backtop


Print 14 comment(s) - last by spaced_.. on Feb 20 at 9:29 PM

DOD is currently rewriting its cyber workforce policy

The U.S. Department of Defense (DOD) is rewriting its cyber workforce policy and reviewing current qualifications because it worries that too many cyber experts are underqualified or unprepared for such positions at DOD.

DOD wants to go on a hiring spree of capable cyber experts, but current certifications/qualifications necessary to work for DOD may not be enough to prepare these experts for the job ahead of them.

"One of the biggest threats to the DOD networks is the inability of DOD security professionals to secure the networks," a U.S. Army chief warrant officer assigned to U.S. Army Cyber said. "Many of these security professionals have the required certifications but no understanding how to truly secure the DOD networks and make poor decisions resulting in vulnerable networks."

One main issue is that these experts are merely required to do a lot of book training rather than hands-on training.

"The current requirements aren't turning out people who are prepared," said Jeff Moulton, a senior cyber researcher at the Georgia Tech Research Institute. "The school of hard knocks can teach quite a few lessons, but at DoD that can cost people's lives. Book training is simply not enough."


Another U.S. Army major said that one certification is not enough for an intrusion analyst, infrastructure support, incident responder, auditor and manager because these are five different professions with five completely different skill sets.

The current requirements for cyber security workers was put in place in August 2004 under DOD Directive 8570. It could use an update, especially considering technology and security measures have changed significantly since that time. And the problem is that technology changes so often that it's difficult for DOD to keep up.

"We're rewriting essentially all of the cyber workforce policy, so we are going to have an overarching cyber workforce policy that will include all of the cyber skills including cyber defenders, cyber attackers, malware analysts, all that stuff," said Richard Hale, Deputy Chief Information Officer for DOD Cybersecurity. "Then we will rewrite specific manuals underneath each."

Last month, the Pentagon said it planned to boost its cyber security unit five-fold from 900 trips to about 4,900 over the next several years.

Source: Defense News



Comments     Threshold


This article is over a month old, voting and posting comments is disabled

Degrees are a problem too
By Milliamp on 2/18/2013 11:55:23 PM , Rating: 2
I wonder how much of the chaos and compromises are performed by people with degrees?

I used to be in security deep enough to know a lot of the best people are young with a lot of free time. Not exactly the polished DoD types.

As a professional I found a lot of knowledge of security causes a lot of distrust. If you know law people don't always to assume you to be a criminal but if you know computer security that seems to be the assumption with a lot of people I have met on my way up in my career.

You have to know what bad guys will come at you with if you plan to do well defending against it.




"This is from the DailyTech.com. It's a science website." -- Rush Limbaugh














botimage
Copyright 2014 DailyTech LLC. - RSS Feed | Advertise | About Us | Ethics | FAQ | Terms, Conditions & Privacy Information | Kristopher Kubicki