论文标题

要了解网络安全方面的技能差距

Towards Understanding the Skill Gap in Cybersecurity

论文作者

Goupil, Francois, Laskov, Pavel, Pekaric, Irdin, Felderer, Michael, Dürr, Alexander, Thiesse, Frederic

论文摘要

鉴于网络安全持续存在的“军备竞赛”,该领域熟练的专业人员的短缺是计算机科学中最强大的专业人员之一。目前,网络安全需求未满足的人员需求估计全球超过300万个就业机会。此外,现有劳动力的资格在很大程度上被认为是不够的。我们试图更深入地了解网络安全中当前技能差距的性质。为此,我们使用两种技能特征将工作广告和学术课程的数据关联:既定技能框架的手动定义以及通过文本挖掘工具自动得出的“技能主题”。我们的分析表明,这两种分析技术之间有着强烈的共识,并揭示了几种关键技能类别的大量供应,例如软件和应用程序安全,安全管理,需求工程,合规性和认证。根据我们的分析结果,我们为网络安全中未来的课程开发提供了建议,以减少确定的技能差距。

Given the ongoing "arms race" in cybersecurity, the shortage of skilled professionals in this field is one of the strongest in computer science. The currently unmet staffing demand in cybersecurity is estimated at over 3 million jobs worldwide. Furthermore, the qualifications of the existing workforce are largely believed to be insufficient. We attempt to gain deeper insights into the nature of the current skill gap in cybersecurity. To this end, we correlate data from job ads and academic curricula using two kinds of skill characterizations: manual definitions from established skill frameworks as well as "skill topics" automatically derived by text mining tools. Our analysis shows a strong agreement between these two analysis techniques and reveals a substantial undersupply in several crucial skill categories, e.g., software and application security, security management, requirements engineering, compliance, and certification. Based on the results of our analysis, we provide recommendations for future curricula development in cybersecurity so as to decrease the identified skill gaps.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源