Lightning Round Session: Managing and Reducing IT Risk

Wednesday, October 16 | 10:45AM–11:30AM CT | W196b, Level 1
Session Type: Breakout Session
Delivery Format: Lightning Round
This lightning round will pack as much information into one session as possible. Hear succinct, engaging presentations on a variety of topics. Each will be 10 minutes long, with a Q&A at the end of the session.

Lightning Round 1: Partnerships for Successful MFA and Data-Loss Prevention Implementations

Fostering a culture of security has been a key campus priority. Implementations of Duo for multifactor authentication (MFA) and Spirion for data-loss prevention (DLP) have been adventurous, to say the least. Come learn about the selection process, change management practices, design and implementation challenges, resistance and complaints, preliminary results, and next steps.

Outcomes: Learn why Fresno State implemented MFA together with DLP * Obtain lessons learned and strategies to anticipate and address potential resistance * Get key ingredients for success and a recipe for how to apply them to your campus

Presenters: Brad Barker, Orlando Leon (California State University, Fresno)


Lightning Round 2: Most Password Rules Are Useless: A Natural Experiment

A public credential dump enabled a collaboration between researchers and security practitioners at Indiana University to test the effectiveness of password requirements on preventing password reuse. The authors have published their results and will share advice for other security practitioners on how to reduce the risk of password reuse at universities.

Outcomes: Evaluate your own password requirements * Better understand how your requirements prevent (or enable) password reuse on third-party sites * Adjust your password requirements to better prevent reuse

Presenters: Jacob Abbott, Daniel Calarco (Indiana University)


Lightning Round 3: Getting 100,000 University Community Members to Use 2FA

Have you ever been challenged with getting faculty, staff, students, and others to collectively change direction and work toward a common goal? Join these U-M IT leaders as they tell their tale of getting disparate groups with differing needs to help keep the institution's data and digital assets safe.

Outcomes: Learn how to effectively segment your audiences and respond to their valid needs * Learn how to get buy-in from institutional leadership as well as school, college, and unit leaders * Learn how to manage an institution's culture related to change

Presenters: Kyle Cozad, Dana Fair (University of Michigan–Ann Arbor)

Presenters

  • Brad Barker

    Senior Director of Cloud Strategies, Infrastructur, California State University, Fresno
  • Dan Calarco

    Deputy CIO, University of Wisconsin-Madison
  • Kyle Cozad

    Identity and Access Management Analyst, University of Michigan-Ann Arbor
  • Dana Fair

    Senior Marketing Communications Specialist, University of Michigan-Ann Arbor
  • Orlando Leon

    Chief Information Officer, EDUCAUSE Alumni

Resources & Downloads

  • Getting 100000 University Community Members to Use TwoFactor

    Updated on 11/26/2019
  • Managing and Reducing IT Risk

    Updated on 11/26/2019