-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Save the date!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
Subscribe
Filter by type
Filter by Presentations
Filter by Library Taxonomy
- Security Awareness [x]
- Cybersecurity (10)
- Security Management (10)
- Executive Security Awareness (3)
- Privacy (3)
- Compliance (2)
- Data Privacy (2)
- Incident Handling and Response (2)
- Information Technology Management and Leadership (2)
- Cloud Security (1)
- Data Security (1)
- Distributed Computing (1)
- Information Security Governance (1)
- Intrusion Detection and Prevention (1)
- Network Security and Applications (1)
- Network Vulnerability Assessment (1)
- Risk Management (1)
- Security Planning (1)
- Security Risk Assessment and Analysis (1)
- Vulnerability Scanning (1)
Introduction
Awareness and training are critical at all stages and levels of information security. For example, upper management needs to learn about the institutional risks; users must be taught how to defend themselves against malicious code; system and network administrators require training to help them maintain and improve the security of the systems they oversee; and information security support staff must be well-versed in all of these areas and have a solid understanding of vulnerability assessment, intrusion detection, incident response, encryption, and authentication.
Resources Developed by the Higher Education Information Security Council (HEISC)
- Cybersecurity Awareness Resource Library
- Executive Security Awareness Resources
- Information Security Poster & Video Contest
- National Cybersecurity Awareness Month (NCSAM) Resource Kit
- National Cybersecurity Awareness Month (NCSAM) Sample Kit
- Security Awareness Quick Start Guide
- Security Awareness Detailed Instruction Manual
College and University Education and Awareness Programs and Resources
- Carnegie Mellon University Software Engineering Institute (SEI) CERT Coordination Center Resources for CSIRTs (Computer Security Incident Response Teams)
- George Mason University Security Awareness
- North Dakota State University ITS Training
- Rochester Institute of Technology Digital Self Defense Training
- Texas A&M University Security Awareness Training
- University of Arizona Information Security Awareness, Education, and Training
- University of Calgary Security Awareness Program
- University of Virginia Security Awareness
- Virginia Tech Awareness Training
Updated October 2012
Latest News
Find resources and see what other campuses are doing this October for NCSAM.
NCSAM article in the latest EDUCAUSE Review offers resources and suggestions for campuses to support security awareness efforts in October.
Library Items on this Topic
EDUCAUSE Library Items for Security Awareness
-
Security Awareness and Communication in the C-Suite
-
October 4, 2012
Drawing on more than 30 years of global experience, Dave Cullinane will share challenges that CISOs face while in the C-suite. This session will focus on how to advance executive understanding …
-
HEISC Town Hall Webinar: 2012-2013 Strategic Plan
-
January 9, 2012
In this webinar, the Higher Education Information Security Council (HEISC) discussed the following topics; Information security changes in the past 10 years Ongoing challenges for sec…
-
Cybersecurity as a Shared Responsibility: Stop, Think, and Connect
-
October 4, 2011
October is National Cyber Security Awareness Month . In this webinar, representatives from the White House, the U.S. Department of Education, and the Higher Education Information Security Cou…
-
Launch of Data Privacy Month for Higher Education
-
January 4, 2011
For several years EDUCAUSE and the Higher Education Information Security Council have been promoting October as National Cyber Security Awareness Month. Beginning in 2012, we will begin a simila…
-
Increasing Security Awareness: The Final Frontier?
-
May 13, 2010
Have you wanted to increase information security awareness on your campus but you’re not sure where to start? Do you have a limited budget? Would you like to leverage community resources? Would…
-
ISAAC (Information Security Awareness, Assessment, and Compliance): A Success Story
-
February 24, 2010
Risk assessment and mitigation are challenging in any environment, but especially in the open and decentralized world of higher education. Texas A&M University developed the ISAAC methodology…
-
REN-ISAC: Community Support for Cybersecurity Protection and Response
-
November 10, 2008
As with many institutional endeavors, successful practice in cybersecurity requires that the players (individuals and teams) operate in the context of a community that faces similar challenges, o…
-
A Tale of Two Tracks: Social Engineering Your Students and Detecting Bots with DNS
-
January 1, 2006
High-speed connections and lots of personal computers make campus networks target-rich environments for malware and botnet recruitment. Without a policy enforcement tool to manage student connect…
-
Campus and National Approaches to Improving Cyber Security Awareness
-
January 1, 2004
The solutions necessary to improve cyber security require a combination of approaches that involve people, processes, and technology. Consequently, a key ingredient to any cyber security strategy…
-
Managing Security Incidents
-
January 1, 2003
Despite our best efforts, security incidents will occur. Whether due to malice, carelessness, a new virus, or a determined hacker, CIO's and their staff will be faced with the need to carry …

















