HRreview 20 Years
This field is for validation purposes and should be left unchanged.
Subscribe for weekday HR news, opinion and advice.
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

Jamal Elmellas: Misfiring hiring: What can be done about the disconnect between management and HR?

-

In some sectors, skills shortages are so acute that finding and keeping hold of talent has become a major headache for HR, with 73 percent UK businesses now experiencing the problem, says Jamal Elmellas.

Cybersecurity, in particular, is seeing demand outstrip supply on a cumulative annual basis. The skills gap increasing by 73 percent in the UK in 2022, equivalent to 56,811 unfilled vacancies, according to the (ISC)2 Cybersecurity Workforce Study.

However, it would appear that HR’s role in the recruitment process may in fact be exasperating rather than solving the problem.

The same (ISC)2 study found that in those organisations where there was a strong relationship between cybersecurity management and HR, shortages were noticeably lower, but where there was a disconnect between those teams, shortages were much worse.

HRreview Logo

Get our essential weekday HR news and updates.

This field is for validation purposes and should be left unchanged.
Keep up with the latest in HR...
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

 

In fact, those businesses were 2.5x more likely to suffer from skills shortages. Therefore, the difficulties businesses are facing when it comes to recruitment do not just come down to a shortage of talent in the marketplace.

Poor perceptions

Only half of hiring managers (52%) thought they had a strong working relationship with HR and 40 percent did not think HR added value to the recruiting process. And it’s not just hiring managers that think HR is hindering rather than helping. The Cybersecurity Skills in the UK Labour Market 2022 report by the former Department for Digital, Culture, Media and Sport (DCMS) found many recruiters would ignore the job specification they had been given and contact the hiring manager direct in order to write their own, bypassing HR altogether.

These are worrying perceptions given that all three parties are essential to successful recruitment. As the (ISC)2 report attests, while cybersecurity managers are likely to know best what kind of candidates to look for, recruiters know the market, and HR managers have the expertise to find and attract those candidates, not to mention retain them – although that, too, has been brought into question.

Retention was found to be real problem among those organisations experiencing sustained skills shortages and there was a common denominator in each case. All had similar approaches to learning and development (L&D). They were not prioritising cybersecurity within the company culture, or sufficiently training staff, or offering opportunities for growth and promotion, according to the (ISC)2 report, leading to higher staff turnover. In fact, Gartner recently predicted that nearly half cybersecurity leaders will change jobs by 2025, suggesting churn is on the increase.

Poor retention rates were also borne out by ISACA’s State of Cybersecurity 2022: Global Update on Workforce Efforts, Resources and Cyberoperations report which found that 60 percent had experienced problems keeping staff. When asked why they chose to leave their employer, almost half (47%) said they did so due to limited opportunities for promotion and L&D. This is no doubt in part to some companies wanting to curb spend and avoid their employees becoming a ‘flight risk’ but this is short-sighted.

Speculate to accumulate

Those companies that do invest in training and offer rotating job assignments, mentorship or opportunities for employees in related fields to retrain in cybersecurity are least likely to suffer from shortages, according to the (ISC)2 report. Only 49 percent of businesses with 1,000 staff or more who implemented these initiatives experienced shortages compared to 77% of those who had not, which means HR has the power to really boost retention rates through L&D.

The problem that remains is how to close the miscommunication gap between the hiring manager, HR and the recruiter. Clearly, they are not aligned and there is a disconnect between the hiring manager and HR, with the former unable to communicate their needs to the latter and unable to understand the value HR brings to the table. The recruiter, as the last person in the chain, inevitably realises the criteria will not fly with candidates, and so resorts to contacting the hiring manager direct.

What’s really happening here is that neither the hirer nor HR are in tune with the marketplace, and this is because cybersecurity as a relatively nascent sector has evolved unchecked to the point where roles can now be ambiguous. It’s not unusual, for instance, to see different companies advertise for the same job role while listing different skillsets. Nor is it unheard of for HR to place so called ‘unicorn’ job postings in a bid to recruit someone to fill several roles. The end result is everybody is confused and the post remains unfilled. Indeed, ISACA found that one in five companies took over six months to fill their vacant positions.

Reading from the same song sheet

Getting the point where everyone is operating together means they need to all be using the same criteria. Thankfully, progress is being made in this area with the UK Cyber Security Council developing a Cyber Career Framework that will map all the skills, experience, responsibilities (including salary expectations), and qualifications needed to perform a particular role. This covers 16 specialisms and is expected to be completed by 2025.

The framework is a mammoth undertaking that will see a structure applied to the industry for the first time. It should make it far easier for hiring managers to assess their workforce, identify where the gaps are and to plan which roles they need to recruit. It should also provide HR with the information needed on skills and experience to help them furnish accurate job descriptions and select suitable candidates. But it should also give them the information they need to build out career progression plans for individuals to boost retention. Finally, it will help candidates identify roles relevant to them, ensuring a better fit, and to work out which skills they need to progress up the ladder.

Of course, cybersecurity is just one area where HR is struggling to recruit but it’s an area where competition is so high that it is served to expose problems in the recruitment process which under other circumstances might be ignored. The fracture points all indicate areas in which the process can be improved, from penning more accurate job descriptions to investing more in L&D, to using career frameworks to make the process more efficient and successful. And all it takes is sharing the necessary information between all facets of the chain to create a cohesive process.

__

Jamal Elmellas is Chief Operating Officer at Focus-on-Security.

Amelia Brand is the Editor for HRreview, and host of the HR in Review podcast series. With a Master’s degree in Legal and Political Theory, her particular interests within HR include employment law, DE&I, and wellbeing within the workplace. Prior to working with HRreview, Amelia was Sub-Editor of a magazine, and Editor of the Environmental Justice Project at University College London, writing and overseeing articles into UCL’s weekly newsletter. Her previous academic work has focused on philosophy, politics and law, with a special focus on how artificial intelligence will feature in the future.

Latest news

Felicia Williams: Why ‘shadow work’ is quietly breaking your people strategy

Employees are losing seven hours a week to tasks that fall outside their core job description. For HR leaders, that’s the kind of stat that keeps you up at night.

Redundancies rise as 327,000 job losses forecast for 2026

UK job losses are set to rise again as redundancy warnings hit post-pandemic highs, with employers cutting roles amid rising costs and economic pressure.

Rise of ‘sickfluencers’ and AI advice sparks concern over attitudes to work

Online influencers and AI tools are shaping how people approach illness and employment, heaping pressure on employers.

‘Silent killer’ dust linked to 500 construction deaths a year as 600,000 workers face exposure

Hundreds of UK construction workers die each year from silica dust exposure as a new campaign calls for stronger workplace protections.
- Advertisement -

Leaders ‘overestimate’ how much workers use AI

Firms may be misreading workforce readiness for artificial intelligence, as frontline staff report far lower day-to-day adoption than executives expect.

Cost-of-living pressures ‘keep unhappy workers in their jobs’

Many say economic pressures are forcing them to remain in jobs they would otherwise leave, as pay and financial stability dominate career decisions.

Must read

Hannah Robbins: To what extent are your off the record discussions with employees protected?

Off the record discussions or protected conversations have played a significant role in employer-employee exit negotiations since they became inadmissible in unfair dismissal proceedings on the 29th July 2013, but not every conversation is automatically protected. To what extent can employers genuinely have an off the record discussion?

Karim Peer: What is financial wellness?

Today, it seems as though “wellness” is the word on everybody’s lips. Every day articles, blogs and videos are published about the most effective routes to health and wellbeing. And if you don’t see enough about it on the TV, then you only have to look around a workplace to see how prevalent it is.
- Advertisement -

You might also likeRELATED
Recommended to you