Educause Security Discussion mailing list archives

Re: SOP for Managing Phishing/Ransomware Attempts


From: Rob Cherveny <Rob.Cherveny () UNG EDU>
Date: Wed, 10 Aug 2016 22:12:19 +0000

I'd be interested in your document as you progress. Unfortunately, we're ad hoc. 

Thanks. 
Rob 
--
Rob Cherveny, PMP
Director, Information Security 
University of North Georgia

On Aug 10, 2016, at 17:57, Christopher Jones <Christopher.Jones () UFV CA> wrote:

We are looking at revamping our current procedures for managing phishing and ransomware attempts.  What we have in 
place now is fairly informal, but are looking to develop a more formal plan.  If anyone has gone through this process 
and would be willing to share, that would be most appreciated.  Specifically, we could use information such as:
 
     1. Thresholds for when to generate general university-wide alerts
     2. Number of phishing messages received before a “search and destroy” operation is implemented to remove 
malicious messages from inboxes
 
Thanks.
 
Christopher Jones
IT Security Analyst
University of the Fraser Valley
Christopher.Jones () ufv ca
 

Attachment: smime.p7s
Description:


Current thread: