Home / Blog / Cybersecurity
September 4, 2019 by Carl Cadregari
Don’t hesitate to develop and implement a cybersecurity response plan this school year.
These days, it’s more likely than not that when you open your daily newspaper or scroll through your newsfeed, you’ll see coverage of a cyberattack impacting both businesses and consumers. Recently, a number of these cybercrimes have been targeted toward school districts – for example, over the summer, Louisiana Governor John Bel Edwards declared a statewide emergency as a result of cyberattacks in several school systems throughout Louisiana. Along the same lines, the Syracuse, N.Y., City School District was shut down for more than a week during a ransomware attack; and a similar incident in Baltimore earlier in 2019 cost the city more than $18 million in recovery efforts and lost or delayed revenue.
As cyber threats evolve and grow, it’s not a matter of if a cyberattack will happen but when – or, further still, has it already happened to your district and you don’t know it yet. Attackers are getting highly skilled at compromising an organization’s infrastructure, sitting on a network and waiting for a prime time to launch an attack. So, what can school districts do to prepare?
The constant stream of cyberattacks in the news can be daunting, as can the thought of adequately preparing your organization for these threats, but the more action you take now, the more prepared you’ll be when a breach occurs and the better you can sleep at night knowing that you’ve taken all the necessary steps to mitigate risk and develop a thorough plan of action. Take the opportunity at the start of this new school year to conduct a risk assessment, develop a CSIRP and train employees and students on responsible use of district software and devices.
Carl Cadregari is an Executive Vice President for FoxPointe Solutions and the Information Risk Management Division of The Bonadio Group. Carl has expertise in the areas of Data Privacy and Cybersecurity Controls, Physical, Administrative, and Technical Security, Enterprise Risk Management, Vendor Management, and Disaster Recovery Planning, having worked with companies across almost all vertical markets ranging in size from small businesses to multi-regional and multi-national organizations with thousands of employees.
FoxPointe Solutions is solely responsible only for the content of FoxPointe Solutions authored information and is subject to change at any time. Any forward-looking statements are not predictions. FoxPointe Solutions is not responsible for any errors or omissions, or for the results obtained from the use of this information. Questions regarding your legal or compliance position should be addressed through your legal counsel, security advisor and/or your relevant standard authority. Nothing contained herein should be used nor relied upon as advice nor constitute a consultant-client relationship.