Collaborative Cybersecurity in a Voluntary Consortium: Ohio's IUC Cybersecurity Project
The number one EDUCAUSE focus for 2025–26 is Collaborative Cybersecurity. Ohio’s Inter-University Council (IUC) Cybersecurity Pilot Project demonstrates what this looks like in practice in a voluntary, nonsystem environment where collaboration must be earned, not mandated. This project shows how independent institutions have achieved system-level cyber maturity through shared governance, shared tools, shared training pathways, and shared cyber threat intelligence. The session presents a replicable operating model anchored in three modes of collaboration: quick wins, long bets, and experimental pilots. It is grounded in capacity-aware design that prevents burnout and builds trust. Participants will learn from a real implementation of a MISP-based threat-sharing pilot (Akron, Kent State, Ohio University, University of Cincinnati), an operational cybersecurity resource library, a statewide technology needs survey, a multicampus training plan (for cyber professionals and general audiences), and a roadmap toward common internal metric definitions to communicate risk with presidents and boards. We will also discuss contracting strategy, NDA/data-sharing safeguards, integration with REN-ISAC, and how to reduce duplicative effort through shared procurement. Attendees will leave with templates, rollout sequencing guidance, and a playbook to advance Collaborative Cybersecurity across university systems, consortia, states, or regions.
Presenters
-
Katrina Biscay
CISO,
University of Cincinnati
-
Jen March-Wackers
Executive Director, IUC Purchasing Group,
Ohio State University
-
John Virden
AVP, Chief Information Security Officer,
Miami University