Cybersecurity Compliance is Only Half the Battle for EdTech

TechCrunch recently reported on accusations levied by the Federal Trade Commission against edtech giant Chegg – the FTC filed a legal complaint earlier this week indicating that Chegg’s lapses in cybersecurity compliance has resulted in numerous separate data breaches in recent years, and that these breaches were avoidable with better cybersecurity practices.

Sai Huda, CEO of CyberCatch, explains that cybersecurity compliance is only the first step in ensuring data security for edtech customers. The knack is ongoing maintenance and management of those security systems to identify and plug holes as needed – with thousands of attacks levied against educational institutions, hackers will always find vulnerabilities and exploit them.

Sai’s Thoughts

“Along with that, there’s gotta be two other things they’ve gotta do. One is they’ve gotta test those controls regularly. So just implementing the hundred eight controls and thinking you’re in compliance, it is just step one, the step 2, 3, 4, 5, 6, 7, 8, 9, 10 are to continuously test those controls because controls will break.

So, the key is to find those control failures, those security holes before the attackers do, and then plug them, and therefore the attackers will not be able to exploit those security holes and will not be able to be successful. The third thing the school sector must do is to have an incident response plan because it’s not a question of if, but when an incident will happen.

So the key is to be able to detect this incident and then to be able to respond so that damage is mitigated so that perhaps ransomware isn’t spread. Perhaps it can be curtailed. Data can be prevented from being stolen. Incident response plan is also key, and it must be implemented. That’s the way to be successful.

K12 schools are definitely in line of sight of attackers. CyberCatch scanned over 11,000 websites, internet facing assets of K-12 schools in the US and we found over 60% having vulnerabilities attackers can easily exploit break in, install ransomware and steal data.

So, this along with the FTCs order, should be a wakeup call for the whole K-12 sector to be proactive.”

Follow us on social media for the latest updates in B2B!

Image

Latest

Physician shortage
Solving America’s Physician Shortage Through Apprenticeship Programs, Online Training & Hands-On Experience
January 22, 2025

In a healthcare landscape reshaped by post-pandemic challenges, workforce shortages and burnout are stretching the system to its limits. According to the Association of American Medical Colleges, the U.S. is projected to face a shortage of up to 86,000 physicians by 2036, while turnover rates among nurses and allied health professionals continue to climb….

Read More
How Do You Meet Strict Healthcare Protocols Under Tight Deadlines?
How Do You Meet Strict Healthcare Protocols Under Tight Deadlines?
January 22, 2025

Healthcare facilities present a unique challenge in the restoration and disaster recovery process. Unlike other sectors, healthcare must remain operational around the clock to provide essential services to patients. Abel Mendoza, a seasoned project manager at BMS CAT, highlights the meticulous approach required to handle such critical environments effectively. “Our crews undergo additional training…

Read More
Image featuring disaster recovery in action: a team from BMS CAT assessing a damaged property, equipped with tools and technology, showcasing expertise in restoration and preparedness.
The Human Side of Restoration: Handling Losses with Care
January 22, 2025

In the first episode of Inside Restoration & Recovery, host Martha Lewis sits down with Abel Mendoza, a veteran project manager with BMS CAT, to delve into the human and technical aspects of disaster recovery. Abel brings decades of experience to the table, having started his journey with BMS CAT in 1997 as a…

Read More
workforce training
Employee Education and Workforce Training: Unlocking Mid-Market Potential Through Technology and Upskilling
January 22, 2025

Integrating education and workforce training as an employee benefit has become a pivotal strategy for talent acquisition and retention. While industry leaders like Walmart, McDonald’s, and Starbucks have long championed such programs, mid-sized and smaller enterprises often face barriers to implementation. A study found that education reimbursement programs deliver a 129% return on investment,…

Read More