Cybersecurity Awareness & Training

Cybersecurity Assurance and Digital Trust offers a collection of best practices and resources, awareness material, and training resources. We plan to expand our training and awareness offerings over the next year to include newsletters and information on role based training. You can also review answers to our Frequently Asked Questions (FAQs) on the UMBC Help pages.

Best Practices & Resources

Training Resources

For specific departments and individuals, UMBC provides a training program administered by the Division of Information Technology (DoIT). These training modules help us to fulfill federal and state audit requirements, and provide good general knowledge on information about a variety of topics in information technology security. Our testing has shown these hand-picked topics to be timely, relevant, and informative. The training modules are delivered on our campus learning management system:  Blackboard.  These training modules vary in length, averaging about 15 minutes each.  They may be started and stopped at any time, and do not have to be all completed in one sitting.  At the end, there is a short assessment; its completion satisfies our audit requirements and grants you the Employee Cybersecurity Awareness badge issued by Credly.  If you believe you should be assigned this training, please contact your supervisor or security@umbc.edu.

Recent Awareness Material

Recent Spear-phishing Emails

Phishers Want Your Phone Number

A new wave of Spear-phishing emails hit roughly 300 UMBC inboxes this weekend. An example is shown below, with the From field altered and the To field removed for privacy. There is no body in this...

Posted: July 28, 2020, 4:28 PM

Zoom-Themed Phishing Campaign

Phishing Campaign Exploits Remote Meeting Users

Abnormal Security recently found a Zoom-themed phishing campaign. This campaign is using fake Zoom alerts to steal Microsoft 356 credentials. With the boom in teleworking, workers at many...

Posted: July 27, 2020, 5:53 PM