Main Nav

Participate in this Group

Search This Group

April 20, 2012 | Listserv Anonymous User
Message from mail@jeffmoore.com

Hi there folks!

    Just wanted to check with you all and see if any of you are doing server or client side HIDS. We are slowly deploying OSSEC. I was always a big Tripwire fan and have been really impressed with OSSEC and how much it has expanded. The LIDS piece as well as the active blocking(We aren't bold enough to do this yet. on servers...) really turns this into a great tool.
    Of course my opinion of the tool is based on past tripwire exposure and on limited test implementations of OSSEC. I have not run it for an extended period of time on a large group of servers/clients. Because of this I would just like to see what peoples experiences have been with this tool or other similar tools.
    We really appreciate all your opinions and any information you can give us. The more the better.

    Side note. On our clients several years ago we...
April 20, 2012 | Brian Basgen
Hi Everyone, If you are planning to attend the Security Conference in Indianapolis next month, please consider signing up as a session convener. We still have several sessions available (see: http://net.educause.edu/sec12/Program/1030110). What is a Session Convener? Volunteering as a session convener is an easy way to get involved and meet people in the community. You must be registered for the conference, and your responsibilities will include: · Introducing the speaker(s) · Ensuring that the session ends on time · Making any last-minute announcements · Summoning technology assistance if needed · Reminding attendees to complete the session evaluation form · For streamed sessions, reminding the speaker about the online audience If you have any questions, please let me know or contact Valerie Vogel (...
April 20, 2012 | Martin Manjak
The security provisions of The I2 NET+Box offering look good from the provider's perspective. We know there were problems at both ends with Dropbox (encryption keys and the ability to manipulate the identifier on the local client). Box looks like they've addressed the hosting side concerns, but I haven't seen any discussions yet of how the client works (authentication, synchronization). Can anyone speak to this? Marty -- Martin Manjak CISSP, GIAC GSEC-G Information Security Officer University at Albany MSC 209 518/437-3813 The University at Albany will never ask you to reveal your password. Please ignore all such requests.
April 19, 2012 | Nathan Zierfuss
We received some information via our abuse@ email address that suggested using this search string in Google

no OR without prescription site:YOUR.edu

and located a few sites that had been victims of this.
Nathan

April 19, 2012 | Listserv Anonymous User
Message from jamesfurstenberg@ferris.edu

Looking to see what other Universities use for IT security Event Tracking, timelines,  investigation tracking and reporting generating software.


Any suggestions would be appreciated.







Thank you


Jim Furstenberg
IT Security Analyst, CEH  
-----------------------------------
Ferris State University
330 Oak St., WES 114
Big Rapids, MI  49307
Office: 231.591.5335
Mobile: 231.645.5821
JimFurstenberg@ferris.edu

----------------------------------------------
For technical support, please go to
http://www.ferris.edu/techsupport
or call 231-591-4822 local
or toll free 877-779-4822
April 19, 2012 | Derek Tonkin

You could always go to google and logout and then run the search but you can’t set that up as an alert.  Alternatively, you could setup a different user that you used exclusively for this purpose.

 

-------------Baylor University-------------

Derek Tonkin

Information Security Analyst

Information Technology Services - Security

derek_tonkin@baylor.edu        254-710-7061

---------------Sic 'em Bears---------------

 

April 19, 2012 | Robert Maxwell
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 I'm posting on behalf of SANS, for whom I do not work. I am registered and would love to see some healthy competition there (so I can get my butt kicked.) I'm also using it as instruction on how to structure similar activities for students here at UMCP. Please consider registering for the SANS NetWars Tournament, which will be offered as a preconference seminar during the 2012 Security Professionals Conference (May 15-17, Indianapolis, IN - www.educause.edu/SEC12). If you're attending in person, visit the face-to-face conference registration page (http://net.educause.edu/Registration/1030128) and be sure to select the SANS NetWars Tournament as your preconference seminar option (SEM02F, 10 am - 5 pm ET). Note: A...
April 18, 2012 | Valerie M. Vogel
During next Thursday's EDUCAUSE Live! webinar, "Developing Social Media Guidance," two University of Pennsylvania security and privacy professionals will describe their process for developing social media guidance, including strategies, pitfalls, and questions. Read full abstract: http://net.educause.edu/live1210 Date: April 26, 2012 Time: 1:00-2:00 p.m. ET (UTC-4) Speakers: Joshua Beeman, Chief Information Security Officer, University of Pennsylvania Lauren Steinfeld, Senior Advisor for Privacy and Compliance, University of Pennsylvania Register now for this free, hour-long webinar: http://net.educause.edu/RegisterNow/1031031 Thank you, Valerie _______________ Valerie M. Vogel Program Manager, EDUCAUSE office: (202) 331-5374 e-mail:...
April 18, 2012 | Jeffrey Gargac

All,

 

I found this link on Sophos blog and thought it might be useful.  They’ve put together a packet of free resources that can be integrated into your security awareness program.

 

http://www.sophos.com/en-us/security-news-trends/it-security-dos-and-donts.aspx

 

Thanks,

 

Jeff Gargac

Network Server & Virtualization Administrator

Maryville University

(o) 314-529-9226

jgargac@maryville.edu

 

 

April 16, 2012 | Ken Connelly
A PGP key-signing event is scheduled to take place during the upcoming Security Professionals Conference in Indianapolis. All SPC attendees are encouraged to attend this event on Wednesday evening from 6:30-7:00pm. [1] http://www.educause.edu/SEC12/Program/BRK27 [2] http://www.ren-isac.net/events/spc_2012_keysigning.html [3] http://biglumber.com/x/web?keyring=2102 -- - Ken ================================================================= Ken Connelly Associate Director, Security and Systems ITS Network Services University of Northern Iowa email:...
April 16, 2012 | Michael G. Carr

For those of you who have implemented Tripwire Enterprise,

 

a.       Is the team that designed its implementation (and implemented it) on your campus the same team that receives alerts?   What are these teams’ primary roles and responsibilities?

b.      For those of you who have Tripwire in production, what training did your teams take and, in retrospect, was it sufficient, etc.?

Thanks in advance to everyone who replies,

 

Mike

 

 

 

Michael G. Carr, JD, CISSP, CIPP

Chief Information...

April 15, 2012 | Michael A. Schalip

Hi Folks....

Has anyone else been approached by Google Maps to allow them to "map your campus" in detail - presumably, for student navigation purposes??  Here's the "agreement" that they want us to sign off on.  I have some basic concerns, but - then again - my concerns may be completely unfounded.  So - I thought I'd offer this up to this group to see what your collective wisdom would respond with....(note the italicized entry)....

Let me know what you all think....

 

Thanks,

 

Michael

Agreement
We (the “Property Owner”, “Property Manager”, or “Property Operator”) hereby permit Google Inc. (through its employees, affiliates or agents) to enter the publicly accessible areas of the properties described above, at a time and in the manner directed by our designated...

April 12, 2012 | Chris L. Davis

Wondering if anyone out there uses Fortinet firewalls.  What I’m looking to find out is:

 

How long have you been using them?

How many people?  How much Bandwidth?

 

Accolades?  Horror Stories?

 

Are you moving protocol based rules to application based rules?   If not, why?

Are you using the IPS, SSL decryption, anti-malware, web filtering, in other words most/all the included features? 

 

How has it worked for you?  Do you miss the firewall you replaced?

 

Any other comments?  Love to hear the good and not so good.

 

...

April 12, 2012 | Listserv Anonymous User
Message from lupton@isc.upenn.edu

We're receiving reports from across campus today about a spam/phishing-like email inviting the recipient to sign up for "UPENN Collaborative Networks" at the provided URL. The accompanying text suggests it's a Facebook/LinkedIn wannabe, the (alleged) sender is one "Brett Ashlock (bashlock@weavemail.com)". I tried plugging other peer institution names into the URL in place of UPENN and got a raft of 404 messages. Anyone else seeing this, or are we just the lucky lottery winners this time around? They do not appear to be related to Collaborative Networks (www.collaborativenetworks.net), a Boston-based firm. The URL in the message is part of www.weavespace.com, and that site is remarkably free of...
April 12, 2012 | Valerie M. Vogel
The InCommon Confab: Scaling Community Trust will take place in Arlington, Virginia, in two weeks – April 26-27 (immediately following the Spring 2012 Internet2 Member Meeting).
This meeting will provide an opportunity to learn how the InCommon community is using trust services to enhance users’ experiences and scale online relationships. It will also provide a valuable opportunity to talk to your colleagues from other InCommon institutions. Track sessions will address the needs of those new to federated IdM, as well as those who have experience in the field.
The program includes three keynotes:
  • Ian Glazer, research director at Gartner, who leads their coverage of identity and access governance and privacy.
  • Anil John, a digital security and service orientation expert with the U.S. GSA and FICAM
  • Ken Klingenstein, senior director for middleware and security at Internet2, and one of the world’s thought leaders in...
April 12, 2012 | Listserv Anonymous User
Message from trust2012@sba-research.org

 

TRUST 2012

Call for Participation & Call for Posters

5th International Conference on Trust and Trustworthy Computing

13-15 June 2012, Vienna, Austria

http://trust.sba-research.org

 

 

It is our great pleasure to invite you to participate in the upcoming TRUST conference:

 

 

Call for Participation

 

TRUST 2012 focuses on the technical and soci-economic aspects of trustworthy infrastructures. It provides an excellent interdisciplinary...

April 11, 2012 | Listserv Anonymous User
Message from von@vonwelch.com

Indiana University's Center for Applied Cybersecurity Research (CACR / cacr.iu.edu) has an opening for a Lead Security Analyst. The Center for Applied Cybersecurity Research (CACR) works to advance both the practice and research of cybersecurity as it is applied across the U.S. and internationally. CACR obtains funding from a variety of sources, both public and private sector, which provides it with an evolving set of challenges to address. This position blends operational cybersecurity with development and applied research to advance operational cybersecurity, primarily in the domain of distributed computational science. It works both with individual collaborator communities and on cybersecurity advancements with broad impact. http://www.indiana.edu/~uitshr/services/jobs/...
April 11, 2012 | Jodi-Ann Ito
Just a quick reminder that the early registration deadline for the upcoming Security Professionals Conference ends on Monday April 16th.

Sign up now and join us in Indianapolis from May 15-17.  The theme for this year's conference is:  Security Everywhere: Exploring the Expanding World of Security.  Our program covers a wide variety of topics aligned in these track areas:  
- Awareness & Training
- Technology Concepts
- Advanced Technology
- Governance, Risk & Compliance
- Corporate & Campus Solutions

For a more in-depth understanding of key focus areas, consider registering for pre and/or post-conference workshops.

And new this year, is our co-location with EDUCAUSE Enterprise IT Leadership Conference: Leading Today's People for Tomorrow's Enterprise IT.  Registration for this is event is a separate registration, but...
April 11, 2012 | David Shettler

We are encountering a series of problems with our timecards vendor Kronos and Oracle's latest Java release.


Java 1.6_31 causes sporadic problems in Kronos.  Kronos support has proposed the solution that we down-rev java on client workstations until they release their new version which will happen "soon".  1.6_31 has been out since February.  We're not willing to put hundreds of Kronos users' at risk by down-reving Java given the prevalence of malware exploiting earlier versions on the web, we've been struggling to do just the opposite since February, but even if we were:  Firefox has blocklisted any earlier versions, and Apple has deployed 1.6_31 to counter new mac-malware.


Are other Kronos users experiencing this issue?  Are you permitting down-reving of java?  Are you applying pressure on Kronos?  We're hitting a brick wall with them, and their proposed...

April 10, 2012 | Mark Boolootian
University of California, Santa Cruz is recruiting for a full-time senior network security engineer.  This position will manage the security group, lead planning and development of the campus-wide security architecture, and will enjoy an unlimited supply of operational security activities.  Vast opportunity awaits the candidate with vision.  Strong technical chops are essential. Details on the position can be found here:  https://jobs.ucsc.edu/applicants/Central?quickFind=65594 Questions on the position can be fired in my direction.
April 11, 2013 | Dan Han
We are a HIPAA hybrid entity with several departments and schools, especially on our medical campus, covered under HIPAA. We are currently in the midst of transitioning all of our faculty and staff onto GMail and Google Apps. To my understanding, under the new Omnibus rule, the "conduit exception" does not apply to Google or any other vendors that store PHI for covered entities. Therefore, any of our covered units should not migrate to Google and we will need to keep an in-house system for these units. Has anyone else have ran into this conundrum, and how have you addressed it? Please advise. Thank you.

Dan Han
Virginia Commonwealth University
April 10, 2013 | Nicholas Lewis
Hi everyone,
 
We have an opening for an Information Security Architect here at Saint Louis University:
 
http://jobs.slu.edu/applicants/Central?quickFind=65478
 
I'll be at the Educause Security Professionals Conference next week and would be happy to talk to anyone about this position. Or, feel free to contact me off-list.
 
Thanks,
 
Nick

--
Nick Lewis
Information Security Officer - Director, Information Security
ITS Information Technology Security Services
Email: nlewis10@slu.edu - Phone: 314-977-1786
April 10, 2013 | Valerie M. Vogel
Just a friendly reminder that today (April 10) is the last day to receive early-bird registration rates for the 2013 Security Professionals Online Conference. Note that you can purchase an additional login at half the price of a full registration if you're already registered, but know of others on your campus who would benefit from attending. http://www.educause.edu/events/security-professionals-conference/registr... Also, please join us today at 1 pm ET (12 pm CT; 11 am MT; 10 am PT) for a brief orientation session about the online conference. Hope to see you there! Thank you, Valerie Valerie Vogel Program Manager EDUCAUSE Uncommon Thinking for the Common Good direct: 202.331.5374 | main: 202.872.4200 | twitter: @HEISCouncil | educause.edu From: EDUCAUSE > Reply-To: educause > Date:...
April 8, 2013 | Listserv Anonymous User
Message from win-hied@bradjudy.com

This is a quick reminder for those who are coming to SPC and enjoy photography.  Join me for a morning photo-walk around the area and a breakfast table of photography chat.  If you’re interested, let me know.  If you want to take up my offer on trying a vintage camera that inspires modern retro-photography, be sure to let me know so I can bring the appropriate gear and film. 

 

Thanks,

 

Brad Judy

 

April 5, 2013 | Angelo D. Santabarbara
Currently we have them take the Email module.  The STH modules are SCORM compliant and as such can be used to build content in Black Board.  The person who works on this is on vacation, but I have found some on-line instructions posted by other universities like this one that may get you on the right track:  http://www.niu.edu/blackboard/faq/qa/scorm.shtml

Our SANS representative was also very helpful in guiding us on how to do this.  They provided this documentation: http://www.securingthehuman.org/media/support/SANS-STH-LMS-Documentation.pdf


 
Angelo D. Santabarbara
Director of Networks & Systems
Siena College
...
April 3, 2013 | Listserv Anonymous User
Message from advax@triumf.ca

Does anyone know anything about 88.blocklist.zap ? We have a mailserver being blocked on some sites based on an entry in that. As far as I cen tell with Google, it's an internal list used by a Microsoft mail service, with no public interface. There's a well-documented procedure to get off the list by mailing them an ip address, but I want to know how one gets on the list in the first place and how to prevent it in the future. If our mailing list is being targetted somehow, moving it to another SMTP server and getting that poisoned too seems like a bad idea. My emails to the removal address have so-far returned only "please provide the error message". -- Andrew Daviel, TRIUMF, Canada Tel. +1 (604) 222-7376 (Pacific Time) Network Security Manager
April 2, 2013 | Doug Pearson
Greetings, REN-ISAC has partnered with SANS to make highly respected security training available to the education community at steeply discounted prices. The partnership will make SANS OnDemand technical training, including GIAC, and Securing The Human user awareness training available during a special aggregate purchase period from June 1 through July 31, 2013. Securing the Human (STH) provides extensive employee security awareness training that targets today's weakest link in enterprise security – the human. Online training modules cover topics such as social engineering, using e-mail safely, smartphone security and FERPA. The special pricing is a limited-time opportunity. The regular price for 250 users is $20 per user, but during this window, the price will drop to $1.60 per user for a 1-year license (minimum order $2,000) or $2.80 per user for a 2-year license (minimum order $3,500). With OnDemand technical training, you have a choice from more than 40 SANS courses that can be...
April 1, 2013 | Valerie M. Vogel
IAM Online – Wednesday, April 10, 2013
3 pm ET / 2 pm CT / 1 pm MT / Noon PT
 
Aligning Identity and Access Management with Your Information Security Program
 
Campus efforts related to identity management and information security are still evolving as institutions of higher education seek to keep up with advances in technology, changes in security threats and vulnerabilities, increases in compliance obligations, and modernization of institutional business processes. There is little disagreement that IAM and InfoSec should be aligned and closely coordinated. However, campuses have taken different approaches to how IT organizes the two functions. This webinar will discuss options for aligning and organizing IAM and InfoSec in the face of current challenges and opportunities.
...
March 25, 2013 | Carlos S. Lobato

Hello Colleagues,

 

If your University has an official data dictionary policy, I would appreciate if you would share a copy and/or link we me. 

 

In addition:

 

What are some of the risks you perceive for not having an official University-wide data dictionary in place?

 

What are the benefits for having an official data dictionary in place? 

 

Thanks in advance,

 

Carlos

 

Carlos S. Lobato, CISA, CIA

IT Compliance Officer

 

New Mexico State University

Information and Communication Technologies

MSC 3AT PO Box 30001

Las Cruces, NM  88003

 

Phone (575) 646-5902

Fax (575) 646-5278

March 25, 2013 | Antonio Crespo
Hello All,

I'm new to HE and am looking to perform a security audit on some Datatel/Ellucian products that we have.  Is anyone familiar with any hardening, security configuration guides or security best practices specifically for their products?  I've done a lot of searching including the documentation available from their website to no avail except for instructions on how to configure SSL for connections and how to manage access within the applications.  Any information that you could provide would be greatly appreciated.

Please contact me offline for any specifics about our applications.

Thanks and Best Regards,

Antonio Crespo
Barnard College

March 19, 2013 | Paul Howell

Good afternoon,

 There’s still time to register for the 2013 Security Professionals Conference!

 I hope that you will join us for the 11th annual gathering of security and privacy professionals. This year’s program includes many technical sessions, as well as new tracks on privacy and career development. We’ve also launched several new activities focusing on professional development, mentoring, and community building.

 If you can’t be there in person, please consider participating in the online conference, which will include 9 webcasts and 5 exclusive online sessions.


For more information about registering, visit: http://www.educause.edu/...

March 13, 2013 | Christopher Jones

For those of you using Orbis’ Co-Curricular Record system, I would be interested in knowing what method of authentication you are employing.  Orbis recommends LDAPS authentication via Active Directory (for those who are Microsoft shops).  This would mean allowing Orbis access to our AD servers via port 686.  If anyone is using this application and is allowing AD authentication, I would be interested in hearing your comments/concerns.  Thanks in advance for your responses.

 

Christopher Jones

IT Security Analyst

University of the Fraser Valley

Christopher.Jones@ufv.ca

 

February 28, 2013 | Matt Morton

Frank

 

I have had very good experiences with SecureWorks.  Feel free to call or email offline if you want more information.

 

Matt Morton, CISSP, MHEA

Chief Information Security Officer

University of Nebraska at Omaha

6001 Dodge St., Omaha NE  68182

mmorton at unomaha.edu

402.554.2425 (o)

402.214.5943 (m)

 

February 19, 2013 | Carlos S. Lobato

Hello Colleagues,

 

We are in the process of drafting and possibly adopting a Security Cameras policy, but management is wondering if there is any national data that would talk about the effectiveness of security cameras.

 

If you know of any survey, studies or just have good examples as to how security cameras have had an impact on security on your campus I would appreciate you sharing those resources with me.

 

Thanks in advance,

 

Carlos

 

 

Carlos S. Lobato, CISA, CIA

IT Compliance Officer

 

New Mexico State University

Information and Communication Technologies

MSC 3AT PO Box 30001

Las Cruces, NM  88003

 

Phone (575) 646-5902

Fax (575) 646-5278

February 15, 2013 | Kris Monroe

There was also an ECAR Occasional Paper titled “The Career of the IT Security Officer in Higher Education” that included Reporting Line, Responsibilities, Skill Sets, etc. It is still available at the following URL:

net.educause.edu/ir/library/pdf/ECP0901.pdf

 

I have found this useful in the past.

Regards,

-Kris

--

Stay Safe Online!

Visit ithaca.edu/ICinfosec for the latest cyber security tips.

--

Kris Monroe, CISSP, CISA, CISM

Information Security Officer

Office of Information Technology Services Job Hall

 

Ithaca College

953 Danby Rd. | Ithaca...

February 1, 2013 | Listserv Anonymous User
Message from aperry@murraystate.edu

Amen, Jeff. That made my morning.

Drew Perry
Security Analyst
Murray State University
(270) 809-4414
aperry@murraystate.edu

***MSU Information Systems staff will never ask for your password or other confidential information via email.***



January 31, 2013 | Tracy Mitrano


Sent by tbm3@cornell.edu:
Chinese Hackers Infiltrate New York Times Computers
By NICOLE PERLROTH
The timing of the attacks coincided with reporting for an investigation that found that the relatives of China?s prime minister had accumulated a fortune worth several billion dollars through business dealings.
Or, copy and paste this URL into your browser:...
January 25, 2013 | Dick Jacobson

If the notice comes to me (or is given to me), I will takes these steps also.  I appreciate it when others tell me of a compromised machine before it escalates too far.

 

January 22, 2013 | Listserv Anonymous User
Message from semenko@alum.mit.edu

For those following the MIT security ongoings, it looks like the MIT.edu TLD was hijacked: See: $ whois mit.edu Offhand, this looks like the Educause host record was updated: $ whois @whois.educause.net mit.edu or whois.educause.net - Nick -- Nick Semenkovich Laboratory of Dr. Jeffrey I. Gordon Medical Scientist Training Program School of Medicine Washington University in St. Louis 314.362.3963 (Lab) 314.374.4434 (Cell) http://web.mit.edu/semenko/ http://www.VaccinateYourDoctors.org/
January 15, 2013 | Valerie M. Vogel
IAM Online – Wednesday, January 16, 2013
1 pm ET | Noon CT | 11 am MT | 10 am PT
 
**************
Scalable Privacy: An NSTIC Grant for the Identity Ecosystem
 
Are you interested in providing users more control over privacy, including consenting to release of attributes and actively managing their identity in cyberspace? Would you like to hear about a national effort to build a consistent and robust privacy infrastructure? Join us for this IAM Online, where Ken Klingenstein of Internet2 will discuss how this federal pilot program will help develop tools and technologies to achieve these goals.
 
Under the grant, provided by NIST through the National Strategy for Trusted Identities in Cyberspace, Internet2 and partner campuses will build this infrastructure through...

Group Leaders

The University of Arizona
University of Maryland, Baltimore
EDUCAUSE

Related to this Group...

Close
Close


Annual Conference
October 15–18, 2013
Register now!

Events for all Levels and Interests

Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.

Close

EDUCAUSE Institute
Leadership/Management Programs
Explore More

Career Center

Leadership and Management Programs

EDUCAUSE Institute
Advanced Programs
Project Management

 

Fellowships and Awards

Fellowships
Awards Programs

Getting Involved

Mentoring
Volunteer
Speak at an Event

 

 

Jump Start Your Career Growth

Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.

 

Close
EDUCAUSE organizes its efforts around three IT Focus Areas

 

 

Join These Programs If Your Focus Is

Close

From the Blogs

Get on the Higher Ed IT Map

Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
 

 

Close

2013 Strategic Priorities

  • Connected Learning
  • Enterprise IT
  • Foundations


Learn More >

Uncommon Thinking for the Common Good™

EDUCAUSE is the foremost community of higher education IT leaders and professionals.