Educause Security Discussion mailing list archives
Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services
From: Valerie Smith <vsmith () GENESEO EDU>
Date: Fri, 3 Sep 2021 10:01:33 -0400
Hi Vince, We've used it for almost a year now and we really like it. It's essentially just Nessus but they send a weekly pdf report with good info, charts, and graphs (the original Nessus data is embedded as an attachment in the appendix too). I've used their graphs in reports to management. And being able to say "DHS says this is a critical vulnerability" has helped get people to act a little quicker with remediations than they may have otherwise. ;) Also they send an annual report of aggregated, anonymized vuln data from across higher ed so that you can see how your institution compares against the average. Let me know if you have other questions or there's anything else I can help with regarding this topic. Thanks, Val Valerie Smith, CISSP (she/her) Sr. Information Security Analyst SUNY Geneseo vsmith () geneseo edu On Fri, Sep 3, 2021 at 9:43 AM Vince Bonura <vbonura () fordham edu> wrote:
Good morning, All! I am writing to inquire whether anyone is taking advantage of the Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services? We became aware of it recently and are considering signing up. Since it’s a free service, and another way to test the vulnerabilities of your publicly accessible networks, it seems like a no-brainer. But we are curious who is/has used it and what you thought of their findings. Thanks in advance! Vince Bonura IT Risk Analyst Fordham University (718) 817-1875 ********** Replies to EDUCAUSE Community Group emails are sent to the entire community list. If you want to reply only to the person who sent the message, copy and paste their email address and forward the email reply. Additional participation and subscription information can be found at https://www.educause.edu/community
********** Replies to EDUCAUSE Community Group emails are sent to the entire community list. If you want to reply only to the person who sent the message, copy and paste their email address and forward the email reply. Additional participation and subscription information can be found at https://www.educause.edu/community
Current thread:
- Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Vince Bonura (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Brian Cornell (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Powell, Andy (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services La Grew, Jesse S (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Kevin Ledbetter (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Sean Hagan (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services La Grew, Jesse S (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Valerie Smith (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Koppel, Lorna (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Hillhouse, Bob (Bob) (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Koppel, Lorna (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Shannon Ortiz (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Ken Connelly (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Kevin Ledbetter (Sep 03)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Davis, Ken (Sep 03)
- Re: [EXTERNAL] Re: [SECURITY] Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Nelson, Leonard (Sep 05)
- Re: [External] Re: [SECURITY] Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Thomas Dugas (Sep 07)
- Re: [External] Re: [SECURITY] Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services David Allen (Sep 08)
- Re: Cybersecurity and Infrastructure Security Agency(CISA) Cyber Hygiene scan services Koppel, Lorna (Sep 03)