<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: The next generation of Infomation Security Professionals in Career Discussions</title>
    <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15639#M1504</link>
    <description>&lt;P&gt;&amp;gt; Caute_cautim (Advocate I) posted a new reply in Career on 10-17-2018 02:28 PM in the (ISC)Â² Community :&lt;BR /&gt;&lt;BR /&gt;&amp;gt; In the future, who wants to work or have a role or place in society?&lt;BR /&gt;&lt;BR /&gt;Me!&amp;nbsp; Me!&lt;BR /&gt;&lt;BR /&gt;Oh, wait.&amp;nbsp; No, in the future I want to be retired and forgotten.&lt;BR /&gt;&lt;BR /&gt;&amp;gt; Recently it was predicted that there will always be a job in the ICT&lt;BR /&gt;&amp;gt; industry.&lt;BR /&gt;&lt;BR /&gt;Mostly as a data entry clerk, or oiling robots.&lt;BR /&gt;&lt;BR /&gt;&amp;gt; &amp;nbsp; Who is going to have the capability to carry out risk&lt;BR /&gt;&amp;gt; assessments on this increasingly interconnected, measured, pervasive sensor&lt;BR /&gt;&amp;gt; driven society, who welcomes technology without rationalising the&lt;BR /&gt;&amp;gt; implications of their decisions?&lt;BR /&gt;&lt;BR /&gt;But that's two different jobs, isn't it?&amp;nbsp; One person (usually in the C-suite) welcoming technology with open arms and no thought of the risks, and another to assess the risks and get called a Cassandra.&lt;BR /&gt;&lt;BR /&gt;&amp;gt;&amp;nbsp; Who will want to listen, let alone&lt;BR /&gt;&amp;gt; understand the issues of secure by design, privacy by design etc?&lt;BR /&gt;&lt;BR /&gt;That's not a job description.&amp;nbsp; That's the role of the student.&amp;nbsp; For every person who wants to teach, there are approximately 30 who don't want to learn.&lt;/P&gt;</description>
    <pubDate>Thu, 18 Oct 2018 17:30:46 GMT</pubDate>
    <dc:creator>rslade</dc:creator>
    <dc:date>2018-10-18T17:30:46Z</dc:date>
    <item>
      <title>The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15491#M1492</link>
      <description>&lt;P&gt;I am very interested in hearing from other Information Security professionals who are educating/training new blood in the field.&amp;nbsp; I am the director of the CyberSecurity program at the Sage Colleges in Albany, NY, and am looking for new and interesting ways of stimulating student interest in the profession.&lt;/P&gt;&lt;P&gt;The Sage program takes a "non-academic" view of the field, and at the higher levels (300-400) that seems successful.&amp;nbsp; The lower levels seem ot need a lot more structure.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I welcome any ideas, input and experience the the community may have to offer!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Michael Weisberg&lt;/P&gt;</description>
      <pubDate>Fri, 12 Oct 2018 15:30:44 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15491#M1492</guid>
      <dc:creator>MDWtheTall</dc:creator>
      <dc:date>2018-10-12T15:30:44Z</dc:date>
    </item>
    <item>
      <title>Re: The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15509#M1494</link>
      <description>&amp;gt; MDWtheTall (Viewer II) posted a new topic in Career on 10-12-2018 11:30 AM in&lt;BR /&gt;&lt;BR /&gt;LOVE the choice of screen name ....&lt;BR /&gt;&lt;BR /&gt;(Is that another "short" joke? &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;gt; &amp;nbsp; I am the director of the&lt;BR /&gt;&amp;gt; CyberSecurity program at the Sage Colleges in Albany, NY, and am looking for new&lt;BR /&gt;&amp;gt; and interesting ways of stimulating student interest in the profession.&lt;BR /&gt;&lt;BR /&gt;Ha! Any student who does not realize that infosec is *the* most interesting field&lt;BR /&gt;in technology does not deserve to be here!&lt;BR /&gt;&lt;BR /&gt;(Well, OK, I guess that still leaves the problem of convincing people who aren't in&lt;BR /&gt;the field to look inot it ...)&lt;BR /&gt;&lt;BR /&gt;&amp;gt; The Sage&lt;BR /&gt;&amp;gt; program takes a "non-academic" view of the field, and at the higher levels&lt;BR /&gt;&amp;gt; (300-400) that seems successful.&lt;BR /&gt;&lt;BR /&gt;I'm not sure how you're doing "non-academic" work at the higher levels ...&lt;BR /&gt;&lt;BR /&gt;&amp;gt;&amp;nbsp; The lower levels seem ot need a lot more&lt;BR /&gt;&amp;gt; structure.&lt;BR /&gt;&lt;BR /&gt;Well, yeah, if they are new, you need to manage content to ensure they don't dive&lt;BR /&gt;down rabbit holes before they see the whole field, but ...&lt;BR /&gt;&lt;BR /&gt;======================&lt;BR /&gt;rslade@vcn.bc.ca slade@victoria.tc.ca rslade@computercrime.org&lt;BR /&gt;"If you do buy a computer, don't turn it on." - Richards' 2nd Law&lt;BR /&gt;"Robert Slade's Guide to Computer Viruses" 0-387-94663-2&lt;BR /&gt;"Viruses Revealed" 0-07-213090-3&lt;BR /&gt;"Software Forensics" 0-07-142804-6&lt;BR /&gt;"Dictionary of Information Security" Syngress 1-59749-115-2&lt;BR /&gt;============= for back issues:&lt;BR /&gt;[Base URL] site &lt;A href="http://victoria.tc.ca/techrev/" target="_blank"&gt;http://victoria.tc.ca/techrev/&lt;/A&gt;&lt;BR /&gt;CISSP refs: [Base URL]mnbksccd.htm&lt;BR /&gt;PC Security: [Base URL]mnvrrvsc.htm&lt;BR /&gt;Security Dict.: [Base URL]secgloss.htm&lt;BR /&gt;Security Educ.: [Base URL]comseced.htm&lt;BR /&gt;Book reviews: [Base URL]mnbk.htm&lt;BR /&gt;[Base URL]review.htm&lt;BR /&gt;Partial/recent: &lt;A href="http://groups.yahoo.com/group/techbooks/" target="_blank"&gt;http://groups.yahoo.com/group/techbooks/&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://en.wikipedia.org/wiki/Robert_Slade" target="_blank"&gt;http://en.wikipedia.org/wiki/Robert_Slade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://www.infosecbc.org/links" target="_blank"&gt;http://www.infosecbc.org/links&lt;/A&gt; &lt;A href="http://twitter.com/rslade" target="_blank"&gt;http://twitter.com/rslade&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://blogs.securiteam.com/index.php/archives/author/p1/" target="_blank"&gt;http://blogs.securiteam.com/index.php/archives/author/p1/&lt;/A&gt;</description>
      <pubDate>Fri, 12 Oct 2018 18:30:00 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15509#M1494</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2018-10-12T18:30:00Z</dc:date>
    </item>
    <item>
      <title>Re: The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15516#M1495</link>
      <description>&lt;P&gt;Michael&amp;nbsp;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/52532655"&gt;@MDWtheTall&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;If by "non-academic" you mean hands-on straight tech skills, a la IT tech schools, I think such courses definitely are appropriate. Infosec folks need to know those skills to know how they are abused by the bad guys.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Note that many of the master's degree programs in our field lean heavily on such courses, because many degreed professionals are using teh grad degree to shift careers into infosec.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Side question: are you using any particular framework to guide the overall curriculum, e.g. CBK, COBIT, ISO 27000 Series, NICE, CSF, RMF, etc?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Love to learn more about your program.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Oct 2018 19:14:39 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15516#M1495</guid>
      <dc:creator>CraginS</dc:creator>
      <dc:date>2018-10-12T19:14:39Z</dc:date>
    </item>
    <item>
      <title>Re: The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15564#M1496</link>
      <description>&lt;P&gt;There is a saying, "You can lead a horse to water but you can't make him drink."&lt;/P&gt;&lt;P&gt;How do we make the horses more thirsty so they will want to indulge in this water of InfoSec that we clearly love to drink? This is a difficult challenge to undertake but it is not impossible.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The key is to make it attractive, see who shows interest and then develop them through mentoring. One of the tactics I use is to either show them a hacking demonstration or do a quick dive into a social media check up on themselves. If the response from the participants is "Cool, but meh!" move on to the next group to find your young grasshopper. If one person shows interest, then steer them to other opportunities.&lt;/P&gt;&lt;P&gt;We recently hired 2 college interns. I based my opinions on them from my interactions during the hiring phase. I thought we had hired 2 people who would blossom into InfoSec professionals. One turned out to be totally different and sadly, like that social media video going around about the young millennial girl doing a job interview, it seemed like this job was interfering with his life style. Constantly wanting to adjust his hours, wanting to reduce the hours but then complain he wasn't getting enough hours (keep in mind this was a paid internship). Wouldn't show up to meetings or return phone calls. Sad. We let him go after a couple of months. &amp;nbsp;So we whiffed on one candidate but the other is going strong.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We will keep trying. Maybe there aren't enough Infosec&amp;nbsp;"nerds" to keep the profession growing....&lt;/P&gt;&lt;P&gt;And in this instance I use the word nerd to mean someone who is intensely interested in, and extremely excited about&amp;nbsp;a specific area of study.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 15 Oct 2018 13:26:04 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15564#M1496</guid>
      <dc:creator>CISOScott</dc:creator>
      <dc:date>2018-10-15T13:26:04Z</dc:date>
    </item>
    <item>
      <title>Re: The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15581#M1499</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.isc2.org/t5/user/viewprofilepage/user-id/1602421967"&gt;@CISOScott&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;&lt;P&gt;There is a saying, "You can lead a horse to water but you can't make him drink."&lt;/P&gt;&lt;P&gt;How do we make the horses more thirsty so they will want to indulge in this water of InfoSec that we clearly love to drink? This is a difficult challenge to undertake but it is not impossible.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Maybe &lt;A href="https://tinyurl.com/yby9t5x4" target="_blank"&gt;this&lt;/A&gt; will work?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Oct 2018 11:34:23 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15581#M1499</guid>
      <dc:creator>CraginS</dc:creator>
      <dc:date>2018-10-16T11:34:23Z</dc:date>
    </item>
    <item>
      <title>Re: The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15610#M1503</link>
      <description>&lt;P&gt;In the future, who wants to work or have a role or place in society?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Recently it was predicted that there will always be a job in the ICT industry.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Who is going to have the capability to carry out risk assessments on this increasingly interconnected, measured, pervasive sensor driven society, who welcomes technology without rationalising the implications of their decisions?&amp;nbsp; Who will want to listen, let alone understand the issues of secure by design, privacy by design etc?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;</description>
      <pubDate>Wed, 17 Oct 2018 18:28:28 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15610#M1503</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2018-10-17T18:28:28Z</dc:date>
    </item>
    <item>
      <title>Re: The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15639#M1504</link>
      <description>&lt;P&gt;&amp;gt; Caute_cautim (Advocate I) posted a new reply in Career on 10-17-2018 02:28 PM in the (ISC)Â² Community :&lt;BR /&gt;&lt;BR /&gt;&amp;gt; In the future, who wants to work or have a role or place in society?&lt;BR /&gt;&lt;BR /&gt;Me!&amp;nbsp; Me!&lt;BR /&gt;&lt;BR /&gt;Oh, wait.&amp;nbsp; No, in the future I want to be retired and forgotten.&lt;BR /&gt;&lt;BR /&gt;&amp;gt; Recently it was predicted that there will always be a job in the ICT&lt;BR /&gt;&amp;gt; industry.&lt;BR /&gt;&lt;BR /&gt;Mostly as a data entry clerk, or oiling robots.&lt;BR /&gt;&lt;BR /&gt;&amp;gt; &amp;nbsp; Who is going to have the capability to carry out risk&lt;BR /&gt;&amp;gt; assessments on this increasingly interconnected, measured, pervasive sensor&lt;BR /&gt;&amp;gt; driven society, who welcomes technology without rationalising the&lt;BR /&gt;&amp;gt; implications of their decisions?&lt;BR /&gt;&lt;BR /&gt;But that's two different jobs, isn't it?&amp;nbsp; One person (usually in the C-suite) welcoming technology with open arms and no thought of the risks, and another to assess the risks and get called a Cassandra.&lt;BR /&gt;&lt;BR /&gt;&amp;gt;&amp;nbsp; Who will want to listen, let alone&lt;BR /&gt;&amp;gt; understand the issues of secure by design, privacy by design etc?&lt;BR /&gt;&lt;BR /&gt;That's not a job description.&amp;nbsp; That's the role of the student.&amp;nbsp; For every person who wants to teach, there are approximately 30 who don't want to learn.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 17:30:46 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15639#M1504</guid>
      <dc:creator>rslade</dc:creator>
      <dc:date>2018-10-18T17:30:46Z</dc:date>
    </item>
    <item>
      <title>Re: The next generation of Infomation Security Professionals</title>
      <link>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15646#M1505</link>
      <description>&lt;P&gt;You will be too busy to retire, let alone enjoy it:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.darkreading.com/cloud/(isc)-2--global-cybersecurity-workforce-short-3-million-people/d/d-id/1333060?_mc=NL_DR_EDT_DR_daily_20181018&amp;amp;cid=NL_DR_EDT_DR_daily_20181018&amp;amp;elq_mid=87233&amp;amp;elq_cid=23392365" target="_blank"&gt;https://www.darkreading.com/cloud/(isc)-2--global-cybersecurity-workforce-short-3-million-people/d/d-id/1333060?_mc=NL_DR_EDT_DR_daily_20181018&amp;amp;cid=NL_DR_EDT_DR_daily_20181018&amp;amp;elq_mid=87233&amp;amp;elq_cid=23392365&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You will be teaching the next generation of cyber personnel to apply the principles to an increasingly complex world.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Caute_cautim&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Oct 2018 19:32:57 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Career-Discussions/The-next-generation-of-Infomation-Security-Professionals/m-p/15646#M1505</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2018-10-18T19:32:57Z</dc:date>
    </item>
  </channel>
</rss>

