Print
Department of Commerce
Published on Department of Commerce (https://2014-2017.commerce.gov)

Home > NICE Framework Provides Resource for a Strong Cybersecurity Workforce

You are here

  1. Home

NICE Framework Provides Resource for a Strong Cybersecurity Workforce

Nov042016

Print this page
Image(s) included
Post a comment
InnovationNational Initiative for Cybersecurity Education (NICE)CybersecurityWorkforce DevelopmentCyberSeek

Posted at 1:55 PM

The NICE Cybersecurity Workforce Framework provides building blocks for a trained workforce. Credit: Natasha Hanacek/NIST
The NICE Cybersecurity Workforce Framework provides building blocks for a trained workforce. Credit: Natasha Hanacek/NIST

The U.S. Commerce Department’s National Institute of Standards and Technology (NIST) released a resource that will help U.S. employers more effectively identify, recruit, develop and maintain cybersecurity talent. The draft NICE Cybersecurity Workforce Framework (NCWF) provides a common language to categorize and describe cybersecurity work to help organizations build a strong staff to protect their systems and data. It was announced today at the 2016 NICE Conference and Expo.

Cybersecurity is still a nascent and rapidly developing field in which job titles and role descriptions vary from organization to organization and sector to sector. The NCWF can be viewed as a cybersecurity workforce dictionary that will help organizations define and share information in a detailed, consistent and descriptive way.

The NICE workforce framework was developed by the NIST-led National Initiative for Cybersecurity Education (NICE) and is the culmination of many years of collaboration between industry, government and academia. The U.S. Departments of Defense and Homeland Security were significant contributors.

The NCWF was designed to serve several key groups, including employers, current cybersecurity staff, students and workers considering a career in the field, educators and workforce trainers and technology providers.

In addition to helping educate, recruit, train and retain a qualified cybersecurity workforce, the NCWF will serve as a building block for the development of training standards, as well as for individual career planning. It will also allow organizations to develop a more realistic image of their cybersecurity workforce.

“When identifying their cybersecurity staff, many organizations overlook cybersecurity tasks being performed by lawyers, auditors and procurement officers,” said Bill Newhouse, NICE deputy director and lead author of the document. “The NCWF can help an organization identify cybersecurity tasks within a work role that are vital to its mission and then examine if its current staff can perform those tasks and, if not, hire staff who can.”

The NCWF organizes the workforce into an overarching structure of seven high-level categories that group work and workers sharing common functions. Two examples are “Oversight and Govern” and “Protect and Defend.” The seven categories are made up of more than 30 specialty areas such as “Incident Response” and “Legal Advice and Advocacy.” Some specialty areas map to a single work role and others are contained in more than one work role.

The more than 50 work roles defined in the framework include “cyber legal advisor” and “vulnerability analyst.” Each work role is defined by extensive sets of related knowledge, skills and abilities (KSAs) and tasks.

The federal government will soon be using the NCWF to identify its cybersecurity workforce, as directed by the Federal Cybersecurity Workforce Assessment Act of 2015 (Division N, Consolidated Appropriations Act, 2016.

Terminology from the NCWF has already been incorporated into two new online resources for the cybersecurity field: the CyberSeek jobs map graphically displays the nation’s cybersecurity job demand and availability; and the Career Pathway, which can help students or job seekers new to the field develop career plans. Both of these tools were announced Nov. 1, 2016, at the NICE Conference and Expo in Kansas City, Missouri.

To provide feedback on the draft NICE Cybersecurity Workforce Framework (NCWF), NIST Special Publication 800-181, send an email to [email protected] by Jan. 6, 2017. The authors are particularly interested in suggestions for new tasks and KSAs, to help ensure the final version addresses cybersecurity workforce needs throughout the U.S.

Organizations and Groups

  • National Institute of Standards and Technology

Related content

Oct272015

NIST to Support Cybersecurity Jobs “Heat Map” to Highlight Employer Needs and Worker Skills

InnovationNational Initiative for Cybersecurity Education (NICE)Skills for BusinessNational Cybersecurity Workforce FrameworkBruce H. Andrews
As part of the U.S. Department of Commerce’s “Skills for Business” initiative, the National Institute of Standards and Technology (NIST) is funding the development of a...

Dec062016

SPP Learning Code

Secretary Pritzker explores Commerce data in a coding course at Galvanize
Image(s) included
Post a comment

Skills for Business: Our Shared Mission

InnovationSkills for BusinessWorkforce DevelopmentCommunities that Work PartnershipCybersecurityManufacturing Extension Partnership (MEP)Manufacturing DayApprenticeshipNational Initiative for Cybersecurity Education (NICE)NICE Cybersecurity Workforce FrameworkPenny Pritzker
When I became the Secretary of Commerce three years ago, I immediately recognized that, in order to carry out the Department of Commerce’s mission of creating the conditions...

May122016

nicelogo.jpg

Logo for NIST-led National Initiative for Cybersecurity Education (NICE)
Image(s) included
Post a comment

NIST ‘RAMPS’ Up Cybersecurity Education and Workforce Development With New Grants

InnovationSkills for BusinessCybersecurityNational Initiative for Cybersecurity Education (NICE)National Cybersecurity Workforce Framework
The National Institute of Standards and Technology (NIST) is offering up to $1 million in grants to establish up to eight Regional Alliances and Multistakeholder Partnerships...
/*Fix video embed transcript line height which was set to 0, squishing transcript to one line.*/ .file.view-mode-embedded_video { line-height: inherit; }

Source URL: https://2014-2017.commerce.gov/news/blog/2016/11/nice-framework-provides-resource-strong-cybersecurity-workforce

Links:
[1] https://2014-2017.commerce.gov/news/blog/2016/11/nice-framework-provides-resource-strong-cybersecurity-workforce
[2] https://2014-2017.commerce.gov/node/2921#comment-form-collapsed
[3] https://2014-2017.commerce.gov/categories/innovation
[4] https://2014-2017.commerce.gov/tags/national-initiative-cybersecurity-education-nice
[5] https://2014-2017.commerce.gov/tags/cybersecurity
[6] https://2014-2017.commerce.gov/tags/workforce-development
[7] https://2014-2017.commerce.gov/tags/cyberseek
[8] https://2014-2017.commerce.gov/media/photo/nicepng
[9] https://www.nist.gov/
[10] http://csrc.nist.gov/publications/PubsDrafts.html#SP-800-181
[11] http://csrc.nist.gov/nice/index.htm
[12] https://www.congress.gov/114/plaws/publ113/PLAW-114publ113.pdf
[13] http://cyberseek.org/
[14] mailto:[email protected]