-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Save the date!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
Resources Developed by the Higher Education Information Security Council (HEISC)
- Information Security Governance
- Information Security Governance Assessment Tool
- Information Security Risk Assessment Consultants List
- Information Security Risk Assessment Sample RFPs
- Risk Assessment Tools
- Risk Management Framework
Risk Analysis and Security Evaluation Tools
- Electronic Risk and Requirements Assessment (E-RA)
- CCTA (Central Computer and Telecommunications Agency) Risk Analysis and Management Method (CRAMM)
- Control Objectives for Information and related Technology (COBIT)
- NIST Recommended Security and Privacy Controls for Federal Information Systems and Organizations (SP 800-53)
- NIST's "An Overview of Issues in Testing Intrusion Detection Systems"
- Operationally Critical Threat, Asset, and Vulnerability EvaluationSM (OCTAVE)
- Security Targeting and Analysis of Risks (STAR)
Updated October 2012
Library Items on this Topic
EDUCAUSE Library Items for Security Risk Assessment and Analysis
-
EDUCAUSE Response to NIST RFI: Developing a Framework to Improve Critical Infrastructure Cybersecurity
-
April 9, 2013
The Higher Education Information Security Council (HEISC), hosted by EDUCAUSE and Internet2, is pleased to submit comments to the NIST Request For Information on Developing a Framework to Improve…
-
ECPA Reform Update
-
February 11, 2013
Recording of the January 29, 2013 call with Greg Nojeim, Senior Counsel at the Center for Democracy & Technology on the Electronic Communications Privacy Act (ECPA) reform and its implication…
-
House Cmte. Passes Bill on Higher Ed. Data Transparency
-
May 16, 2013
On a bipartisan voice vote that took place in record time yesterday, the U.S. House of Representatives Committee on Education and the Workforce approved sending the "Improving Postsecondar…
-
The Student Unit Record System Returns?
-
May 13, 2013
As reported today in Inside Higher Ed , the Wyden-Rubio, and now Warner (D-VA), "Student Right to Know Before You Go Act" has shifted from its early stage concept of knitting…
-
SHEEO State Authorization Resources Updated
-
May 10, 2013
Sharmila Mann, a senior policy analyst at the State Higher Education Executive Officers (SHEEO) association, issued the following announcement this week on SHEEO's freshly updated state au…
-
Major Higher Ed. Community Developments on State Authorization
-
April 23, 2013
The higher education community continues to make significant progress toward addressing the problems of distance education state authorization through the development of a state authorization rec…
-
Google Accessibility Improvements
-
April 22, 2013
Google started informing its applications user groups today about the accessibility improvements it has made to a range of its applications and software platforms. (Please see below for the quote…
-
FCC Telecom Service Provider Accessibility Certification Rules
-
April 22, 2013
Our friends at ACUTA (the higher education telecommunications administrators association) have posted an alert to colleges and universities that "charge students, tenants, or others for …
-
Fed. Regs. on Student Identity Verification, State Authorization of Distance Ed. Back on the Radar
-
April 16, 2013
As reported in today's Inside Higher Ed , the U.S. Department of Education (ED) has announced its intent to modify the rule-making effort it originally proposed last year …
-
Data Privacy Month Awareness Video, 2013
-
January 14, 2013
SANS and EDUCAUSE have developed a free privacy awareness video that colleges and universities can use during Data Privacy Month in January, and throughout the year, in their privacy educ…

















