Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - The Cybersecurity “Skills Gap” Only Exists If People Are The Answer
Articles

The Cybersecurity “Skills Gap” Only Exists If People Are The Answer

ISBuzz TeamBy ISBuzz TeamJuly 29, 20165 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

The Problem of Unfilled Cybersecurity Jobs is that Attack Volume has Made Those Roles Feel Futile

Every day when I scan my news feed I find a new article describing a stunning scarcity of qualified cybersecurity professionals. Most recently, a study by global recruiting firm Robert Half entitled “Cybersecurity – Protecting Your Future” found that the majority of CIOs (77%) believe that they are due to face more security threats in the next five years due to a shortage of IT security talent. From the report’s description:

The days when cybersecurity was viewed as simply an IT problem are over. Across the UK, two-thirds of large businesses have been hit by a cyber-breach or attack in the last year. The impacts can affect the entire business and leave a trail of financial, operational and reputational damage in its wake. As those behind cyber-attacks become more sophisticated in their execution, the solution demands a resilient IT security strategy and skilled IT talent to be prepared for the future of cybersecurity.

The one unchallenged and recurring thread in each of these pieces is that they define the problem and solution exactly the same way: by talking about people. A look at the logical progression:

  1. Given the fact that the majority of companies have been hit by a cyber breach or attack…
  2. And given the fact that attacks and breaches can cause critical damage…
  3. It is the people behind those attacks that are becoming more sophisticated.
  4. The solution is to demand
    • Smarter people that develop more resilient strategies
    • More of those smart people to battle the army of bad guys

The issue at hand is that the problem is being framed incorrectly, and in doing so, the proposed solution is wrong too. Let’s look at some indisputable facts, and then we can get into some highly disputable solutions.

The Cybersecurity War Isn’t Being Won by Numbers

 The days when the larger army won with just sheer numbers of bodies willing to fight are over (if they ever existed in the first place). When you consider the tools of modern warfare, you see that fighting more intelligently with fewer instances of hand-to-hand combat is a much more strategic way to beat an enemy.

While we hang on to a nostalgic idea of joining the ragtag rebels to fight for freedom and somehow overcome being drastically outnumbered, it’s just not reality anymore. Battles can be won by having the largest number only when there’s no other advantage.

Instead, when we look at why our adversaries are able to overwhelm cybersecurity teams, causing a mismatch in response, the solution isn’t as simple as hiring thousands of cyber analysts.

Our Enemies Are Using Automation

A rhetorical question: how much does it cost for a cybercriminal to send 1 million phishing emails? How about 10 million? 100?

The issue is that the vast majority of cyberattacks – be they ransomware, social engineering, credential takeover, or phishing – rely on one central idea: put enough lines in the water, and you’ll eventually get something on the hook. And when doing so is fully automated with no incremental cost per million in distribution, criminals are able to overwhelm companies with the volume of their attacks.

It is because they are able to use automation and work anonymously in small groups that cybercriminals are able to thrive. For them, adding more people significantly increases their chances of getting caught, bringing the entire operation down. Instead, automation lets very small groups operate with agility, anonymity, and lets them improvise quickly to stay nimble.

People Can’t Keep Up with Automation

One of the more recent studies on the massive increase in alert volume comes from the EMA group, who’s recent report states that:

  • 92% of companies face more than 500 alerts per day
  • 88% percent of respondents said they were receiving up to 500 severe/critical alerts per day
  • 88% of the participants indicated their teams were only able to investigate 25 or fewer severe/critical events per day
  • 67% of organizations were only able to investigate 10 or fewer of their severe/critical events per day

cyber-security-resources

The math is simple, and jarring: with 500+ alerts per day, even with the best cyber analysts in the world, you’d need 150 cyber analysts working 8 hours per day just to keep up. That’s at current alert volume, and there’s no logical reason to believe that the number won’t double or triple next year.

Fighting Automation with Automation

If we’re willing to admit that simply adding more people won’t do the trick, we’re forced to rethink our approach. The only approach that can move the dial is to embrace automation the same way cybercriminals have: automate that which is repeatable and based on logic, and use people to do the higher-level things people are best served to do.

The resources behind the black hats are no greater than the resources available to the good actors. In fact, as organizations pour billions of dollars into cybersecurity, our defenses should be fully stocked. When we embrace automation, we gain ground on the bad guys. And ultimately, the perceived cybersecurity skills gap should close itself.

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

New Phishing Kit Starkiller Defeats Multi-Factor Authentication

February 23, 20264 Mins Read

ReliaQuest Uncovers Social Media Phishing Campaign Built on Trusted Tools

January 22, 20266 Mins Read

What Happens after a Phishing Email Lands in Your Inbox?

January 5, 20266 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}