Careers & People

10/12/2018
05:00 PM
50%
50%

Most IT Security Pros Want to Change Jobs

They cite five main reasons for wanting to move on - and what it would take to retain them.

If you're an IT security professional looking for a new job, you're not alone. A new report on IT security job trends finds that 60% of survey respondents are looking to leave their current positions.

Limits on job growth and dissatisfaction with their current jobs are the leading reasons security pros say they are seeking a change, according to the report. An unhealthy work environment, lack of IT security prioritization, and unclear job expectations round out the top five drivers for change.

What would it take for the survey respondents to stay in their current positions? Improved work-life balance, management who takes their security concerns seriously, and better sponsorship for new courses and certifications are the big winners.

Read more here.

 

Black Hat Europe returns to London Dec 3-6 2018  with hands-on technical Trainings, cutting-edge Briefings, Arsenal open-source tool demonstrations, top-tier security solutions and service providers in the Business Hall. Click for information on the conference and to register.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
RyanSepe
100%
0%
RyanSepe,
User Rank: Ninja
10/15/2018 | 9:29:44 AM
An unhealthy work environment (Brand Reputation)
Historically, Information Security has been seen as the NO police. This poor brand reputation of the department makes other departments less agreeable towards collaboration. As security professionals we understand that if security is not ingrained in development of apps, processes, etc that it is less effective and more reactive then proactive. This is starting to change but I would say no where close to where it needs to be to make for a comfortable work environment.
RyanSepe
50%
50%
RyanSepe,
User Rank: Ninja
10/15/2018 | 9:25:30 AM
Lack of IT security prioritization
The Security field has been changing in a more positive fashion but its still not to the point where I would consider the Security field ideal. More companies are taking an interest in security, but if you don't have a CISO that has a seat at the table it seems to take a band-aid approach and doesn't align with best practices. In this way it is very difficult to prioritize security based endeavors.
Veterans Find New Roles in Enterprise Cybersecurity
Kelly Sheridan, Staff Editor, Dark Reading,  11/12/2018
Empathy: The Next Killer App for Cybersecurity?
Shay Colson, CISSP, Senior Manager, CyberClarity360,  11/13/2018
Understanding Evil Twin AP Attacks and How to Prevent Them
Ryan Orsi, Director of Product Management for Wi-Fi at WatchGuard Technologies,  11/14/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Flash Poll
Online Malware and Threats: A Profile of Today's Security Posture
Online Malware and Threats: A Profile of Today's Security Posture
This report offers insight on how security professionals plan to invest in cybersecurity, and how they are prioritizing their resources. Find out what your peers have planned today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-15769
PUBLISHED: 2018-11-16
RSA BSAFE Micro Edition Suite versions prior to 4.0.11 (in 4.0.x series) and versions prior to 4.1.6.2 (in 4.1.x series) contain a key management error issue. A malicious TLS server could potentially cause a Denial Of Service (DoS) on TLS clients during the handshake when a very large prime value is...
CVE-2018-18955
PUBLISHED: 2018-11-16
In the Linux kernel 4.15.x through 4.19.x before 4.19.2, map_write() in kernel/user_namespace.c allows privilege escalation because it mishandles nested user namespaces with more than 5 UID or GID ranges. A user who has CAP_SYS_ADMIN in an affected user namespace can bypass access controls on resour...
CVE-2018-19311
PUBLISHED: 2018-11-16
Centreon 3.4.x allows XSS via the Service field to the main.php?p=20201 URI, as demonstrated by the "Monitoring > Status Details > Services" screen.
CVE-2018-19312
PUBLISHED: 2018-11-16
Centreon 3.4.x allows SQL Injection via the searchVM parameter to the main.php?p=20408 URI.
CVE-2018-19318
PUBLISHED: 2018-11-16
SRCMS 3.0.0 allows CSRF via admin.php?m=Admin&c=manager&a=update to change the username and password of the super administrator account.