Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Continuing Education
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
CybersecurityManagementSecurity Leadership and ManagementSecurity & Business ResilienceSecurity Education & Training

How to fix the growing cybersecurity skills gap

By Steve Benton
Hand on keyboard

Image via Unsplash

April 1, 2024

Cyber and ransomware threats are growing at a rapid rate, critically endangering organizations’ sensitive data. In 2023, the global average cost of a data breach reached USD 4.45 million, a 15% increase over 3 years — predicted to reach $9.5 trillion USD in 2024. What’s more, organizations are now facing highly intelligent, AI-powered threats – including advanced phishing attacks, deep fakes, and fraudulent phone calls — that are increasingly challenging to identify and respond to. Just recently, the FBI warned of hackers burrowing deep into U.S. cyberinfrastructure — with the intention to cause damage to our nation’s electrical grid, transportation systems, and other critical infrastructure. Clearly, AI-powered threats are now reaching critical levels, and organizations across all sectors must respond. 

Amid this growing threat, organizations also continue to face challenges with bridging the cybersecurity skills gap — from security analysts to IT professionals — with 71% of organizations reporting that the cybersecurity skills shortage has impacted them. This gap can be caused by not giving cybersecurity teams enough opportunities to learn and grow within the organization — and as a result, failing to retain talent in the long run. As the threat landscape becomes more complex, and AI technology continues to advance in lockstep, companies must act now to ensure their security and IT teams are prepared for this ongoing shift. With this, providing upskilling opportunities and education about the organization and its business becomes ever more critical in assessing and adapting to new threats. Below are three tips organizations should keep in mind, to confirm that their security and IT workforce is prepared to face evolving threats.

Upgrade upskilling initiatives

Organizations must provide constant upskilling initiatives surrounding artificial intelligence (AI) and machine learning technologies company-wide to ensure that no employee falls behind as AI continues to take hold. Using and understanding AI tools are now essential skills, especially as bad actors also continue to leverage AI to carry out advanced attacks. Companies must provide security and IT personnel with comprehensive, ongoing training to not only understand how to use these tools to streamline productivity, but also how hackers can leverage the tech to cause damage.

As AI technology evolves rapidly, training must be provided on a very regular basis. Cybersecurity professionals must be aware of how AI tools should be used (and shouldn’t), how to leverage them responsibly and how they collect and store data. Today, one-size-fits-all training modules will no longer suffice — upskilling must be interactive and personalized to truly inform security professionals. Training can be made even more engaging through gamification and fitting in modules alongside work. As AI threats are extremely complex, providing tailored education is a must to equip security and IT personnel for success.

Promote relevant certifications and industry organizations

Security and IT leaders should be encouraged to gain relevant certifications and join industry organizations — including the Information Systems Security Association (ISSA), Cloud Security Alliance (CSA) and the Information Systems Audit and Control Association (ISACA), for example. These organizations give employees the forum to openly discuss and learn more about emerging technologies and industry trends outside of the workplace.

Certifications — through programs including CIPP, JD, and CISSP for example — provide critical skills that can be valuable in detecting and preventing new threats. Encouraging cybersecurity professionals to join relevant organizations and gain new certifications directly enhances the organization’s overall security posture and offers professionals an advanced and diversified knowledge of the threat landscape. Failing to invest in your employees by encouraging certifications they can take pride in is the shortest route to losing your best talent.

Shift workflows for security leaders

Organizations looking to upskill their cybersecurity professionals should consider adjusting and reorganizing key workflows to give the entire security team — aside from just the CISO — ample time to research emerging threats and remain up to date on what the ramifications of these threats may be. By automating repetitive tasks for these team members or restructuring key processes and timelines, the entire team, from CISO to analyst, can have more time to dedicate towards staying ahead of industry trends and cyber-attacks, ultimately strengthening the organization’s ability to detect and respond to threats in the long run. Giving employees time and space to be curious and explore the latest threat intelligence, commentary and insight — including topic-based tabletop exercises or red teaming — will yield significant dividends in understanding the organization's true security posture and preparedness.

In today’s cybersecurity landscape, companies must strive to be a learning-forward organization. Tangible adoption of this principle must go beyond formal skills and training — every encounter your teams have with a threat or an attack is a learning opportunity. In the midst of an incident, team members should be encouraged to apply their skills and expertise without the fear of post-incident blame, which only limits response and hinders loyalty. This cycle ensures the team is better equipped to apply their skills and decision-making if an incident occurs, minimizing disruption and harm to the organization and its customers.

Providing security and IT teams with a full spectrum of tools, opportunities and industry knowledge needed to succeed is now critical — to not only help advance their career and knowledge as cybersecurity professionals but to bolster the entire organization’s security posture. A more informed security team will be better equipped to quickly and independently identify new threats and spot vulnerabilities. As AI threats evolve faster than we can keep up, organizations must provide the upskilling initiatives and educational opportunities to power success for their security and IT teams in 2024 — or risk falling prey to data breaches or cyber-attacks.  

KEYWORDS: Artificial Intelligence (AI) Security cyber risk mitigation cyber security leadership cyber security threats ransomware security training

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Steve benton headshot

Steve Benton is the Vice President of Threat Research at Anomali.

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Career Intelligence
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
  • The Most Influential People in Security 2025

    Security’s Most Influential People in Security 2025

    Security Magazine’s 2025 Most Influential People in...
    Most Influential People in Security
    By: Security Staff
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the Security audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of Security or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • critical event management
    Sponsored byEverbridge

    Why a Unified View Across IT, Continuity, and Security Makes or Breaks Crisis Response

  • Charlotte Star Room
    Sponsored byAMAROK

    In an Uncertain Economy, Security Is a Necessity - Not an Afterthought

  • Sureview screen
    Sponsored bySureView Systems

    The Evolution of Automation in the Command Center

Popular Stories

Cybersecurity trends of 2025

3 Top Cybersecurity Trends from 2025

Red laptop

Security Leaders Discuss SitusAMC Cyberattack

Green code

Logitech Confirms Data Breach, Security Leaders Respond

Neon human and android hands

65% of the Forbes AI 50 List Leaked Sensitive Information

The Louvre

After the Theft: Why Camera Upgrades Should Begin With a Risk Assessment

Top Cybersecurity Leaders

Events

September 18, 2025

Security Under Fire: Insights on Active Shooter Preparedness and Recovery

ON DEMAND: In today’s complex threat environment, active shooter incidents demand swift, coordinated and well-informed responses.

December 11, 2025

Responding to Evolving Threats in Retail Environments

Retail security professionals are facing an increasingly complex array of security challenges — everything from organized retail crime to evolving cyber-physical threats and public safety concerns.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products

Related Articles

  • 5 Minutes with Riccardo Ocleppo

    How to close the widening AI and cybersecurity skills gap

    See More
  • Women shaking hands

    How to bridge the cybersecurity skills gap — Take a risk

    See More
  • employee teamwork

    Growing cybersecurity skills gap necessitates human factor security

    See More

Related Products

See More Products
  • security culture.webp

    Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

  • school security.jpg

    School Security: How to Build and Strengthen a School Safety Program

  • The Complete Guide to Physical Security

See More Products
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2025. All Rights Reserved BNP Media.

Design, CMS, Hosting & Web Development :: ePublishing