Back

Identify root causes of staffing shortages, if any exist.


CONTROL ID
13276
CONTROL TYPE
Human Resources Management
CLASSIFICATION
Detective

SUPPORTING AND SUPPORTED CONTROLS




This Control directly supports the implied Control(s):
  • Analyze workforce management., CC ID: 12844

There are no implementation support Controls.


SELECTED AUTHORITY DOCUMENTS COMPLIED WITH




  • Review turnover rates of IT staff and discuss staffing and retention issues with IT management, or review turnover rates of IT management and discuss with senior management. Identify root causes of any staffing or expertise shortages, including compensation plans or other retention practices. (App A Objective 5:7, FFIEC Information Technology Examination Handbook - Management, November 2015)
  • Management and staff turnover. (App A Tier 1 Objectives and Procedures Objective 1:3 Bullet 2 Sub-Bullet 4, FFIEC IT Examination Handbook - Retail Payment Systems, April 2016)
  • Reports showing staffing levels, turnovers, and trends. (App A Tier 1 Objectives and Procedures Objective 1:3 Bullet 1 Sub-Bullet 1, FFIEC IT Examination Handbook - Retail Payment Systems, April 2016)
  • Identify and address cyber workforce planning and management issues (e.g. recruitment, retention, and training). (T0481, National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework, NIST Special Publication 800-181)
  • Identify and address cyber workforce planning and management issues (e.g. recruitment, retention, and training). (T0481, Reference Spreadsheet for the Workforce Framework for Cybersecurity (NICE Framework)”, July 7, 2020)