Women now almost a quarter of cyber security workforce
Women now make up almost a quarter of the cyber security workforce, according to a study that uses a more accurate methodology, claims (ISC)² – the world’s largest non-profit association of certified cyber security professionals.
Past (ISC)² research had estimated the percentage of women working in cyber security at 11%, but with a change to research methodology – including surveying IT/ICT professionals who spend at least 25% of their time on cyber security responsibilities, the estimate has risen to 24%.
While the stronger representation of women in the cyber security workforce is encouraging, (ISC)² said the 2019 Women in cyber security report indicates that challenges such as wage inequality remain.
“The data confirms what we’ve been seeing for the past few years on the ground. More women are coming into the field of cyber security with post-graduate degrees and not only working in the trenches, but also in the C-suite,” said (ISC)² CEO David Shearer.
“Women in high-level positions will foster more inclusion and inspire young women to join the industry, and there are certainly many exciting opportunities available for those seeking to inspire a safe and secure cyber world. Diversity only makes us stronger.”
Signs of progress
The data shows that the newest generation of professional entrants into cyber security is more female than in the past, with 45% of women being millennials, compared with just 33% of men. This is expected to change the face of the cyber security profession in the years to come.
Women also bring higher levels of education to cyber security, the study shows. More women (52%) in the survey hold a post-graduate degree compared with just 44% of their male counterparts.
The report also found that although men still outnumber women in cyber security by about three to one overall, women in the field are advancing to leadership positions. According to survey respondents, higher percentages of women than men are attaining senior leadership and decision-making positions.
Among chief technology officers, 7% are women, while 2% are men. In the role of vice-president of IT, 9% are women, while 5% are men. Among IT directors, 18% are women while 14% are men, and women make up 28% of those in C-level or executive roles compared with 19% for men.
“It’s an encouraging sign that more women are succeeding in cyber security and moving up through the ranks,” said Jennifer Minella, vice-president of engineering & security at Carolina Advanced Digital and chairperson of the (ISC)² Board of Directors.
“For many years this hasn’t been the case, and we need to continue to do all we can to make ours a welcoming profession for the most talented and innovative individuals, regardless of gender,” she said.
Challenges remain
While there is evidence of progress as more women enter into and succeed in the field of cyber security, the report also indicates that pay inequities persist.
The data shows that 17% of women globally reported annual salaries between $50,000 and $90,000 compared with 29% of men, and 15% of women earn between $100,000 and $499,999, while 20% of men earn at least that much.
The report indicates that despite these differences, men and women share a lot of the same concerns about their roles, including lack of commitment from upper management, the reputation of their organisation, risk of seeing their job outsourced, lack of a good work/life balance, the threat of artificial intelligence (AI) reducing the need for cyber security workers, and a lack of standardised cyber security terminology to communicate effectively within their organisations.
Results presented in the report are extracted from the 2018 Cyber security workforce study, conducted by (ISC)² and Spiceworks in August 2018.
source computerweekly
Industry: Cyber Security News
Latest Jobs
-
- Public Sector Cyber Security Sales | UK
- England
- N/A
-
Public Sector Cyber Security Sales | UK UK | Remote / Hybrid A cyber security provider is seeking a Public Sector Sales professional to drive growth across UK government and public sector organisations. Must have current Cyber Security sales experience. Responsibilities Generate new business selling cyber security solutions into UK public sector Build relationships with CIO, CISO and senior technology stakeholders Manage the full sales cycle from opportunity to contract close Develop pipeline across central government, local government and public sector bodies Support bids, tenders and framework opportunities Experience Proven cyber security sales experience in the UK Track record selling into public sector organisations Familiarity with CCS, G Cloud or other government frameworks Strong stakeholder engagement and deal management skills Location UK based Security Requirements Eligible to obtain UK Security Clearance
-
- Security Architect | MoD - Security Cleared. OUTSIDE IR35 | Hampshire
- N/A
- Outside IR35
-
Security Architect | MOD | Security Cleared | Outside IR35 | Hampshire Commutable The successful candidate must be willing to undergo DV Clearance, ideally already holding active clearance. You will produce high and low level security architecture documentation, guiding and validating designs for systems deployed within sensitive environments. The role requires providing specialist security input into solution design, service transition and change initiatives, working closely with engineering, operations, client and third party stakeholders. You must have current hands on architectural experience, including VMware secure platform design and virtualisation architecture, alongside AWS expertise. This is an outside IR35 contract- 6 month rolling. Part of a longer term MoD project
-
- Active Directory | RBA engineer | UK Remote | SC Clearable
- United Kingdom
- N/A
-
Technical Active Directory (AD) and RBA specialist needed to play a key part in complex, enterprise scale Active Directory and access transformation programmes. You will work alongside senior team, helping reshape access models, modernise legacy directory structures and strengthen security posture across secure environments. This is hands on delivery within high impact projects where your work directly improves access control, compliance and operational resilience. Active UK Security Clearance required. This is a remote role with client travel. Implementation of Role Based Access Control across large AD estates Restructuring complex permission models, security groups and delegated access Supporting domain controller upgrades and core directory improvements Applying security hardening standards and remediating audit findings Enhancing authentication, policy and access governance frameworks Troubleshooting and resolving technical AD challenges within live environments Producing robust technical documentation and identifying project risks You must have the following technical experience Enterprise Active Directory administration Role Based Access and permission remediation OU design and governance Group Policy management Security group delegation models DNS and DHCP services Kerberos authentication / NTLM PowerShell scripting and automation Azure AD | Entra ID Hybrid identity environments Identity Governance PAM
-
- Identity and Access Management Consultant (Saviynt & Microsoft Entra) | UK
- United Kingdom
- N/A
-
Role summary Technical IAM consultant delivering identity governance and cloud identity solutions to enterprise clients. What you will do Implement / Configure / Deploy Saviynt IGA / Microsoft Entra solutions: Lead technical workshops, gather requirements and translate into solution designs. Troubleshoot complex issues, support testing and deployments. Produce technical artefacts and configuration guides. Key skills Hands-on Saviynt IGA experience (workflow, connectors, access governance). Strong practical knowledge of Microsoft Entra ID / Azure AD identity and access controls. Understanding of identity protocols (SAML, OAuth, OpenID Connect) and hybrid identity. Experience with APIs / REST for integrations and automation. What we are looking for Proven delivery experience in IAM / IGA projects, preferably in consulting. Confident communicator with client-facing delivery exposure.