Profile

CommunityPlatform_1350x900.jpg

Michael MADL

Edit My Profile


My Content

1 to 20 of 30 total
Posted By Michael MADL 01-17-2024 01:23:29 PM
Found In Egroup: Cybersecurity
\ view thread
We are not blocking them. We have a well communicated policy regarding AI application use based on our data classification. We require review prior to utilizing institutional data via SaaS or locally loaded programs. In addition, we have discovered there is a cost regardless of Education license ...
Posted By Michael MADL 11-16-2023 10:24:30 AM
Found In Egroup: Cybersecurity
\ view thread
Thanks Frank [and others] for replying – can you send me an email directly so I can set up a quick chat? Michael.madl@indwes.edu MICHAEL MADL CHIEF INFORMATION SECURITY OFFICER INDIANA WESLEYAN UNIVERSITY CISSP | CvCISO | CEH | CCIE #10062 | ITIL v3 | VCP DO NOT provide ...
Posted By Michael MADL 11-16-2023 08:45:00 AM
Found In Egroup: Cybersecurity
\ view thread
Good day all! So we are looking to move off our current AV/XDR platform and I have been demo'g Crowdstrike Falcon. Would love to chat with someone who has this in place [AV/EDR, Exposure Management etc.] to briefly pick their brain on their experience. Would only need 10 min [?]. BIG investment so ...
Posted By Michael MADL 09-19-2023 01:52:00 PM
Found In Egroup: NIST 800-171 Compliance
\ view thread
Good afternoon, Is anyone utilizing a GRC tool for risk assessments, HECVAT evals etc.? I am looking at ISORA and also Security Studio [S2]. Was wondering if anyone has had success with this type of tool or if they are sticking with home grown tracking. Thanks! Mike ------- ...
Posted By Michael MADL 09-14-2023 07:20:51 AM
Found In Egroup: Cybersecurity
\ view thread
We are moving to longer passwords 16+ characters + one number and no requirement to change. Even though MFA is not 'fool proof' it does mitigate any password complexity and/or weakness.
Posted By Michael MADL 08-25-2023 06:27:17 AM
Found In Egroup: Cybersecurity
\ view thread
Be curious if the email headers all match up to those affected and if sharing these is an option. ------------------------------ Michael Madl - CISO Indiana Wesleyan University ------------------------------
Posted By Michael MADL 07-28-2023 12:12:41 PM
Found In Egroup: Cybersecurity
\ view thread
Our network/data center director is hiring for a pivotal position – one that spans multiple internal IT areas including security [dotted line to myself]. If you know of anyone who may be a good fit, please pass along this link: hxxps://careers.indwes.edu/cw/en/job/493207/it-security-systems-administrator ...
Posted By Michael MADL 06-28-2023 04:51:10 PM
Found In Egroup: Cybersecurity
\ view thread
IWU received a notification via the registrar's office and are awaiting details. :/ MICHAEL MADL CHIEF INFORMATION SECURITY OFFICER INDIANA WESLEYAN UNIVERSITY CISSP | CvCISO | CEH | CCIE #10062 | ITIL v3 | VCP DO NOT provide your username, password, or any personal information requested ...
Posted By Michael MADL 04-04-2023 06:25:50 AM
Found In Egroup: Cybersecurity
\ view thread
+1 MICHAEL MADL CHIEF INFORMATION SECURITY OFFICER DO NOT provide your username, password, or any personal information requested by any email. IWU WILL NEVER ask you for your username or password via email. DO NOT CLICK links or attachments unless you are positive the content is safe. ...
Posted By Michael MADL 02-08-2023 06:17:37 AM
Found In Egroup: Cybersecurity
\ view thread
Dan Can you send me the specs on the YubiKeys you are handing out offline? Just curious. Thanks! Mike MICHAEL MADL CHIEF INFORMATION SECURITY OFFICER INDIANA WESLEYAN UNIVERSITY
Posted By Michael MADL 02-06-2023 08:14:37 AM
Found In Egroup: Cybersecurity
\ view thread
Hey Alex, Good article (!) and I tend to agree with a lot of the points except for the crying about free speech rights to be honest. 'If' the app is truly as dangerous as it has been portrayed then I do not want to hear about folks complaining about rights etc. over security. This is valid for personal ...
Posted By Michael MADL 02-05-2023 02:39:00 PM
Found In Egroup: Cybersecurity
\ view thread
We have not done this either and I would ask the same question. We have engaged our faculty and are working to determine how to inject procedures to ensure students are doing their 'own' work.
Posted By Michael MADL 01-05-2023 09:59:08 AM
Found In Egroup: Cybersecurity
\ view thread
So are you blocking all traffic to university owned devices from accessing Tik Tok? Meaning, laptops, desktops and managed mobile phones? Just curious as to the extent of the ban. Is visiting and logging into the web site a risk since there is no 'app' per se installed on a laptop/desktop that could ...
Posted By Michael MADL 11-17-2022 06:18:13 AM
Found In Egroup: Cybersecurity
\ view thread
Welcome to higher ed John ��
Posted By Michael MADL 11-17-2022 05:54:13 AM
Found In Egroup: Cybersecurity
\ view thread
We are in the latter stages of a SecureOnix deployment thru our 3rd party SOC. MICHAEL MADL CHIEF INFORMATION SECURITY OFFICER CISSP | CEH | CCIE #10062 | ITIL v3 | VCP6-DVC DO NOT provide your username, password, or any personal information requested by any email. IWU WILL NEVER ask you ...
Posted By Michael MADL 11-14-2022 07:40:00 AM
Found In Egroup: Cybersecurity and Privacy Awareness and Education
\ view thread
Good morning, Just completed a recent 3rd party risk assessment and we talked at length about security awareness training. Full disclosure we do not provide training for adjuncts but only FT university employees. This is primarily done due to cost but also, we hold our FT employees accountable [strictly] ...
Posted By Michael MADL 10-05-2022 10:48:00 AM
Found In Egroup: NIST 800-171 Compliance
\ view thread
Hi Jay When is the meeting you speak of and how can I get an invite? Thank you Mike
Posted By Michael MADL 09-28-2022 05:21:26 AM
Found In Egroup: Cybersecurity
\ view thread
Hi Michelle, We rolled out Keeper Security [SaaS] about 2 years ago and haven't looked back. Great tool similar to LastPass. Due to it not being free only certain areas of the university are using it – HR, Advancement, Business Affairs, IT, Health Center – to name a few. The only negative is that ...
Posted By Michael MADL 08-25-2022 12:18:32 PM
Found In Egroup: Cybersecurity
\ view thread
1) Is your institution seeing such requests or similar ones? (If not, skip the rest of the questions.) – Yes. A few every 6 mo. Or so. 2) Who is handling these? CISO and Legal counsel 3) How are the requests being handled these? – No action is being taken at this time outside of asking the requestor ...
Posted By Michael MADL 08-23-2022 11:37:23 AM
Found In Egroup: Cybersecurity
\ view thread
We do not. (or at least not that I am aware of �� ) You can see general information about 'some' employees; names/positions but no contact info. I had it removed in order to not freely provide another method of attack. Now could someone figure out how to email our employees once they crack our email ...