-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Save the date!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
Filter by type
Filter by Publications
Filter by Presentations
Filter by Library Taxonomy
- Intrusion Detection and Prevention [x]
- Security Risk Assessment and Analysis [x]
- Cybersecurity (13)
- Network Security and Applications (13)
- Security Management (13)
- Incident Handling and Response (6)
- Data Security (4)
- Policy and Law (3)
- Security Awareness (3)
- Campus Policies (2)
- Campus Policy and Law (2)
- Information Systems and Services (2)
- Network Vulnerability Assessment (2)
- Security Architecture (2)
- Security Policies (2)
- Vulnerability Scanning (2)
- Analytics (1)
- Copyright (1)
- Identity and Access Management (1)
- Intellectual Property (1)
Resources Developed by the Higher Education Information Security Council (HEISC)
- Information Security Governance
- Information Security Governance Assessment Tool
- Information Security Risk Assessment Consultants List
- Information Security Risk Assessment Sample RFPs
- Risk Assessment Tools
- Risk Management Framework
Risk Analysis and Security Evaluation Tools
- Electronic Risk and Requirements Assessment (E-RA)
- CCTA (Central Computer and Telecommunications Agency) Risk Analysis and Management Method (CRAMM)
- Control Objectives for Information and related Technology (COBIT)
- NIST Recommended Security and Privacy Controls for Federal Information Systems and Organizations (SP 800-53)
- NIST's "An Overview of Issues in Testing Intrusion Detection Systems"
- Operationally Critical Threat, Asset, and Vulnerability EvaluationSM (OCTAVE)
- Security Targeting and Analysis of Risks (STAR)
Updated October 2012
Library Items on this Topic
EDUCAUSE Library Items for Security Risk Assessment and Analysis
-
Can Big Data Help Universities Tackle Security, BYOD?
-
July 31, 2012
Universities have some of the most complex IT infrastructures around, and BYOD is a reality they can't escape. Chief Security Officers at universities are increasingly turning to Big Data an…
-
Raising Awareness of Website Vulnerability: How to Protect Your University's Site from Threats
-
April 5, 2011
|
A session at the Security Professionals Conference 2011
As universities make the complete transition to a web-based interface, they must be aware of the constantly evolving strategies and attacks of hackers looking to exploit vulnerable websites. The im…
-
Seminar 01A - Our Shared Risk, Our Shared Responsibility: Learning to Prevent Confidential Data Loss PLEASE NOTE: Separate registration and fee are required to attend this seminar.
-
April 4, 2011
|
A session at the Security Professionals Conference 2011
The information security team at Texas State University has embarked on a strategic initiative to prevent confidential data leakage through a combination of endpoint protection, data loss preventio…
-
Sensitive Data and Public Systems: Free Tools and Tactical Approaches to Reduce Information Exposure Risk
-
April 5, 2011
|
A session at the Security Professionals Conference 2011
The growing number of public-facing university systems also leads to increased risk of potential disclosure of sensitive information. This session will explore pragmatic, technical approaches secur…
-
Intrusion Detection: Getting to Know Bro
-
September 14, 2009
The open-source Bro network intrusion detection system provides a flexible framework for high-performance traffic inspection. Bro's extensive application-layer analysis provides deep insight i…
-
Improving Security Event Correlation and Analysis Using Intelligent Agents
-
April 22, 2009
|
A session at the Security 2009
Attacks on computer resources are security events that are more complex and difficult to quickly and effectively collect, analyze, and respond to. This presentation will explain how the use of inte…
-
Stop, Drop, and Roll: Prevent and Douse Cyber Incidents
-
October 24, 2007
|
A session at the EDUCAUSE 2007 Annual Conference
Presenting two best-practice models for cyber incidents: To prevent cyber incidents, learn how to use an uncomplicated cyber risk assessment to help you focus your institution's limited resour…
-
Seminar 09F - Effective IT Security Practices PLEASE NOTE: Separate registration and fee is required to attend this seminar.
-
October 9, 2006
|
A session at the EDUCAUSE 2006 Annual Conference
IT security is a critical issue in higher education. This seminar will focus on network security architectures, infrastructure, data security, incident detection, prevention, and response. A framew…
-
Trends in Malicious Code on the Internet
-
January 1, 2006
The presentation will identify the FBI's role in combating malicious code outbreaks and investigating computer intrusion incidents, as well as the objectives of malware analysis. The malicio…
-
Surveying the Steps to a Secure Emory University
-
March 28, 2006
This research bulletin summarizes how Emory University used the results of a security survey of higher education institutions to make important, peer-informed decisions on how to secure and prote…

















