South Africa's cybersecurity skills gap isn't a future problem, it's a present one. Demand for security experts has been outpacing supply for years, and the organisations feeling the squeeze tend to respond the same way: raise the hiring salary and wait for job-ready candidates who don't exist yet. We decided to test a different approach. MWR launched a free virtual internship programme for any students designed to take motivated individuals and give them structured, practical security training over 16 weeks. There was no barrier to entry, but there was only one condition, if you fail 3 assignments you're out. More than 3,300 people applied. After five weeks and the simple three-strike rule, over 1,800 had already dropped off. But roughly 800 stuck it out, keeping up with assignments week on week and demonstrating exactly the kind of persistence the industry claims it can't find. This talk draws on data from that programme alongside experience recruiting through MWR's traditional pipelines, observing self-directed learning trends through TryHackMe, and working inside university cybersecurity programmes at the University of Pretoria and Wits. Together, these lenses reveal where the talent pipeline is breaking, where it's stronger than we think, and why the organisations waiting for the "finished product" are missing the point. We'll end off with a practical call to action to the entire cyber security community. Highlighting specific, low-barrier ways the security community, not just employers, can help widen and strengthen the pipeline. MWR can't do this alone. The data says the talent and passion is there. The question is whether our industry is willing to meet it halfway.