cybersecurity risk managertoICT resilience manager
A cybersecurity risk manager already meets 53% of what the ICT resilience manager role asks for. The move turns on 8 required skills not yet in the profile.
This move: 51.8 of 100 · moderate
1 Share of the ICT resilience manager role’s weighted skill requirement already met by the cybersecurity risk manager profile. Required skills count in full, supplementary skills at 0.35. Directional: the figure for the reverse move differs. 2 Combines what is missing with how specialised it is, so a gap of general skills scores easier than the same number of narrow ones.
Table 2 · What you already bring
Of the 20 skills that carry over, these are the ones fewest other occupations ask for. A ICT resilience manager role needs them, and most people applying for one will not have them already. This is the part of a cybersecurity risk manager background worth leading with.
- already held lead disaster recovery exercises management skills
- already held manage disaster recovery plans management skills
- already held define security policies management skills
- already held ICT recovery techniques information and communication technologies (icts)
- already held ICT safety working with computers
- already held ethical hacking principles information and communication technologies (icts)
All 20 carried skills, including the 12 the ICT resilience manager role treats as required.
Table 3 · What you would need to learn
The 22 missing skills fall into 7 areas of the ESCO skill hierarchy, numbered below in the order worth working in: the areas carrying the most required skills come first, and inside each one the required skills sit above the supplementary ones.
- required, not held implement ICT recovery system required
- required, not held manage IT security compliances required
- required, not held perform ICT security testing required
- required, not held analyse business processes required
- required, not held analyse the context of an organisation required
- optional, not held analyse business requirements optional
- optional, not held provide cost benefit analysis reports optional
- required, not held develop contingency plans for emergencies required
- optional, not held coordinate technological activities optional
- optional, not held implement a management system optional
- optional, not held manage budgets optional
- optional, not held perform project management optional
- required, not held system backup best practice required
- optional, not held core banking software optional
- optional, not held human-computer interaction optional
- required, not held comply with legal regulations required
- optional, not held advise on strengthening security optional
- optional, not held respond to incidents in cloud optional
- optional, not held build business relationships optional
- optional, not held perform procurement processes optional
- optional, not held train employees optional
1 further area in the appendix
Table 4 · Where to start
The 3 entries a ICT resilience manager role is least likely to hire without. The ordering is computed from the skill data, not from what pays.
- 01 develop contingency plans for emergencies skill · sector specific
- 02 implement ICT recovery system skill · sector specific
- 03 manage IT security compliances skill · sector specific
Each entry opens a course search for that skill. Career Overlap earns nothing from these links.
Appendix · The rest of the record
All 20 skills that carry over
- already held ICT recovery techniques knowledge
- already held cyber security knowledge
- already held develop information security strategy skill
- already held execute ICT audits skill
- already held identify ICT security risks skill
- already held implement ICT risk management skill
- already held internal risk management policy knowledge
- already held lead disaster recovery exercises skill
- already held manage disaster recovery plans skill
- already held manage system security skill
- already held organisational resilience knowledge
- already held security engineering knowledge
- already held ICT network security risks knowledge
- already held ICT process quality models knowledge
- already held ICT safety skill
- already held ICT system user requirements knowledge
- already held cloud security and compliance knowledge
- already held define security policies skill
- already held ethical hacking principles knowledge
- already held manage keys for data protection skill
The 1 learning area not shown above
- optional, not held business process modelling optional
14 supplementary skills, helpful but not required
- optional, not held advise on strengthening security optional
- optional, not held business process modelling optional
- optional, not held coordinate technological activities optional
- optional, not held core banking software optional
- optional, not held human-computer interaction optional
- optional, not held respond to incidents in cloud optional
- optional, not held analyse business requirements optional
- optional, not held build business relationships optional
- optional, not held implement a management system optional
- optional, not held manage budgets optional
- optional, not held perform procurement processes optional
- optional, not held perform project management optional
- optional, not held provide cost benefit analysis reports optional
- optional, not held train employees optional
52 held skills the ICT resilience manager role does not ask for
- not needed by the target role ICT encryption knowledge
- not needed by the target role ICT performance analysis methods knowledge
- not needed by the target role ICT problem management techniques knowledge
- not needed by the target role ICT project management knowledge
- not needed by the target role ICT quality policy knowledge
- not needed by the target role ICT security legislation knowledge
- not needed by the target role ICT security standards knowledge
- not needed by the target role Internet of Things knowledge
- not needed by the target role Open source model knowledge
- not needed by the target role Outsourcing model knowledge
- not needed by the target role advice on security risk management skill
- not needed by the target role assessment of risks and threats knowledge
- not needed by the target role attack vectors knowledge
- not needed by the target role audit techniques knowledge
- not needed by the target role cloud monitoring and reporting knowledge
- not needed by the target role communicate with stakeholders skill
- not needed by the target role computer forensics knowledge
- not needed by the target role cyber attack counter-measures knowledge
- not needed by the target role decision support systems knowledge
- not needed by the target role define technology strategy skill
- not needed by the target role design for organisational complexity skill
- not needed by the target role develop with cloud services skill
- not needed by the target role domain name service knowledge
- not needed by the target role engage with stakeholders skill
- not needed by the target role ensure adherence to organisational ICT standards skill
- not needed by the target role establish an ICT security prevention plan skill
- not needed by the target role establish an Information Security Management System skill
- not needed by the target role hybrid model knowledge
- not needed by the target role implement ICT security policies skill
- not needed by the target role implement a firewall skill
- not needed by the target role implement a virtual private network skill
- not needed by the target role implement anti-virus software skill
- not needed by the target role implement cloud security and compliance skill
- not needed by the target role implement spam protection skill
- not needed by the target role information confidentiality knowledge
- not needed by the target role information security strategy knowledge
- not needed by the target role internet governance knowledge
- not needed by the target role investment analysis knowledge
- not needed by the target role legal requirements of ICT products knowledge
- not needed by the target role levels of software testing knowledge
12 further entries not listed here
4 gaps that are knowledge rather than practice
Knowledge gaps usually close through study. Practical skill gaps usually need something you can point at.
- required, not held system backup best practice required
- optional, not held business process modelling optional
- optional, not held core banking software optional
- optional, not held human-computer interaction optional
Other moves recorded from cybersecurity risk manager
How this record was compiled
Both occupations are taken from ESCO, which lists the skills and knowledge each occupation is expected to have and marks every one required or optional. Nothing here is a prediction about hiring, and nothing here knows that a particular employer wants a particular certificate. Treat Table 3 as a starting point for your own research rather than a syllabus. The full method states what these figures can and cannot tell you.