school districts - esc7.net...gamifying the security awareness • program for long-term change •...

15
School districts Security awareness & phishing 2018 enhancing cyber resilience

Upload: others

Post on 11-Aug-2020

6 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

School districtsSecurity awareness & phishing 2018enhancing cyber resilience

Page 2: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

Review goals and challengesWhat can we help you with?

• Change individual behavior• Create culture of awareness• Consolidate data to detect vulnerability• Meet compliance regulations

School district goals and challenges:• Seeing increases in hacking attempts on the system, particularly with phishing, ransomware and

fraud attacks on end-users• Limited security budgets

Page 3: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

Growing problem

Page 4: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

Why Infosec IQ?Changing individual behavior

• Establish baselines through PhishSim and Assessments to understand behavior

• Build knowledge with role-based, interactive AwareEdtraining

• Ongoing testing and remediation for repeat offenders• PhishNotify™ to empower action

Changing organizational culture• Analyze and understand organizational trends through

Reporting and Analytics• Communication strategy for awareness program with

Program Resources• Foster friendly competition through Learner and

Departmental Grading and Ranking• Recognize positive change in individual behavior

Page 5: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

K-12 case studyInfosec IQ was recently featured in EdTech magazine in a case study with a school district.

How Metropolitan School district of Wayne Township combats ransomware with Infosec IQ

Page 6: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

K-12 content• FERPA• FERPA for K-12• Phishing for Educators• Physical Security & Student Records• Password Security for Educators• Safe Web Browsing for Educators• Mobile Security for Educators• Working Remotely for Educators• Removable Media for Educators• Student Series• HIPAA, PHI

Content relevant to teachers to connect security behavior with protecting students.

Page 7: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

K-12 content

Page 8: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

K-12 content

Page 9: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

K-12 contentFree Student Series• Security Awareness for

Grade School (K-3)

• Security Awareness for Middle School (4-8)

• Security Awareness for High School (9-12)

• Cybersecurity Careers (K-12)

• Security Awareness Game

Page 10: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

Gamifying security awarenessGamifying the security awareness

• Program for Long-Term Change• Celebrate and recognize good behavior• Remediate mistakes• Create friendly competition• Communicate results

Learner gradeOpens any attachment, &

enables macros. Never does required training

Dept. gradeFinancial processing: Low

program compliance & very high phishing susceptibility rate

Learner gradeReported 10 simulated & 4 real phishing attacks this

quarter. Completed all her role-based training on time.

FA+

C-

Page 11: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

About Infosec: outcome-based training

Founded in 2004 – Information Technology Trainingand Bootcamps for 10,000+ Students Per Year

• The highest quality training and teaching delivery results in tens of thousands of certified students

• Our pedigree is in instructional design, information• Security training and security awareness• Most awarded training company

Information security training platform that combines phishing simulation with security awareness training to educate employees, change behaviors and enhance cyber resilience to human-focused attacks.

+

Page 12: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

A comprehensive approach for unparalleled outcomesSecurity Excellence reinforces lessons from our PhishSim and AwareEdprograms through additional online and offline resources.

Our research shows this comprehensive approach dramatically improves outcomes: When our clients deploy a combination of role-based modules, hands-on exercises and realistic phishing simulations, phishing rates across learners drop to just 1%.

Page 13: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

Client success program• Dedicated Client Success Manager for white-glove support, from

installation to day-to-day management• 12-month delivery plan, supplemented with posters, newsletters,

employee handbooks, employee and executive communications and event plans

Examples of CSM support include:• Learner management, such as adding and deleting learners• Creating dynamic learner groups - e.g. New Hires• Creating custom email templates, notification, grading• Creating custom reporting and to automatically send out• Troubleshooting technical issues• Deployment and customization of of Security Excellence curriculum

Page 14: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

PhishDefender™

Page 15: School Districts - esc7.net...Gamifying the security awareness • Program for Long-Term Change • Celebrate and recognize good behavior • Remediate mistakes • Create friendly

Download your posters!The Art of Cyberwar