Educause Security Discussion mailing list archives

Re: Awareness/Compliance Tracking Software


From: "DiGrazia, Mick A" <mick.digrazia () UCONN EDU>
Date: Wed, 29 Oct 2014 19:11:40 +0000

I’ve used Securing The Human, a SANS product. It’s a good product and the hosted solution allows you to do some fairly 
good tracking, reporting, reminders, etc.

http://www.securingthehuman.org/



Mick A. DiGrazia

University of Connecticut

Information Technology Services

(860) 486-1336

mick.digrazia () uconn edu<mailto:mick.digrazia () uconn edu>

From: Erik Decker <Erik.Decker () UCHOSPITALS EDU<mailto:Erik.Decker () UCHOSPITALS EDU>>
Reply-To: The EDUCAUSE Security Constituent Group Listserv <SECURITY () LISTSERV EDUCAUSE EDU<mailto:SECURITY () 
LISTSERV EDUCAUSE EDU>>
Date: Wednesday, October 29, 2014 at 1:44 PM
To: "SECURITY () LISTSERV EDUCAUSE EDU<mailto:SECURITY () LISTSERV EDUCAUSE EDU>" <SECURITY () LISTSERV EDUCAUSE 
EDU<mailto:SECURITY () LISTSERV EDUCAUSE EDU>>
Subject: Re: [SECURITY] Awareness/Compliance Tracking Software

Hi Jim – it’s not open source, but we used a hosted provider at Columbia.  That was “RocketReady”, which I think 
changed their name to “Sight Training”.  It was pretty darn cheap comparatively, for the 30k users.

Interesting, these just changed their name again… now they are Stridepoint.  Funny.

http://www.stridepoint.com/training

Happy to answer any questions you might have on it.


Erik Decker
Chief Information Security Officer (CISO)
The University of Chicago Medicine
850 E. 58th Street | Room 304 | Chicago, IL 60637
Office: 773-834-5471

AT THE FOREFRONT OF MEDICINE®
http://www.uchospitals.edu<http://www.uchospitals.edu/>
http://www.uchicagokidshospital.org<http://www.uchicagokidshospital.org/>
http://www.facebook.com/UChicagoMed



From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of 
Pardonek, Jim
Sent: Wednesday, October 29, 2014 12:42 PM
To: SECURITY () LISTSERV EDUCAUSE EDU<mailto:SECURITY () LISTSERV EDUCAUSE EDU>
Subject: [SECURITY] Awareness/Compliance Tracking Software

When I was at a different university (think Boilermakers) we had a web based application called webcert that housed 
their compliance “training” (HIPAA, FERPA, PCI, etc.) and keep track of who completed the training, presented them with 
a certificate and sent a reminder 30 days before your cert expired.  I am looking for a similar solution to deploy here 
for our needs as well.  Does anyone know of any open source packages that might fill the bill?

Thanks,

James Pardonek, MS, CISSP, CEH
Information Security Officer
Loyola University Chicago
1032 W. Sheridan Road | Chicago, IL  60660

•: (773) 508-6086

********************************************************************************
This e-mail is intended only for the use of the individual or entity to which
it is addressed and may contain information that is privileged and confidential.
If the reader of this e-mail message is not the intended recipient, you are
hereby notified that any dissemination, distribution or copying of this
communication is prohibited. If you have received this e-mail in error, please
notify the sender and destroy all copies of the transmittal.

Thank you
University of Chicago Medical Center
********************************************************************************

Current thread: