Cybersecurity Awareness Month
October is Cybersecurity Awareness Month. Throughout the month, the InfoSec Team will share practical guidance and host events to help you protect yourself, your information, and Clark College. Cybersecurity is a shared responsibility. Each week, the InfoSec Team encourages you to take one action that strengthens your security and helps protect the college community.
Cybersecurity Awareness Month Events
Cybersecurity 101: Passwords, Phishing, and Malware, Oh My!
This one-hour training covers creating secure passwords, device hygiene, handling data securely, spotting and reporting phishing, and responding to suspected breaches.
Friday, October 2, 10–11 AM on Zoom: https://clark-edu.zoom.us/j/86093200473?pwd=ZwA9DgwnPjPbOPkSb3TUTVQPyUBBar.1
Friday, October 9, 11 AM–12 PM on Zoom: https://clark-edu.zoom.us/j/95778011947?pwd=N9bYWHlqzGXQal0B9eofjBacjnpXJa.1
Cybersecurity 101S: Passwords, Phishing, and Malware, Oh My!
This 30-minute student-focused training covers secure passwords, device hygiene, and how to spot and report phishing.
Thursday, October 8, 11–11:30 AM on Zoom: https://clark-edu.zoom.us/j/96007830905?pwd=5cA8XDbbafUdENOJXbqtMZVJpT1Zcj.1
Wednesday, October 14, 1 PM–1:30 PM on Zoom: https://clark-edu.zoom.us/j/99546317136?pwd=72hWrhFvI5pGDijsDW0hTDrSGX28tW.1
InfoSec Office Hours
Come with any security question, big or small. The InfoSec Team will help in a casual, no judgment setting.
Wednesday, October 7, 1–2 PM on Zoom: https://clark-edu.zoom.us/j/98569614665?pwd=XMCNXbrUG0RKaiRHVanPmULKLUCn1P.1
Wednesday, October 21, 1–2 PM on Zoom: https://clark-edu.zoom.us/j/96168012910?pwd=KnmuRg3tI9fUIwTjYP6H4XLqfNJhzM.1
Cookies and Cyber Training
Hands on session covering Bitwarden and Have I Been Pwned. Bring your laptop if possible. Step by step walkthrough with troubleshooting help. Cookies provided.
Thursday, October 15, 10–11 AM in PUB 258C
InfoSec Tabling Pop-Up
Meet the InfoSec Team, ask questions, get practical tips on password hygiene, phishing scams, and protecting personal data.
Wednesday, October 28, 10 AM–2 PM in PUB, outside the Benefits Fair
Week 1: Strong Passwords and Authentication
Passwords protect access to email, files, financial services, and other important systems. Using the same password on multiple accounts allows a breach at one service to place other accounts at risk. Use a different password for every account. A trusted password manager can generate and store long, unique passwords so that you do not have to remember each one. Enable multi-factor authentication, or MFA, whenever it is available. MFA provides an additional layer of protection when a password is exposed. Never share a password, verification code, recovery code, or MFA approval. If an MFA request appears when you are not signing in, deny it and report the activity.
Week 2: Secure Devices and Physical Spaces
Account security is only one part of cybersecurity. An unlocked screen, outdated application, unattended laptop, unsafe network, or exposed paper record can also place information at risk. Many software updates correct security weaknesses. Turning on automatic updates helps protect devices without relying entirely on memory.
Protect devices and workspaces by:
-
- Locking your screen whenever you step away
- Installing operating-system, browser, and application updates promptly
- Keeping laptops and phones physically secured
- Avoiding unknown USB devices, cables, and charging accessories
- Storing and disposing of paper records securely
Week 3: Spot and Report Phishing
Phishing can arrive through email, text messages, phone calls, QR codes, shared documents, or unexpected MFA requests. Modern phishing messages may use familiar names, copied branding, real conversation history, or information gathered from public sources. Verify unusual requests through a separate trusted channel. Do not use the phone number or link contained in the questionable message.
Pause when a message:
-
- Creates unusual urgency or pressure
- Requests a password, verification code, payment, gift card, or sensitive information
- Directs you to an unexpected sign-in page
- Includes an unfamiliar attachment, QR code, or shortened link
- Changes a familiar business process
Week 4: Protect Sensitive Data
Sensitive information can appear in email, Teams, OneDrive, documents, screenshots, printed records, meeting notes, and conversations. Before sharing information, identify what it contains, confirm who needs it, and use an approved location.
Good data-protection habits include:
-
- Confirming every recipient before sending
- Providing only the minimum information required
- Limiting file access to authorized people
- Reviewing sharing links and permissions regularly
- Reporting accidental exposure promptly
- Do not place restricted information into public AI services.
Week 5: Report Early and Stay Vigilant
Security incidents are easier to contain when they are reported early. If something seems wrong, stop the suspicious activity when it is safe to do so. Preserve relevant details such as the message, service, device, approximate time, and actions taken. Reporting is a security control, not an admission of failure. Early and accurate reporting gives the InfoSec Team a better opportunity to limit the impact and protect others.
Report situations such as:
-
- Unexpected MFA prompts
- Suspicious messages or sign-in pages
- Lost or stolen devices
- Accidental sharing of sensitive information
- Malware or antivirus warnings
- Unusual account activity
- Unexpected password-reset or recovery changes
Five Actions For a Safer October
-
- Create one unique password and enable MFA.
- Enable automatic updates on one device or application.
- Report one suspicious message or locate the reporting button.
- Review access to one shared work file or folder.
- Save the InfoSec contact information.
Contact Us
General Inquiries: For non-urgent questions, email infosec@clark.edu.
Report an Incident: To report an information security incident, please visit the Report an Incident page.
Additional Resources
Multi-Factor Authentication Guide