Advertisement
Promo

Network management Toolkit in association with http://ad.doubleclick.net/clk;216302359;14453422;v?http://www.citrix.com/lang/English/lp/lp_1688615.asp

European information security specialists 'justifying existence'

Tom Espiner ZDNet.co.uk

Published: 17 Oct 2005 18:05 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Information security professionals in Europe spend most of their time justifying their existence to upper management instead of implementing security procedures, according to a study announced on Monday.

The European results for the International Information Systems Security Certification Consortium — a not-for-profit security training company which styles itself (ISC)² — Global Information Security Workforce Study show that a quarter (25.4 percent) of respondents feel they spent most of their working day on "internal politics, gathering metrics to justify spending, or selling security to upper management."

"It is surprising that professionals whose main responsibility is security spend so much time justifying their existence. Once information security is recognised as a profession, specialists will hopefully be seen as an integral part of the business," said Sarah Bohne, director of communications and constituent services for (ISC)².

Although security specialists feel embroiled in politics, most think their influence is growing. 73.1 percent of respondents said their level of influence has increased over the last 12 months, and 33.4 percent felt their influence had "increased significantly."

Most IT security professionals think their influence will increase in the future. 78 percent expected their influence to increase over the coming year, while 37 percent expected their influence to "increase significantly".

Information security is becoming more demanding, as the skills involved become more complex and managerial, according to Bohne. "We advocate building softer skills such as managing budgets and people. [Security professionals] now have to have people skills."

Compliance was a major training need in the past year, the report says, and the number one "hot area" for training was ISO/IEC 17799 Code of Practice for Information Security Management. Information risk management; business continuity and disaster recovery planning; and security management practices were second, third and fourth most popular. Forensics was at number five. "My hypothesis is that forensics is sexier than other options. There's a lot of hype around it at the moment," Bohne said.

Certification is a good indicator of increasing expectations of professionalism, claims Bohne. "What is interesting is that certification is a good barometer of professional recognition. 23.3 percent of hiring managers cited company policy specifying information security certification when hiring. This shows the growing acceptance of information security as a profession," according to Bohne.

Out of 595 respondents, the majority were security consultants, with 29 percent IT directors or managers. 7 percent of the respondents were chief information or security officers.

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Did you find this article useful?
87 out of 173 people found this useful


Company/Topic Alerts

Create a new alert from the list below:



Related Citrix Resources

Achieving the lowest server virtualisation TCO

Consolidation through server virtualization is a powerful agent for datacenter change, but...

Achieving the lowest server virtualisation Total Cost of Ownership

Consolidation through server virtualization is a powerful agent for datacenter change, but...

Citrix XenDesktop: The Best Desktop Delivery System For Today's Demanding Business Needs

Whether you're considering your first virtual desktop solution or trying to salvage an existing...

Desktop Virtualisation: A buyer's checklist

Desktop virtualization should do more than just move desktop management to the datacenter—its real...

Five reasons why you need Citrix Essentials for Hyper-V now

This paper explores common challenges associated with server virtualization deployments and the...

Accelerate Business through a Cost-efficient Virtual Workforce

This white paper defines a virtual workforce, describes the challenges and requirements that...

See All White Papers

Video icon

Video

On The Road Blog

Logitech Bluetooth Mouse M555b

Last week I wrote about The RIght Mouse for the Job, and mentioned that Logitech had a new Bluetooth mouse which was not yet available in Switzerland. Sure enough, a couple of days... More

Post a comment

Ubuntu Netbook Remix "Acid Test" - Wra...

Time to wrap up one more open item - my informal "Acid Test" of UNR. The size of my test group has doubled (from one to two), and the results have been consistent. The conclusion... More

Post a comment

Sony goes in-between with the W-Series...

Last December, UK Vaio chief Nicolas Barendson told ZDNet UK that Sony wouldn't do netbooks in their current form factor, because such devices were in-between products that were neither... More

1 comment


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters