National Cyber Security Centre
Diversity and inclusion in cyber security workforce revealed for the first time
NCSC vows to drive cross-sector improvement as joint report with KPMG reveals more to be done to improve experiences and opportunities.
- Joint report from NCSC and KPMG is the first analysis of diversity and inclusion within cyber security industry
- Decrypting Diversity report finds much more to be done in improving experiences and opportunities across the workforce
- NCSC and KPMG UK commit to taking action and urge collective effort across industry with seven recommendations
CYBER security chiefs have committed to lead a drive towards improving diversity and inclusion in the workforce after the publication of a major survey yesterday.
The National Cyber Security Centre (NCSC) – a part of GCHQ – and KPMG UK have jointly published the first annual Decrypting Diversity: Diversity and Inclusion in Cyber Security report, which sets a benchmark for improving the experiences and opportunities for existing and future staff working in the industry.
The report provided a mixed picture, revealing that in some areas minority representation was above average for the country but also highlighting discrimination and a lack of inclusivity across gender, sexual orientation, social mobility and ethnicity.
It found that there is more to be done by the industry and in addition to accepting all of the report’s recommendations the NCSC yesterday committed to publishing specific actions to improve diversity and inclusion within the organisation before the end of the year.
Ciaran Martin, Chief Executive of the NCSC, yesterday said:
“It cannot be right that in the year 2020 there are still people within our industry who feel they can’t be themselves or who face discrimination because of who they are and this report should drive our determination to act.
“There is far more to do on diversity and inclusion and the NCSC is determined to be a leader in this field, but a cross sector effort is required to get this right.
“I urge all cyber security leaders to read the report and act on it.”
The recommendations in the report – which are published on the NCSC website – urge cyber security leaders to become accountable for diversity and inclusion within their organisations and set up comprehensive analysis of data to understand and track representation within their workforce.
They also call for the industry to significantly improve how it learns from best practice both within the cyber security sector and other areas.
Bernard Brown, Partner and Vice Chair, KPMG UK, yesterday said:
“If the UK is to continue to play a leadership role in cyber security, we need to create an innovative and inclusive workplace that attracts the finest minds from our communities. Highly skilled cyber security specialists are an imperative in a rapidly expanding digital economy, supercharged by COVID-19.
“Our findings show that the cyber industry has a lot to do if it is to build truly inclusive workplaces. The report provides a route map for change and a call to action for a collective response to the issues raised.”
Amongst the report’s findings – which were collated based on responses from 1,252 cyber security professionals – were:
- Female representation in the industry is 31%
- LGB representation is higher than the UK average, with 10% of respondents identifying as lesbian, gay, or bisexual compared with 2.2% in the general population (ONS, 2020)
- The ethnic diversity of the workforce is broadly similar to that of the UK population
- 41% of Black, African, Caribbean or Black British feel confident in their identity within the workplace, compared to 75% of White respondents
- 14% of respondents experienced barriers to career progression and/or resigned because of their employer’s approach to diversity and inclusion issues
- 74% of negative incidents as a result of diversity and inclusion were not reported
The survey on which this report is based was launched in February 2020, and sought to benchmark gender, sexual orientation, social mobility and ethnicity data across the cyber security industry, as well understand issues around discrimination and inclusivity.
The next iteration of this survey will seek to capture the nuances and issues within disability and neurodiverse communities across the cyber security industry.
Latest News from
National Cyber Security Centre
NCSC welcomes EU cyber sanctions against Russia following 2015 attack on Germany’s Parliament23/10/2020 13:15:00
EU cyber sanctions against Russia following a 2015 attack on Germany's Parliament have been welcomed by the NCSC.
Revamped cyber toolkit launched to support retailers improve defences22/10/2020 09:15:00
The British Retail Consortium’s (BRC) refreshed toolkit, developed alongside experts at the NCSC, will help retailers boost cyber defences.
UK and partners condemn GRU cyber attacks against Olympic and Paralympic Games20/10/2020 14:15:00
Russia warned by UK and allies against further destructive cyber attacks.
NCSC statement: Hackney Borough Council incident14/10/2020 09:15:00
The latest NCSC statement concerning an incident affecting Hackney Borough Council.
Revamped cyber guide will help small businesses work securely online09/10/2020 16:15:00
The NCSC Small Business Guide has been revamped for 2020 as well as the response and recovery guidance.
Sixth Huawei Cyber Security Evaluation Centre oversight board report published02/10/2020 16:15:00
The sixth Huawei Cyber Security Evaluation Centre oversight board report has now been published.
Cyber-savvy schools in Northern Ireland and North East given chance to join UK's finest30/09/2020 14:15:00
Applications open for schools in Northern Ireland and North East England to gain recognition for excellence in cyber security education through the CyberFirst Schools initiative.
Going for gold! Tech-savvy schools recognised for putting cyber skills first23/09/2020 11:15:00
Thirteen schools certified under the CyberFirst Schools initiative which rewards excellence in cyber security education.