Is the current talent shortage in IT affecting your security posture?

970 viewscircle icon4 Comments
Sort by:
Head of Security in Software4 years ago

It has taken me more than 6 months to find a good cloud security engineer because people are so comfortable with tools that if you want them to do some of these things the old way, they have no idea what to do.

If you need so many skills, then the pay scale increases. You have to come up with a completely separate business justification for why somebody on your team is asking for so much money, when there are other folks on your team who are not even on par.

Lightbulb on2
Chief Security Officer, VP of Info Svc, Analytics and Cloud Infra & Operations in Software4 years ago

I was actually having a conversation with someone who was talking about a recent database security issue and they said the problem is that the database creators didn't create a flag to keep your database off the internet, like a single widget. And I said, "No. That's not a problem. The real problem is that we've made it too simple and now everyone expects the SaaS or the product or the application to solve all of my ills." It is so hard to find network engineers today who I can sit down and say, "Explain classless inter-domain routing (CIDR) and subnetting to me." They're like, "I just have Amazon do that. I don't know how to do any of that."

I've got a really good recruiting firm that's found needles in a stack of needles for me. But if I’m looking for a cloud security engineer because I want cloud, network, Linux systems, and security, my recruiters are like, "Pick 2. I can't do all 4 of those." But I'm not willing to pick two. I need all 4.

Lightbulb on2 circle icon2 Replies
no title4 years ago

They don't have a clue, they have no understanding of what that is. I was a networking specialist for years and years. As a chief of engineering for my last company I was trying to find people skilled in both programming and networking, and the lack of understanding of networking is truly unbelievable and abysmal.

Lightbulb on2
no title4 years ago

I do management and monitoring and we often hear that there's a dearth of network engineers out there. CIOs are coming to us and saying, "People don't know how to manage their networks."

Lightbulb on2

Content you might like

< 1:1014%

1:10-2541%

1:25-5027%

1:51-10011%

1:101-2003%

1:201-10003%

>1:1000

View Results

Standardized protocols11%

Design principles51%

Open-source tooling17%

All of the above are equally important.17%

Other (tell us in the comments!)2%

View Results