Educause Survey Reveals Growing Dissatisfaction Among Higher Education Cybersecurity Professionals

Nonprofit higher education association Educause recently conducted a study of 350 cybersecurity and privacy professionals in July 2023. The study report outlines concerns of those professionals and shows a growing dissatisfaction with training, work conditions, and time constraints.

The report is the first in a series examining specific workforce areas in higher education to determine relevant findings and make recommendations. This report examines five key areas: respondent composition; department structure, size, and reporting lines; staffing and budgets; work role experiences; and competencies and professional development.

Key findings from the report note that:

  • Staffing issues have affected cybersecurity and privacy negatively at respondents' institutions, despite there being adequate FTE budgeting for such jobs in many cases.
  • Professionals want remote and hybrid options for work, and 68% said they do have them, indicating a favorable response by their institutions.
  • Poor job satisfaction prompted 56% to say they will look for other jobs inside higher education, and 55% outside of it, within the next year.
  • Professionals have identified problems and conflicts of interest in IT and cybersecurity that they feel should be reported to administrators outside IT.
  • Professionals feel their current workload is excessive because of increased demands in "compliance and regulations, monitoring and detection, and incident response and threat hunting."
  • There has been reduced time demand for offensive and specialized offensive operations and threat intel and forensics in the last year.
  • Respondents feel technical skill and AI competency is of great importance, but time and commitment are needed from employers for training and professional development.
  • Cybersecurity and privacy needs are becoming more intertwined and expanding beyond current IT services.

Conclusions and recommendations are for employers to recognize that cybersecurity and privacy threats are growing and need more staff and training to handle them. To this end, they should focus on recruitment, training, retention, workload, support, and professional development.

"More than half of the cybersecurity and privacy professionals who completed our workforce survey said that they are likely to apply for other positions in the next 12 months," said Nicole Muscanell, the report's author. "And despite there being more competitive salaries for industry jobs, respondents said they are equally likely to apply for positions within (56%) and outside of higher ed (55%)."

Learn more and read the report on the survey page.

About the Author

Kate Lucariello is a former newspaper editor, EAST Lab high school teacher and college English teacher.

Featured

  • interconnected blue glass cubes

    Anthropic Expands Enterprise Deployment Options for Claude Desktop with New Controls and Cloud Integrations

    Anthropic is adding new enterprise deployment options for Claude Desktop, saying organizations that use the app through Amazon Web Services, Google Cloud, and Microsoft Foundry can now access the full desktop experience across chat, Claude Cowork, and Claude Code.

  • Blue digital wireframe classical building structure

    Before AI, Fix Your Data

    Institutions don't have to solve every data problem before they can begin using AI responsibly. But they do need to treat information as a strategic asset — not a byproduct of operations — and start building toward AI-ready data now.

  • digital data protection and cyber security

    White House Launches New AI Security Framework

    President Donald Trump has issued a new executive order aimed at maintaining United States AI leadership while addressing the security risks posed by increasingly powerful AI systems.

  • Neon blue security locks with a single red highlight

    AI Shifts Cybersecurity Focus from Finding Flaws to Fixing Them

    For decades, one of cybersecurity's most difficult challenges has been finding vulnerabilities before attackers do. A growing number of security professionals now say artificial intelligence is changing that equation, shifting the focus from discovering flaws to fixing them quickly enough to prevent exploitation.