Career Overlap Transition record Edition 1 · ESCO v1.2.1
Table 1Transition record

ICT disaster recovery analysttocybersecurity risk manager

A ICT disaster recovery analyst already meets 27% of what the cybersecurity risk manager role asks for. The move turns on 15 required skills not yet in the profile.

From ICT disaster recovery analyst
27%
Overlap1
To cybersecurity risk manager
17 Skills carried over
15 Required, not held
79.8 Difficulty2
adjacent 0–30
moderate 30–55
substantial 55–75
career change 75–100
this move, 79.8

This move: 79.8 of 100 · career change

1 Share of the cybersecurity risk manager role’s weighted skill requirement already met by the ICT disaster recovery analyst profile. Required skills count in full, supplementary skills at 0.35. Directional: the figure for the reverse move differs. 2 Combines what is missing with how specialised it is, so a gap of general skills scores easier than the same number of narrow ones.

Table 2

Table 2 · What you already bring

Of the 17 skills that carry over, these are the ones fewest other occupations ask for. A cybersecurity risk manager role needs them, and most people applying for one will not have them already. This is the part of a ICT disaster recovery analyst background worth leading with.

Skill the target role also needs Area
  • already held ICT problem management techniques information and communication technologies (icts)
  • already held define security policies management skills
  • already held manage disaster recovery plans management skills
  • already held ICT recovery techniques information and communication technologies (icts)
  • already held develop information security strategy assisting and caring
  • already held manage system security working with computers

All 17 carried skills, including the 7 the cybersecurity risk manager role treats as required.

Table 3

Table 3 · What you would need to learn

The 55 missing skills fall into 9 areas of the ESCO skill hierarchy, numbered below in the order worth working in: the areas carrying the most required skills come first, and inside each one the required skills sit above the supplementary ones.

Skill to acquire Tier
01 information and communication technologies (icts) 4 required, 18 supplementary
  • required, not held ICT security standards required
  • required, not held attack vectors required
  • required, not held ethical hacking principles required
  • required, not held assessment of risks and threats required
  • optional, not held ICT encryption optional
  • optional, not held ICT system user requirements optional
  • optional, not held Internet of Things optional
  • optional, not held Open source model optional
  • optional, not held Outsourcing model optional
  • optional, not held cloud monitoring and reporting optional
  • optional, not held cloud security and compliance optional
  • optional, not held computer forensics optional
  • optional, not held decision support systems optional
  • optional, not held domain name service optional
  • optional, not held hybrid model optional
  • optional, not held information confidentiality optional
  • optional, not held internet governance optional
  • optional, not held mobile device management optional
  • optional, not held service-oriented modelling optional
  • optional, not held tools for ICT test automation optional
  • optional, not held web application security threats optional
  • optional, not held systems development life-cycle optional
02 information skills 2 required, 2 supplementary
  • required, not held advice on security risk management required
  • required, not held implement ICT risk management required
  • optional, not held execute ICT audits optional
  • optional, not held implement cloud security and compliance optional
03 communication, collaboration and creativity 2 required, 1 supplementary
  • required, not held communicate with stakeholders required
  • required, not held engage with stakeholders required
  • optional, not held design for organisational complexity optional
04 assisting and caring 2 required
  • required, not held ensure adherence to organisational ICT standards required
  • required, not held establish an Information Security Management System required
05 working with computers 1 required, 11 supplementary
  • required, not held ICT safety required
  • optional, not held develop with cloud services optional
  • optional, not held implement ICT security policies optional
  • optional, not held implement a firewall optional
  • optional, not held implement anti-virus software optional
  • optional, not held implement spam protection optional
  • optional, not held manage keys for data protection optional
  • optional, not held use an application-specific interface optional
  • optional, not held remove computer virus or malware from a computer optional
  • optional, not held solve ICT system problems optional
  • optional, not held use ICT ticketing system optional
  • optional, not held use back-up and recovery tools optional
06 business, administration and law 1 required, 6 supplementary
  • required, not held risk management required
  • optional, not held ICT project management optional
  • optional, not held ICT quality policy optional
  • optional, not held ICT security legislation optional
  • optional, not held investment analysis optional
  • optional, not held audit techniques optional
  • optional, not held legal requirements of ICT products optional

3 further areas in the appendix

Table 4

Table 4 · Where to start

The 3 entries a cybersecurity risk manager role is least likely to hire without. The ordering is computed from the skill data, not from what pays.

Each entry opens a course search for that skill. Career Overlap earns nothing from these links.

Appendix

Appendix · The rest of the record

All 17 skills that carry over
Skill Type
  • already held ICT network security risks knowledge
  • already held ICT performance analysis methods knowledge
  • already held cyber attack counter-measures knowledge
  • already held cyber security knowledge
  • already held information security strategy knowledge
  • already held internal risk management policy knowledge
  • already held manage system security skill
  • already held ICT problem management techniques knowledge
  • already held ICT process quality models knowledge
  • already held ICT recovery techniques knowledge
  • already held define security policies skill
  • already held develop information security strategy skill
  • already held identify ICT security risks skill
  • already held implement a virtual private network skill
  • already held levels of software testing knowledge
  • already held manage disaster recovery plans skill
  • already held organisational resilience knowledge
The 3 learning areas not shown above
Skill to acquire Tier
07 management skills 1 required, 2 supplementary
  • required, not held establish an ICT security prevention plan required
  • optional, not held define technology strategy optional
  • optional, not held lead disaster recovery exercises optional
08 engineering, manufacturing and construction 1 required
  • required, not held security engineering required
09 services 1 required
  • required, not held security threats required
40 supplementary skills, helpful but not required
Skill to acquire Tier
  • optional, not held ICT encryption optional
  • optional, not held ICT project management optional
  • optional, not held ICT quality policy optional
  • optional, not held ICT security legislation optional
  • optional, not held ICT system user requirements optional
  • optional, not held Internet of Things optional
  • optional, not held Open source model optional
  • optional, not held Outsourcing model optional
  • optional, not held cloud monitoring and reporting optional
  • optional, not held cloud security and compliance optional
  • optional, not held computer forensics optional
  • optional, not held decision support systems optional
  • optional, not held define technology strategy optional
  • optional, not held design for organisational complexity optional
  • optional, not held develop with cloud services optional
  • optional, not held domain name service optional
  • optional, not held execute ICT audits optional
  • optional, not held hybrid model optional
  • optional, not held implement ICT security policies optional
  • optional, not held implement a firewall optional
  • optional, not held implement anti-virus software optional
  • optional, not held implement cloud security and compliance optional
  • optional, not held implement spam protection optional
  • optional, not held information confidentiality optional
  • optional, not held internet governance optional
  • optional, not held investment analysis optional
  • optional, not held lead disaster recovery exercises optional
  • optional, not held manage keys for data protection optional
  • optional, not held mobile device management optional
  • optional, not held service-oriented modelling optional
  • optional, not held tools for ICT test automation optional
  • optional, not held use an application-specific interface optional
  • optional, not held web application security threats optional
  • optional, not held audit techniques optional
  • optional, not held legal requirements of ICT products optional
  • optional, not held remove computer virus or malware from a computer optional
  • optional, not held solve ICT system problems optional
  • optional, not held systems development life-cycle optional
  • optional, not held use ICT ticketing system optional
  • optional, not held use back-up and recovery tools optional
28 held skills the cybersecurity risk manager role does not ask for
Skill Type
  • not needed by the target role Android (mobile operating systems) knowledge
  • not needed by the target role BlackBerry knowledge
  • not needed by the target role ICT communications protocols knowledge
  • not needed by the target role ICT debugging tools knowledge
  • not needed by the target role ICT infrastructure knowledge
  • not needed by the target role ICT power consumption knowledge
  • not needed by the target role apply company policies skill
  • not needed by the target role build business relationships skill
  • not needed by the target role conduct impact evaluation of ICT processes on business skill
  • not needed by the target role develop strategy to solve problems skill
  • not needed by the target role give live presentation skill
  • not needed by the target role hardware architectures knowledge
  • not needed by the target role iOS knowledge
  • not needed by the target role implement ICT recovery system skill
  • not needed by the target role maintain plan for continuity of operations skill
  • not needed by the target role manage IT security compliances skill
  • not needed by the target role manage staff skill
  • not needed by the target role mobile operating systems knowledge
  • not needed by the target role network management system tools knowledge
  • not needed by the target role optimise choice of ICT solution skill
  • not needed by the target role perform backups skill
  • not needed by the target role product usage risks analysis knowledge
  • not needed by the target role protect ICT devices skill
  • not needed by the target role report analysis results skill
  • not needed by the target role respond to incidents in cloud skill
  • not needed by the target role software anomalies knowledge
  • not needed by the target role system backup best practice knowledge
  • not needed by the target role unstructured data knowledge
31 gaps that are knowledge rather than practice

Knowledge gaps usually close through study. Practical skill gaps usually need something you can point at.

Skill to acquire Tier
  • required, not held ICT security standards required
  • required, not held attack vectors required
  • required, not held ethical hacking principles required
  • required, not held assessment of risks and threats required
  • required, not held risk management required
  • required, not held security engineering required
  • required, not held security threats required
  • optional, not held ICT encryption optional
  • optional, not held ICT project management optional
  • optional, not held ICT quality policy optional
  • optional, not held ICT security legislation optional
  • optional, not held ICT system user requirements optional
  • optional, not held Internet of Things optional
  • optional, not held Open source model optional
  • optional, not held Outsourcing model optional
  • optional, not held cloud monitoring and reporting optional
  • optional, not held cloud security and compliance optional
  • optional, not held computer forensics optional
  • optional, not held decision support systems optional
  • optional, not held domain name service optional
  • optional, not held hybrid model optional
  • optional, not held information confidentiality optional
  • optional, not held internet governance optional
  • optional, not held investment analysis optional
  • optional, not held mobile device management optional
  • optional, not held service-oriented modelling optional
  • optional, not held tools for ICT test automation optional
  • optional, not held web application security threats optional
  • optional, not held audit techniques optional
  • optional, not held legal requirements of ICT products optional
  • optional, not held systems development life-cycle optional
Index
Note

How this record was compiled

Both occupations are taken from ESCO, which lists the skills and knowledge each occupation is expected to have and marks every one required or optional. Nothing here is a prediction about hiring, and nothing here knows that a particular employer wants a particular certificate. Treat Table 3 as a starting point for your own research rather than a syllabus. The full method states what these figures can and cannot tell you.