UCSB secures devices (and their data) by implementing a next generation network design and requiring the installation of certain cybersecurity tools.
Network Design
Zscaler’s Zero Trust Branch (ZTB) approach divides our networks into microsegments that contain only specific applications, workloads, devices, or users. If one device is breached, the threat is contained within that microsegment, securing other devices connecting to the UCSB network, and preventing a single device infection from turning into a widespread network outage.
The benefits of this network model include
- Reduces complexity and avoids costs by minimizing the need to build and maintain thousands of traditional network segments and intermediary maintenance.
- Access to network resources is based on the user and device, not whether they are located on campus or offsite, creating consistent policy enforcement and flexibility for our users.
- Isolating endpoint devices, preventing lateral movement of threats and ensuring strict access controls.
- UCSB can define and enforce granular security policies across the network, significantly reducing the attack surface.
Endpoint Detection and Response (EDR)
Endpoint Detection and Response (EDR) is a security solution that continuously watches endpoint devices for malicious activity and helps organizations quickly detect, investigate, and stop cyber threats. A UC systemwide cybersecurity mandate requires all UC-managed devices to have a UC-approved Endpoint Detection and Response (EDR) tool installed. UCSB currently uses Trellix as its UC-approved EDR solution.
Additional EDR information and resources:
- Link to revelant Trellix support page / articles
- UCSB's Unified Security Posture Management program
Device Management (MDM)
To ensure UCSB owned devices have the required cybersecurity software, and updates, UCSB uses MasS360 and Jamf as device management tools. Learn more about UCSB's Device Management Guidelines (SSO authentication required).