More Secure Yale

A more secure Yale starts with you.
The cyber world is full of opportunities and challenges. At Yale, we are committed to empowering you with tools and knowledge to navigate it safely. ISO’s More Secure Yale initiative will introduce practical solutions to take proactive steps to address cyber threats. This starts with you. Together, we can protect our electronic resources and ensure we secure Yale's missions, together.
What can you do right now to help build a more secure Yale?
You can learn more about these components of More Secure Yale, below.
What are the current components of More Secure Yale?

More Secure Device
Protect your device to protect Yale resources.
What it is: DUO Desktop agent ensures your device meets Yale’s Minimum Security Standards (MSS) before accessing university resources.
Why it matters: A healthy device is your first line of defense against cyber threats.
How it works:
- Confirms a password is set. This prevents unauthorized access to the device.
- Confirms the device is encrypted. This protects the data from data loss
or breaches if the device is lost or stolen. - Ensures the operating system is up to date. Systems running older OS versions
are vulnerable to known exploits and security flaws. - The DUO Desktop agent does not access or store data that is on the device.

More Secure Authentication
Phish-proof your login credentials.
What it is: Phish-resistant, multi-factor authentication methods to verify your identity before accessing Yale resources.
Why it matters: Passkey technology ensures only you can access your account,
even if your password is compromised.
How it works:
- YubiKey as Passkey: Combines something you have (a physical YubiKey)
with something you know (your PIN) for effortless and secure login. - Mobile Phone as Passkey: Combines something you have (your mobile device)
with something you know (your password) to securely authenticate access.

More Secure Mindset
Your small steps to working with a security mindset make a big difference.
What it is: Bee Cyber Fit at Yale: The Essentials to Working Securely is a self-paced training curriculum designed to boost your cyber knowledge and build cyber-safe behaviors in your daily work at Yale.
Why it matters: We all play a role in protecting sensitive Yale data and our own. Knowing what we can do to protect that data is a critical step in being “More Secure”
How it works:
- Enroll in the Bee Cyber Fit at Yale training in Workday Learning.
- The training begins with a message from Yale’s Chief Information Security Officer,
Jeremy Rosenberg. - The remaining five modules, each approximately 15 minutes in length, can be completed
in whatever way is most convenient for you - one at a time or all at once. - Topics cover simple, yet critical, cybersecurity behaviors we can adopt in our everyday lives:
Know Your Risk, Click with Caution, Protect Your Identity, Apply Updates, and Report Suspicious Cyber Activity.
Who is enrolled in More Secure Yale?
Enrollment is currently focused on departments with access to Yale’s High Risk data. As we move forward, your leadership will reach out directly once a timeline is established for your department.
How to learn more about More Secure Yale
For more information, please contact the Identify and Access Management team.