Skip to main content

More Secure Yale

More Secure Yale logo: Bee in shield with text "More Secure Yale"

A more secure Yale starts with you.

The cyber world is full of opportunities and challenges. At Yale, we are committed to empowering you with tools and knowledge to navigate it safely. ISO’s More Secure Yale initiative will introduce practical solutions to take proactive steps to address cyber threats. This starts with you. Together, we can protect our electronic resources and ensure we secure Yale's missions, together.

What can you do right now to help build a more secure Yale?

You can learn more about these components of More Secure Yale, below.

 

What are the current components of More Secure Yale?

 

More Secure Access: Device Security icon (icon of a computer with a lock, shield, and checkmark)

More Secure Device

Protect your device to protect Yale resources.

What it is: DUO Desktop agent ensures your device meets Yale’s Minimum Security Standards (MSS) before accessing university resources.

Why it matters: A healthy device is your first line of defense against cyber threats.

How it works:

  • Confirms a password is set. This prevents unauthorized access to the device.
  • Confirms the device is encrypted. This protects the data from data loss
    or breaches if the device is lost or stolen.
  • Ensures the operating system is up to date. Systems running older OS versions
    are vulnerable to known exploits and security flaws.
  • The DUO Desktop agent does not access or store data that is on the device.

 

More Secure Access: Login icon (computer with Yale "Y", hardware key, and smartphone displaying a QR code)

More Secure Authentication

Phish-proof your login credentials.

What it is:  Phish-resistant, multi-factor authentication methods to verify your identity before accessing Yale resources.

Why it matters: Passkey technology ensures only you can access your account,
even if your password is compromised.

How it works:

  • YubiKey as Passkey: Combines something you have (a physical YubiKey)
    with something you know (your PIN) for effortless and secure login.
  • Mobile Phone as Passkey: Combines something you have (your mobile device)
    with something you know (your password) to securely authenticate access.

 

More Secure Mindset logo: Right-pointing arrow inside a shield

More Secure Mindset

Your small steps to working with a security mindset make a big difference.

What it is: Bee Cyber Fit at Yale: The Essentials to Working Securely is a self-paced training curriculum designed to boost your cyber knowledge and build cyber-safe behaviors in your daily work at Yale. 

Why it matters: We all play a role in protecting sensitive Yale data and our own. Knowing what we can do to protect that data is a critical step in being “More Secure” 

How it works:

Who is enrolled in More Secure Yale?

Enrollment is currently focused on departments with access to Yale’s High Risk data.  As we move forward, your leadership will reach out directly once a timeline is established for your department.

Frequently Asked Questions

  • You will receive guidance on how to bring your device into compliance, such as enabling encryption or updating your operating system.

  • No. The university will provide YubiKeys for users who require them. Alternatively, you can use your mobile phone as a passkey.

  • For most users, the changes will be seamless and enhance your security without added complexity.

  • Continue to use your current form of MFA, Duo Everywhere. For more information, visit Use Yale’s Multifactor Authentication (MFA) Service.

How to learn more about More Secure Yale

For more information, please contact the Identify and Access Management team.