-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Save the date!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
Subscribe
Filter by type
Filter by Publications
Filter by Library Taxonomy
- Policy and Law [x]
- Security Planning [x]
- Cybersecurity (13)
- Security Management (13)
- Cybersecurity Policy (9)
- Federal Policy and Law (9)
- Campus Policies (6)
- Campus Policy and Law (6)
- Security Policies (6)
- Security Awareness (4)
- Data Security (3)
- Security Architecture (3)
- Information Technology Management and Leadership (2)
- Network Security and Applications (2)
- Privacy (2)
- Security Metrics (2)
- Security Risk Assessment and Analysis (2)
- Compliance (1)
- Identity and Access Management (1)
- Professional Development (1)
EDUCAUSE Library Items for Security Planning
-
Information Security Program Assessment Tool
-
April 15, 2013
This self-assessment tool was created to evaluate the maturity of higher education information security programs using as a framework the International Organization for Standardization (ISO) 2700…
-
Higher Education Information Security Council 2012–2013 Strategic Plan
-
February 24, 2012
The HEISC mission is to improve information security, data protection, and privacy programs across the higher education sector through its working groups of volunteers and professional EDUCAUSE s…
-
Enterprise Information Security Program
-
March 26, 2009
The University of Iowa’s program for information security is a combination of policy, security architecture modeling, and descriptions of current IT security services and control practices. …
-
Information Technology (IT) Security Essential Body of Knowledge (EBK): A Competency and Functional Framework for IT Security Workforce Development
-
October 3, 2007
This federal register notice informs the public and interested stakeholders that the Department of Homeland Security (DHS) is making available for public review and comment ``Information Technolo…
-
Guide for Developing Performance Metrics for Information Security: Recommendations of the National Institute of Standards and Technology
-
May 19, 2006
This publication focuses on developing and implementing information security metrics for an information security program. The processes and methodologies described in this guidance link informati…
-
A Blueprint for Handling Sensitive Data: Security, Privacy, and Other Considerations
-
January 1, 2007
Information security risks at colleges and universities present challenging legal, policy, technical, and operational issues. According to a recent study by the EDUCAUSE Center for Applied Research…
-
National Infrastructure Protection Plan (NIPP)
-
January 1, 2006
Pursuant to Homeland Security Presidential Directive (HSPD)-7, this National Infrastructure Protection Plan describes a comprehensive, integrated Federal plan for critical infrastructure and key …
-
Corporate Information Security Working Group:
-
January 1, 2004
The Corporate Information Security Working Group (CISWG) was originally convened in November 2003 by Representative Adam Putnam (R-FL). The Best Practices team surveyed available information secu…
-
Strategies for Automating Network Policy Enforcement - Draft
-
January 1, 2004
This document provides a summary of some approaches forautomating technical policy enforcement as a condition fornetwork access in colleges and universities. …
-
Cyber Security: It Takes a Community
-
January 1, 2004
The authors discuss the need for the higher education community to come together, to ensure cyber security. Because of these perceived needs, a coalition of technology, industry, and education lea…

















