300 likes | 1.04k Views
Sinclair Community College. Motivation. Computer Crime and Security Survey 2002 by Computer Security Institute (CSI) 90% reported security breaches 80% with financial losses 85% detected viruses 78% inappropriate use of the internet. Motivation. CSI/FBI Survey in 2004
E N D
Sinclair Community College League IT Conference
Motivation • Computer Crime and Security Survey 2002 by Computer Security Institute (CSI) • 90% reported security breaches • 80% with financial losses • 85% detected viruses • 78% inappropriate use of the internet League IT Conference
Motivation • CSI/FBI Survey in 2004 • Almost 500 respondents • Average loss $300K • Denial of Service attacks • Loss of Intellectual Property • http://www.gocsi.com/awareness/fbi.jhtml League IT Conference
Motivation • The popular press • Availability of high speed internet connectivity • Growing use of small office/home office networks League IT Conference
Motivation • AACC survey of “hot programs” • 1100 colleges surveyed; 31% response • 65% reviewed or modified curriculum in response to increased homeland security • http://www.aacc.nche.edu/ League IT Conference
PDD #63 • Critical Infrastructure Protection • "Critical infrastructures are those physical and cyber-based systems essential to the minimum operations of the economy and government. These systems are so vital, that their incapacity or destruction would have a debilitating impact on the defense or economic security of the United States." - President William J. Clinton, 1998 League IT Conference
Legislation • The E-Government Act (Public Law 107-347) passed by the 107th Congress and signed into law by the President in December 2002 League IT Conference
Legislation • Title III of the E-Government Act, entitled the Federal Information Security Management Act (FISMA), requires each federal agency to develop, document, and implement an agency-wide program to provide information security League IT Conference
Legislation • Privacy requirements • Gramm-Leach-Bliley Act of 1999 • Health Insurance Portability and Accountability Act (HIPAA) League IT Conference
Security Awareness • “Pro Bono”, non-credit seminar • Small Office/Home Office • Individual users • No pre-requisites League IT Conference
Security Awareness • Recommended tasks to secure your computer • Topics • http://www.cert.org/ • http://www.cert.org/homeusers/HomeComputerSecurity/ • http://www.infragard.net/library/seven_tips.htm League IT Conference
Courses • Add security topics and awareness to every course in our curriculum • Integrate secure practices throughout • Confidentiality, integrity and availability of data League IT Conference
Courses • CIS224: Web Server Administration & Security • CIS206/207: Network Security I/II • CompTIA Security+ • CIS200: Programming a Firewall • Cisco PIX 501 or similar League IT Conference
Courses • CIS101: Home Computer Networks & Security • Personal or home office • CIS253: Securing a Windows Network • MCSE exam 70-299 • CIS255: Securing a UNIX/Linux Network League IT Conference
Courses • CIS257: Microsoft ISA Server • MCSE exam #70-227 • M72/M73: Cyber Security Tools and Cyber Ethics League IT Conference
Courses • For course descriptions and master syllabi… • http://www.sinclair.edu/academics/BUS/departments/CIS/courses/cdesc/index.cfm • http://www.sinclair.edu/academics/bus/departments/cis/index.cfm League IT Conference
Certifications • Achievable goals for non-degree students • Demonstrate a level of competence • Employer reimbursement for students • Various levels League IT Conference
Certifications • Cisco • Microsoft • CompTIA • CISSP • SANS/GIAC • Sinclair Community College League IT Conference
Certifications • Security for the Networking Professional • Four courses/14 credits • Network Security I & II • Securing a Windows OS • Securing Unix/Linux OS • Three academic quarters League IT Conference
Certifications • Small Office/Home Office • Six courses/10 credits • Introductory courses • Heavy internet orientation • Cyber security tools and ethics • Two or three quarters League IT Conference
Marketing • Field of Dreams: Build it and they will come?! • Radio/TV • Print media • Brochures, hand outs, etc. League IT Conference
Resources • National Centers for Academic Excellence in Information Assurance Education • National Security Agency & Dept of Homeland Security • 59 institutions in 27 states • Assessment criteria • http://www.nsa.gov/ia/academia/caeiae.cfm League IT Conference
Resources • WPAFB Air Force Institute of Technology (AFIT) • http://en.afit.edu/issa/research.html • Dr. Richard Raines, Director • IA Certificate Program and degree options • Partnership and grant application League IT Conference
Resources • Center for Systems Security and Information Assurance (CSSIA) • Moraine Valley CC • Five partner colleges in the Midwest • http://www.cssia.org/ League IT Conference
Resources • SANS (SysAdmin, Audit, Network and Security) Institute • Global Information Assurance Certification (GIAC) • http://www.sans.org/rr/ • http://www.giac.org/ League IT Conference
Resources • National Institute of Standards and Technology (NIST) • Security for small businesses • http://csrc.nist.gov/securebiz/ League IT Conference
Resources • Information Systems Security Educators Assoc • http://csrc.nist.gov/organizations/fissea/index.html • Infragard: FBI and private sector partnership • http://www.infragard.net League IT Conference
Courses League IT Conference
Courses League IT Conference
And in conclusion… • What about your…. • Ideas • Experiences • Suggestions • Questions • Thanks for sharing and participating today!! League IT Conference