Data breaches at higher education institutions are becoming more and more common, putting them near the top of the list of industries most affected by cyber security risks. Hackers target .EDU networks because they tend to be left wide open for attacks, either because the schools fail to prepare against such intrusions or because network users fall victim to vicious phishing scams. As our latest Bitsight Insights report revealed, university security teams juggle diverse IT infrastructure needs and unique challenges, including BYOD culture and multiple network access points. This leads to a major slump in security performance throughout the school year. So how can universities overcome these challenges?
The Importance of Benchmarking
As a previous Bitsight Technologies post noted, many businesses are using security performance to their competitive advantage. By comparing their own procedures to those at other companies, they can determine what improvements, if any, are needed and how they can best be put into practice. Higher education institutions could benefit in similar ways.
When cyber security strategy is implemented, it’s crucial to keep track of how well it’s performing. Waiting until an actual breach is too late. Maricopa Community College’s recent data breach cost the school upwards of $20 million, and although the University of Maryland reportedly doubled its IT security in 2012, that wasn’t enough to stop hackers from exploiting their system in May of 2014. More than 300,000 records were breached; repairs and related expenses could reach into the millions.