Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

« Auctioning Vulnerabilities and Making an Honest Buck in Security Research | Main | Malware Poised to Avoid Behavioral Analysis »

Security Skills in High Demand

IT professionals are used to keeping up with changing demands for skills but understanding security is a requirements for all of us now. Understanding how to secure distributed applications, especially those that use Service Oriented Architectures, is essential for all developers; see the article Security and Service Oriented Architectures at the Messaging and Web Security Community Digital Library for more.

Unlike other skills, like project management, C++, human-computer interface, you can't pass security off to someone else. If you have a role in development, administration or maintenance, you have security responsibilities. This line of thinking is borne out by a recent ComputerWorld article on 12 IT Skills that Employers Can't Say No To

Quoting Howard Schmidt, president of the Information Systems Security Association and former chief information security officer and chief security strategist at eBay, the article notes:

"In virtually every job description I've seen in the last six months, there's been some use of the word security in there," he says. "Employers are asking for the ability to create a secure environment, whether the person is running the e-mail server or doing software development. It's becoming part of the job description."

This, Schmidt says, mirrors the trend toward integrating security into companies' day-to-day operations rather than considering it an add-on role performed by a specialist. Companies will still need security specialists and subject-matter experts, Schmidt says, but more and more, every IT person a company hires will have to have an understanding of the security ramifications of his area.

TrackBack

TrackBack URL for this entry:
http://www.realtime-websecurity.com/type/mt-tb.cgi/354

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net