-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Save the date!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
Filter by type
- Articles, Briefs, Papers, and Reports [x]
Filter by Publications
Filter by Library Taxonomy
- Security Awareness [x]
- Security Risk Assessment and Analysis [x]
- Cybersecurity (6)
- Security Management (6)
- Data Security (3)
- Network Security and Applications (3)
- Policy and Law (3)
- Federal Policy and Law (2)
- Incident Handling and Response (2)
- Information Systems and Services (2)
- Cloud Computing (1)
- Identity Theft (1)
- Identity and Access Management (1)
- Information Technology Management and Leadership (1)
- Intellectual Property (1)
- Networking and Emerging Technologies (1)
- Open Source (1)
- Privacy (1)
- Risk Management (1)
- SaaS (1)
Resources Developed by the Higher Education Information Security Council (HEISC)
- Information Security Governance
- Information Security Governance Assessment Tool
- Information Security Risk Assessment Consultants List
- Information Security Risk Assessment Sample RFPs
- Risk Assessment Tools
- Risk Management Framework
Risk Analysis and Security Evaluation Tools
- Electronic Risk and Requirements Assessment (E-RA)
- CCTA (Central Computer and Telecommunications Agency) Risk Analysis and Management Method (CRAMM)
- Control Objectives for Information and related Technology (COBIT)
- NIST Recommended Security and Privacy Controls for Federal Information Systems and Organizations (SP 800-53)
- NIST's "An Overview of Issues in Testing Intrusion Detection Systems"
- Operationally Critical Threat, Asset, and Vulnerability EvaluationSM (OCTAVE)
- Security Targeting and Analysis of Risks (STAR)
Updated October 2012
Library Items on this Topic
EDUCAUSE Library Items for Security Risk Assessment and Analysis
-
Software-as-a-Service Email Security: Risk vs. Trust
-
May 31, 2012
Many organizations would be interested in treating e-mail as a commodity —cutting costs and resource investments by outsourcing it to a software as a service (SaaS) provider. However, …
-
Ten Steps to Secure Your Copier or Multi-Function Device (MFD)
-
June 3, 2010
These resources have been gathered to specifically address concerns related to the security of sensitive information that may be stored on the hard drives of copiers, printers, or multi-function …
-
Incident Response at UT Austin
-
January 1, 2006
An interview with VP for IT Dan Updegrove. The recent break-in to an administrative database at the McCombs School of Business at UT Austin (TX), discovered April 21, 2006, may have compromised the…
-
Locking Down Departmental Data
-
January 1, 2006
As hackers have found their way into computer networks around the country in recent years — putting individuals' personal information at risk of identity theft and embarrassing companies, co…
-
Open-source bugs undermine digital signatures
-
January 1, 2006
A pair of security bugs in cryptography software could allow an attacker to insert content into a digitally signed message or forge signatures on files. …
-
Surveying the Steps to a Secure Emory University
-
March 28, 2006
This research bulletin summarizes how Emory University used the results of a security survey of higher education institutions to make important, peer-informed decisions on how to secure and prote…

















