Cybersecurity Workforce Management

Responsible for developing cybersecurity workforce plans, assessments, strategies, and guidance, including cybersecurity-related staff training, education, and hiring processes. Makes adjustments in response to or in anticipation of changes to cybersecurity-related policy, technology, and staffing needs and requirements.Authors mandated workforce planning strategies to maintain compliance with legislation, regulation, and policy.

  • T0116: Identify organizational policy stakeholders
  • T0226: Serve on agency and interagency policy boards
  • T0437: Correlate training and learning to business or mission requirements
  • T1020: Determine the operational and safety impacts of cybersecurity lapses
  • T1022: Review enterprise information technology (IT) goals and objectives
  • T1025: Implement organizational training and education policies and procedures
  • T1028: Research new vulnerabilities in emerging technologies
  • T1036: Integrate leadership priorities
  • T1038: Integrate organization objectives in intelligence collection
  • T1056: Acquire resources to support cybersecurity program goals and objectives
  • T1059: Perform cost/benefit analyses of cybersecurity programs, policies, processes, systems, and elements
  • T1060: Advise senior management on organizational cybersecurity efforts
  • T1088: Communicate the value of cybersecurity to organizational stakeholders
  • T1107: Evaluate functional requirements
  • T1113: Develop the enterprise continuity of operations strategy
  • T1114: Establish the enterprise continuity of operations program
  • T1158: Develop cybersecurity implementation policies and guidelines
  • T1184: Establish stakeholder communication channels
  • T1185: Maintain stakeholder communication channels
  • T1227: Manage cybersecurity budget, staffing, and contracting
  • T1306: Conduct technology program and project audits
  • T1335: Promote cybersecurity awareness to management
  • T1336: Verify the inclusion of sound cybersecurity principles in the organization's vision and goals
  • T1357: Determine if cybersecurity requirements have been successfully implemented
  • T1358: Determine the effectiveness of organizational cybersecurity policies and procedures
  • T1394: Develop independent cybersecurity audit processes for application software, networks, and systems
  • T1395: Implement independent cybersecurity audit processes for application software, networks, and systems
  • T1396: Oversee independent cybersecurity audits
  • T1397: Determine if research and design processes and procedures are in compliance with cybersecurity requirements
  • T1398: Determine if research and design processes and procedures are accurately followed by cybersecurity staff when performing their day-to-day activities
  • T1436: Acquire adequate funding for cybersecurity training
  • T1446: Conduct learning needs assessments
  • T1447: Identify training requirements
  • T1449: Determine if qualification standards meet organizational functional requirements and comply with industry standards
  • T1450: Allocate and distribute human capital assets
  • T1459: Develop standardized cybersecurity position descriptions using the NICE Framework
  • T1460: Develop recruiting, hiring, and retention processes
  • T1461: Determine cybersecurity position requirements
  • T1462: Develop cybersecurity training policies and procedures
  • T1464: Determine if cybersecurity workforce management policies and procedures comply with legal and organizational requirements
  • T1466: Establish cybersecurity workforce readiness metrics
  • T1467: Establish waiver processes for cybersecurity career field entry and training qualification requirements
  • T1468: Establish organizational cybersecurity career pathways
  • T1469: Develop cybersecurity workforce reporting requirements
  • T1470: Establish cybersecurity workforce management programs
  • T1471: Assess cybersecurity workforce management programs
  • T1476: Promote awareness of cybersecurity policy and strategy among management
  • T1478: Determine cybersecurity career field qualification requirements
  • T1479: Determine organizational policies related to or influencing the cyber workforce
  • T1482: Conduct cybersecurity workforce assessments
  • T1483: Integrate cybersecurity workforce personnel into information systems life cycle development processes
  • T1492: Integrate laws and regulations into policy
  • T1518: Develop organizational cybersecurity strategy
  • T1543: Develop cybersecurity policies and procedures
  • T1552: Identify cyber workforce planning and management issues
  • T1553: Address cyber workforce planning and management issues
  • T1605: Advise management, staff, and users on cybersecurity policy
  • T1623: Develop supply chain cybersecurity risk management policy