Cyber Wall 3 Project
Below is an explanation of Cyber Wall 3 Project by the University's Computing Division
In recent years there has been a significant increase in information security incidents, such as the incident that happened at Technion University, at Hillel Yaffe Hospital, and at Shirbit company. These incidents have become complex and sophisticated.
The attackers take advantage of the weakest link in the organizations and then continue to move until they reach the 'significant systems' and finally a general shutdown of those organizations.
Therefore, in the last three years, Tel-Aviv University embarked on cross-organizational projects to improve information security, both in the central systems and in the end stations.
In 2024, Tel-Aviv University embarks on a new project, called "Cyber Wall III", to harden the security of network end stations (Workstation, laptop, and servers) - following on from a project that was carried out about a year and a half ago.
The project will include the following components:
- NAC - Network Access Control (NAC) is a cybersecurity technology that regulates access to network resources based on predefined policies and regulations. NAC helps guarantee that only authorized and secure devices obtain access. (Has been done in 2022)
- EDR - A cyber defensive solution, for identifying risks to end stations. It is a sophisticated tool for identifying suspicious behaviors, assessing the risk, and responding immediately to handle the incident. (Has been done in 2022)
- DOMAIN - A suite of services that enables centralized management of the computer network in organizations, such as library services, user authentication, enforcement of group policies, and more.
- MFA - Authentication method that requires the user to provide two or more verification factors to gain access to a resource such an application which decreases the likelihood of a successful cyber attack. (Has been applied to the organizational email account in 2023, as part of the current project it will be applied to most of the workstations)
- MECM (Microsoft Endpoint Configuration Manager, previously known as SCCM) - A software management suite provided by Microsoft that allows users to manage many Windows-based computers. (Managed by the IT Unit)
- SSL (Secure Socket Layer) - SSL works by ensuring that any data transferred between users and websites, or between two systems, remains impossible to read. This data includes potentially sensitive information such as names, addresses, credit card numbers, or other financial details.
See documents that describe these components
Your cooperation is very much appreciated so we succeed and implement the plan and of course, so that we can continue to work safely.