Herding Cats: How to Launch a Cyber Security Club in an Academic Setting
Matt Piazza, Aspen Olmsted · International Journal for Information Security Research · 2015
On an enterprise network there are innumerable concerns on a large enterprise network.These concerned are enhanced by the masses of uncontrollable students and non-technical professors engaging in uncontrollable, unsafe internet activity.It is infeasible to implement a widespread bringyour-own-device policy in this setting.Certain groups can be considered 'at risk' for unsafe behavior.In this paper, we will examine how we can use network design to mitigate the risks associated with the formation of an on-campus, student-run cyber security club.In our case, we had to find a way to segregate unwanted, possibly malicious traffic and activity from the sensitive main campus network.We propose the use of an entirely separate private network for the club's use only.The club must manage the private network to provide ample learning opportunities for the members.Appropriate safeguards should be in place between the private network and the Internet.However, those safeguards should be entirely selected, deployed, and maintained by the club.Approval from and consultations with the university's Information and security divisions is crucial for members' learning.