business regulation on the way it's only going to get worse

@spiegelmama @Xavier Well written! There's a major problem with job listings that request a mid-tier to senior analyst's experience, and then offer intern pay.

Between that and ghost listings that do not correlate to actual jobs, I have a hard time believing reports of a shortage.