Career Overlap Transition record Edition 1 · ESCO v1.2.1
Table 1Transition record

ICT security techniciantoethical hacker

A ICT security technician already meets 50% of what the ethical hacker role asks for. The move turns on 16 required skills not yet in the profile.

From ICT security technician
50%
Overlap1
To ethical hacker
33 Skills carried over
16 Required, not held
64.6 Difficulty2
Career overlap Partial match

50%

Learning distance Substantial retraining

64.6/ 100

1 Share of the ethical hacker role’s weighted skill requirement already met by the ICT security technician profile. Required skills count in full, supplementary skills at 0.35. Directional: the figure for the reverse move differs. 2 Combines what is missing with how specialised it is, so a gap of general skills scores easier than the same number of narrow ones.

Why

Why this move works

A ethical hacker role treats 20 of its required skills as things a ICT security technician already does. These are the ones it depends on most.

  • ICT network security risks
  • ICT security standards
  • address problems critically
  • attack vectors
  • communicate with stakeholders
  • computer programming

What stands in the way is 16 required skills the profile does not yet cover. Table 3 groups them; Table 4 says which to take first.

Table 2

Table 2 · What you already bring

Of the 33 skills that carry over, these are the ones fewest other occupations ask for. A ethical hacker role needs them, and most people applying for one will not have them already. This is the part of a ICT security technician background worth leading with.

Skill the target role also needs Area
  • already held penetration testing tool information and communication technologies (icts)
  • already held set up cybersecurity training programmes communication, collaboration and creativity
  • already held engage with stakeholders communication, collaboration and creativity
  • already held web application security threats information and communication technologies (icts)
  • already held operating systems information and communication technologies (icts)
  • already held ICT safety working with computers

All 33 carried skills, including the 20 the ethical hacker role treats as required.

Table 3

Table 3 · What you would need to learn

The 41 missing skills fall into 8 areas of the ESCO skill hierarchy, numbered below in the order worth working in: the areas carrying the most required skills come first, and inside each one the required skills sit above the supplementary ones.

Skill to acquire Tier
01 information and communication technologies (icts) 5 required, 22 supplementary
  • required, not held ICT system integration required
  • required, not held computer forensics required
  • required, not held ethical hacking principles required
  • required, not held information security strategy required
  • required, not held software anomalies required
  • optional, not held Aircrack (penetration testing tool) optional
  • optional, not held Backbox (penetration testing tool) optional
  • optional, not held BlackArch optional
  • optional, not held Cain and Abel (penetration testing tool) optional
  • optional, not held John The Ripper (penetration testing tool) optional
  • optional, not held Kali Linux optional
  • optional, not held Maltego optional
  • optional, not held Metasploit optional
  • optional, not held Nessus optional
  • optional, not held Nexpose optional
  • optional, not held OWASP ZAP optional
  • optional, not held Open source model optional
  • optional, not held Outsourcing model optional
  • optional, not held Parrot Security OS optional
  • optional, not held Samurai Web Testing Framework optional
  • optional, not held WhiteHat Sentinel optional
  • optional, not held Wireshark optional
  • optional, not held hybrid model optional
  • optional, not held information confidentiality optional
  • optional, not held internet governance optional
  • optional, not held proxy servers optional
  • optional, not held service-oriented modelling optional
02 working with computers 4 required, 1 supplementary
  • required, not held conduct ICT code review required
  • required, not held develop code exploits required
  • required, not held perform ICT security testing required
  • required, not held use scripting programming required
  • optional, not held maintain ICT server optional
03 engineering, manufacturing and construction 2 required
  • required, not held ICT infrastructure required
  • required, not held building systems monitoring technology required
04 information skills 2 required
  • required, not held execute social engineering tests required
  • required, not held analyse the context of an organisation required
05 arts and humanities 1 required
  • required, not held ethics required
06 business, administration and law 1 required
  • required, not held legal requirements of ICT products required

2 further areas in the appendix

Table 4

Table 4 · Where to start

The 3 entries a ethical hacker role is least likely to hire without. The ordering is computed from the skill data, not from what pays.

Each entry opens a course search for that skill. Career Overlap earns nothing from these links.

Appendix

Appendix · The rest of the record

All 33 skills that carry over
Skill Type
  • already held ICT network security risks knowledge
  • already held ICT security standards knowledge
  • already held address problems critically skill
  • already held attack vectors knowledge
  • already held communicate with stakeholders skill
  • already held computer programming knowledge
  • already held cyber attack counter-measures knowledge
  • already held cyber security knowledge
  • already held engage with stakeholders skill
  • already held execute ICT audits skill
  • already held execute software tests skill
  • already held identify ICT security risks skill
  • already held identify ICT system weaknesses skill
  • already held implement ICT risk management skill
  • already held manage system security skill
  • already held operating systems knowledge
  • already held penetration testing tool knowledge
  • already held security engineering knowledge
  • already held tools for ICT test automation knowledge
  • already held web application security threats knowledge
  • already held ICT encryption knowledge
  • already held ICT safety skill
  • already held ICT security legislation knowledge
  • already held Internet of Things knowledge
  • already held implement ICT security policies skill
  • already held implement a firewall skill
  • already held levels of software testing knowledge
  • already held manage IT security compliances skill
  • already held manage cloud data and storage skill
  • already held organisational resilience knowledge
  • already held remove computer virus or malware from a computer skill
  • already held set up cybersecurity training programmes skill
  • already held solve ICT system problems skill
The 2 learning areas not shown above
Skill to acquire Tier
07 constructing 1 required
  • required, not held monitor system performance required
08 management skills 2 supplementary
  • optional, not held define security policies optional
  • optional, not held perform project management optional
25 supplementary skills, helpful but not required
Skill to acquire Tier
  • optional, not held Aircrack (penetration testing tool) optional
  • optional, not held Backbox (penetration testing tool) optional
  • optional, not held BlackArch optional
  • optional, not held Cain and Abel (penetration testing tool) optional
  • optional, not held John The Ripper (penetration testing tool) optional
  • optional, not held Kali Linux optional
  • optional, not held Maltego optional
  • optional, not held Metasploit optional
  • optional, not held Nessus optional
  • optional, not held Nexpose optional
  • optional, not held OWASP ZAP optional
  • optional, not held Open source model optional
  • optional, not held Outsourcing model optional
  • optional, not held Parrot Security OS optional
  • optional, not held Samurai Web Testing Framework optional
  • optional, not held WhiteHat Sentinel optional
  • optional, not held Wireshark optional
  • optional, not held define security policies optional
  • optional, not held hybrid model optional
  • optional, not held information confidentiality optional
  • optional, not held internet governance optional
  • optional, not held maintain ICT server optional
  • optional, not held proxy servers optional
  • optional, not held service-oriented modelling optional
  • optional, not held perform project management optional
62 held skills the ethical hacker role does not ask for
Skill Type
  • not needed by the target role ABAP knowledge
  • not needed by the target role AJAX knowledge
  • not needed by the target role APL knowledge
  • not needed by the target role ASP.NET knowledge
  • not needed by the target role Assembly (computer programming) knowledge
  • not needed by the target role C# knowledge
  • not needed by the target role C++ knowledge
  • not needed by the target role COBOL knowledge
  • not needed by the target role Cisco knowledge
  • not needed by the target role CoffeeScript knowledge
  • not needed by the target role Common Lisp knowledge
  • not needed by the target role Erlang knowledge
  • not needed by the target role Groovy knowledge
  • not needed by the target role Haskell knowledge
  • not needed by the target role ICT networking hardware knowledge
  • not needed by the target role ICT system programming knowledge
  • not needed by the target role Java (computer programming) knowledge
  • not needed by the target role JavaScript knowledge
  • not needed by the target role Lisp knowledge
  • not needed by the target role MATLAB knowledge
  • not needed by the target role ML (computer programming) knowledge
  • not needed by the target role Microsoft Visual C++ knowledge
  • not needed by the target role Objective-C knowledge
  • not needed by the target role OpenEdge Advanced Business Language knowledge
  • not needed by the target role PHP knowledge
  • not needed by the target role Pascal (computer programming) knowledge
  • not needed by the target role Perl knowledge
  • not needed by the target role Prolog (computer programming) knowledge
  • not needed by the target role Python (computer programming) knowledge
  • not needed by the target role R knowledge
  • not needed by the target role Ruby (computer programming) knowledge
  • not needed by the target role SAP R3 knowledge
  • not needed by the target role SAS language knowledge
  • not needed by the target role Scala knowledge
  • not needed by the target role Scratch (computer programming) knowledge
  • not needed by the target role Smalltalk (computer programming) knowledge
  • not needed by the target role Swift (computer programming) knowledge
  • not needed by the target role TypeScript knowledge
  • not needed by the target role VBScript knowledge
  • not needed by the target role Visual Basic knowledge

22 further entries not listed here

31 gaps that are knowledge rather than practice

Knowledge gaps usually close through study. Practical skill gaps usually need something you can point at.

Skill to acquire Tier
  • required, not held ICT infrastructure required
  • required, not held ICT system integration required
  • required, not held building systems monitoring technology required
  • required, not held computer forensics required
  • required, not held ethical hacking principles required
  • required, not held information security strategy required
  • required, not held software anomalies required
  • required, not held ethics required
  • required, not held legal requirements of ICT products required
  • optional, not held Aircrack (penetration testing tool) optional
  • optional, not held Backbox (penetration testing tool) optional
  • optional, not held BlackArch optional
  • optional, not held Cain and Abel (penetration testing tool) optional
  • optional, not held John The Ripper (penetration testing tool) optional
  • optional, not held Kali Linux optional
  • optional, not held Maltego optional
  • optional, not held Metasploit optional
  • optional, not held Nessus optional
  • optional, not held Nexpose optional
  • optional, not held OWASP ZAP optional
  • optional, not held Open source model optional
  • optional, not held Outsourcing model optional
  • optional, not held Parrot Security OS optional
  • optional, not held Samurai Web Testing Framework optional
  • optional, not held WhiteHat Sentinel optional
  • optional, not held Wireshark optional
  • optional, not held hybrid model optional
  • optional, not held information confidentiality optional
  • optional, not held internet governance optional
  • optional, not held proxy servers optional
  • optional, not held service-oriented modelling optional
Index
Note

How this record was compiled

Both occupations are taken from ESCO, which lists the skills and knowledge each occupation is expected to have and marks every one required or optional. Nothing here is a prediction about hiring, and nothing here knows that a particular employer wants a particular certificate. Treat Table 3 as a starting point for your own research rather than a syllabus. The full method states what these figures can and cannot tell you.