Information security in the work process
Applies security measures in daily work such as safe sharing, classifying and storing information and flags risky working practices.
How hrmforce measures this
- Assessment method
- Knowledge test · rho 0.40 (SD 0.13)
- hrmforce instrument
- Knowledge test (client-specific)
- Competency (50-framework)
- Integrity
- Trainability
- high
- Demand outlook 2026 to 2030
- rising
Test of declarative job knowledge, usually assembled per client.
Behavioural anchors
| Level | Behaviour at this level |
|---|---|
| N1 Guided | Follows the security rules for sharing and storing information and reports a suspected incident immediately. works under supervision and follows instruction · routine, one variable at a time · own task |
| N3 Proficient | Weighs security risks when setting new working agreements, adjusts measures and addresses colleagues on unsafe behaviour. sets own approach and seeks input proactively · several variables, some ambiguity · own team or process |
| N5 Leading | Sets information security policy and monitors organisation wide that processes meet the requirements set. sets the standard and the policy · strategic, under high uncertainty · organisation, value chain or profession |
N2 and N4 are deliberately not anchored. Raters place them between the anchors, following the O*NET convention.
Underlying skills
These skills inherit the assessment route and the behavioural anchors of this construct.
| T | Skill | Definition | Demand outlook 2026 to 2030 |
|---|---|---|---|
| V | Pseudonymising data Pseudonymisation | Replaces identifying data with codes and stores the key separately so re-identification stays limited. | rising |
| V | Applying data masking Data masking | Masks sensitive fields in test and development environments so real personal data no longer appears there. | rising |
| V | Sharing files securely Secure file sharing | Shares sensitive files through secured links with an expiry date and limited permissions instead of open attachments. | rising |
| V | Applying encryption Encryption | Enables encryption for storage and transmission and manages the associated keys and passwords. | rising |
| V | Securing email containing personal data Secure email | Checks recipients, uses secured sending for sensitive content and prevents unintended public address lists. | rising |
| V | Deleting data securely Secure deletion | Deletes data and media so that recovery is no longer possible and records the destruction. | stable |
| V | Following clean desk and screen lock rules Clean desk policy | Stores documents away, locks the screen when leaving and prevents onlookers on site or while travelling. | stable |
| V | Flagging risky working practices Shadow IT | Notices unsafe habits such as shared accounts or shadow IT and reports them with an improvement proposal. | rising |