Episode 604: Evaluating Data Breach Trends & Payments Security in Higher Ed
FOCUS13 Kesä 2023

Episode 604: Evaluating Data Breach Trends & Payments Security in Higher Ed

As higher ed institutions continue to implement more digital technologies, data breach tactics have become increasingly sophisticated. Universities and colleges process and store massive amounts of sensitive personal and payments data, which are increasingly the target of cyberattacks. On this week’s episode of FOCUS, Sean Davidson, Senior Manager of Security Solutions at Verizon, shares the latest trends in payment security and data breaches. Davidson also imparts wisdom on the best practices of cybersecurity that institutions can follow to keep data safe and under payment card industry (PCI) standards.

Verizon in cybersecurity?

On the surface, the correlation between Verizon, a telecommunications company, and cybersecurity might not be easy to make. However, Verizon has maintained dedicated cybersecurity services for 23 years. They offer security management and assessment services out of nine global security operation centers. Verizon was an original contributor to the PCI compliance requirements, offering primary forensic investigation (PFI) and qualified security assessor (QSA) services to companies so they can confidently validate that their environment is secure and PCI compliant.

Data breach investigations report (DBIR)

Verizon’s most notable contribution to the cybersecurity industry is the Data Breach Investigation Report (DBIR). It’s seen as the foremost authority on data breach investigations and reporting and made up of data gathered by Verizon and 86 partners and industry experts. In 2022, the DBIR confirmed 5,212 data breaches out of the 23,896 security incidents reported under the DBIR’s framework. Davidson categorizes an incident as any time sensitive information is exposed, and breaches as anytime that information is then exfiltrated to outside environments.

“We analyze that data, and we boil it down and come up with a view of the cybersecurity threat landscape that companies can use to better understand their threats, their attackers, their motives, and the defensive areas that they should bolster to help prevent impact from these attackers,” said Davidson.

The DBIR’s findings are published annually to the public, with 2022 marking the 15th publication.

Trends

In Davidson’s observations, ransomware is five times more likely to affect education. Ransomware typically refers to sensitive information being compromised and held for a financial ransom. Even if the company pays the ransom, they might not regain access to the data or the data could still be leaked. A human element drives 82% of these breaches, mostly through phishing — which is when a scammer pretends to be a credible person within the victim organization to gain access to protected data.

System intrusions are also a rising threat to higher ed institutions. A system intrusion is an instance of hacking through physical means or modems. This type of cyberattack can also take place due to miscellaneous errors like sending valuable details to a third party, leaving ports open on web applications, and other sometimes human mistakes.

Web application attacks have decreased across the higher ed sector, possibly due to cloud service adoption.

Protecting institutions

One best practice to protect institutions is to have a solid security program with a good security posture. Cybersecurity insurance is a necessity, especially in the event of a breach. Davidson believes hiring a cybersecurity advisor is on the list of best practices to aid in cases of ransomware or phishing.

Zero-trust environments are quickly becoming a proven safeguard for cybersecurity breaches. The environments are created by sharing data on a need-to-know authorization. This eliminates the amount of access given to data sets, limiting potential leak opportunities.

Moving logins to two-factor authentication adds an extra layer of protection to accounts. This second step of identification could be as simple as a security question, or verification codes sent through text, email, or a phone call.

Although the threat of cyberattacks never goes away, putting these best practices into action and being vigilant of system weaknesses can make all the difference in security.

Resources from episode:

Data Breach Investigations Report (DBIR) is available to download for free from Verizon: https://www.verizon.com/business/resources/reports/dbir/

Payment Security Report (PSR) is available to download for free from Verizon: https://www.verizon.com/business/reports/payment-security-report/

Contact Sean Davidson at sean.davidson@verizon.com.

Special Guest: Sean Davidson.

Jaksot(51)

Episode 707: Managing Enterprise-Level Systems During Digital Transformation

Episode 707: Managing Enterprise-Level Systems During Digital Transformation

As higher ed institutions take steps towards innovation, strategy and technology need to be developed together. On this episode of FOCUS, Heather Fraser of Dalhousie University (Dal) discusses the str...

12 Joulu 202327min

Episode 706: Extending Student Success Beyond the Student Finance Office

Episode 706: Extending Student Success Beyond the Student Finance Office

Higher ed institutions are constantly innovating to fit the changing needs of students to support their success. Kevin Smith, Assistant Vice President and Director of Student Records and Financial Ser...

28 Marras 202330min

Episode 705: Optimizing Your Payment Solution to Work for Your Students

Episode 705: Optimizing Your Payment Solution to Work for Your Students

Many higher education administrators are called to their positions for the same reason: to help students succeed. Lisa Mazure, Associate Vice Chancellor for Finance and Fiscal Services at Alamo Colleg...

14 Marras 202335min

Episode 704: ACH Payment Trends and Avoiding Fraud in Higher Ed

Episode 704: ACH Payment Trends and Avoiding Fraud in Higher Ed

As higher ed institutions continue to evolve to offer more cashless payment solutions, automated clearing house (ACH) payments are becoming more popular. This week, Brad Smith, senior director of indu...

31 Loka 202324min

Episode 703:  Empowering a Safe and Secure Experience with OneCard

Episode 703: Empowering a Safe and Secure Experience with OneCard

On this episode of FOCUS, Doug Vanderpoel joins from Mount Holyoke College to share insights into how his institution uses the TouchNet OneCard Campus ID system to enhance the campus experience. From ...

17 Loka 202330min

Episode 702: Simplifying International Payments with Tulane University

Episode 702: Simplifying International Payments with Tulane University

Guiding international students through account payments can be tricky. With currency exchange rates constantly changing, it can be difficult for students to be confident that they are paying the corre...

19 Syys 202330min

Episode 701: Taking a Student-Friendly Approach to Past-Due Accounts with the University of Alabama

Episode 701: Taking a Student-Friendly Approach to Past-Due Accounts with the University of Alabama

On this episode of FOCUS, Kristy Pritchett, Director of Student Account Services at the University of Alabama, joined us to discuss how a student-friendly approach to past-due accounts lead to higher ...

5 Syys 202332min

Episode 607: Behind the Scenes of Mobile ID for Apple and Android

Episode 607: Behind the Scenes of Mobile ID for Apple and Android

Smartphone use is ubiquitous, especially on college campuses. With nearly every student carrying a smart device with them all the time, it was only a matter of time before colleges began investigating...

25 Heinä 202342min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
mimmit-sijoittaa
rss-rahapodi
psykopodiaa-podcast
rss-rahamania
herrasmieshakkerit
rss-seuraava-potilas
ostan-asuntoja-podcast
rss-20-30-40-podcast
rahapuhetta
rss-lahtijat
rss-inderes-femme
rss-myynnilla-on-asiaa-kert-kenner
pomojen-suusta
rss-inderes
rss-draivi
rss-strategian-seurassa
rss-porssipuhetta
rss-startup-ministerio
rss-bisnesta-bebeja