SlideShare a Scribd company logo
1 of 35
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission.
Who What Where Why
A Guide to Online Protection Strategies
Cary StrawJen Baldwin Christie Zervos
Executive Web Patrol Manager Director Of OperationsExecutive Web Patrol Manager
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 2
Protection Strategies Overview
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 3
WHO…
Who should be in your
protection hierarchy?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 4
Senior Management
Test Development
Test Security Manager
Legal
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 5
Senior Management
• How much exposure are our items getting on the
internet?
• When in the testing cycle do the items begin to show up?
• Do items for any administration appear before they are
delivered?
• What is being said on the internet about our program and
exams?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 6
Test Development
• What forms are most often exposed and can you determine
the reasons why?
• Do your question types invite exposure?
• Are you working hand-in-hand with security to quickly identify
exposures?
• Can you rescue the exposed items by restructuring them?
• How does the level of exposure impact your test’s useful life?
• How does the level of compromise compare across forms and
over time?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 7
Test Security Manager
• What portions of your testing program are showing up
online?
• How quickly do items spread across the internet?
• Who is posting exam items?
• When a site claims to have “real” items, what do they
typically have?
• Are you doing routine checks of approved test prep
providers?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 8
Legal
• Is legal involved from the beginning of the process?
• Are your exams copyrighted?
• Do you have boilerplate letters/procedures to quickly
address exposures?
• How do you address privacy issues?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 9
Who makes the ultimate decision?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 10
Can you quickly respond, regardless of the size of the group?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 11
After all your effort, is the exposure situation getting better or
worse?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 12
Questions/Comments
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 13
W
H
A
T
…
What common processes
decrease the chance of your
content appearing online?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 14
• Have a strong presence in online venues where your test
takers congregate, especially during administrations
• Provide a large amount of free practice materials
• Limit re-use of exams, forms, items
• Create and enforce non-disclosure agreements
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 15
WHERE…
Where are the best places
to use your online security
resources?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 16
• Determine where your exposures occur online
• Your resources are typically limited. Where can they be
used most effectively?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 17
Why do online protection
strategies matter?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 18
• Lengthens the usable life of your tests
• Perception of exam quality increases
• Cost of replacement costs for exams
decreases
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 19
WHY…
Why should I worry? I found
a threat, and got it removed.
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 20
• Follow up monitoring
• Website may re-list threat after removal
• Same threat may be shared or posted elsewhere
• Do you even have to remove online threats?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 21
W
H
E
R
E
…
Where are the
threats I find likely
to spread?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 22
• Social Media
• Braindumps
• Forum/Discussion
Groups
• Flashcard Sites
• Blogs
• Archive Sites
• Test Prep Companies
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 23
Questions/Comments
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 24
WHAT…
What is the potential
risk of an online
threat?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 25
• Reputation Problems
• Media Involvement
• Shortened Exam Life
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 26
W
H
E
R
E
…
Where the threat was found may not mean
that’s where it originated geographically.
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 27
IP Addresses are not reliable
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 28
WHO…
Who can you recruit
to protect your
exams?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 29
• Forum Moderators
• Peer Ambassadors
• Bloggers
• Media Contacts
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 30
W
H
Y
…
Why is it important to explore
cutting edge technologies and
processes to stay ahead of the
game?
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 31
• Stay ahead of thieves
• Increase exam validity
• Increase overall exam security
• Remove weaknesses typically associated
with outdated testing programs/methods
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 32
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 33
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 34
Questions/Comments
© 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 35
Thank you!
info@caveon.com

More Related Content

Similar to Caveon Webinar Series - A Guide to Online Protection Strategies - March 28, 2018

Creating Trust for the Internet of Things
Creating Trust for the Internet of ThingsCreating Trust for the Internet of Things
Creating Trust for the Internet of ThingsPECB
 
Integrated Agile and DevOps: DevOps 2.0 and Beyond
Integrated Agile and DevOps:  DevOps 2.0 and BeyondIntegrated Agile and DevOps:  DevOps 2.0 and Beyond
Integrated Agile and DevOps: DevOps 2.0 and BeyondDevOps.com
 
Sonatype's 2013 OSS Software Survey
 Sonatype's 2013 OSS Software Survey Sonatype's 2013 OSS Software Survey
Sonatype's 2013 OSS Software SurveySonatype
 
Cybersecurity Series - Cyber Defense for Internal Auditors
Cybersecurity Series - Cyber Defense for Internal AuditorsCybersecurity Series - Cyber Defense for Internal Auditors
Cybersecurity Series - Cyber Defense for Internal AuditorsJim Kaplan CIA CFE
 
Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...
Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...
Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...ion interactive
 
Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...
Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...
Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...XBOSoft
 
The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217
The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217
The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217Caveon Test Security
 
Ed Tech Innovation: Leap Frog vs Iteration
Ed Tech Innovation: Leap Frog vs IterationEd Tech Innovation: Leap Frog vs Iteration
Ed Tech Innovation: Leap Frog vs IterationAmazon Web Services
 
How We Will Fail in Privacy and Ethics for the Emerging Internet of Things
How We Will Fail in Privacy and Ethics for the Emerging Internet of ThingsHow We Will Fail in Privacy and Ethics for the Emerging Internet of Things
How We Will Fail in Privacy and Ethics for the Emerging Internet of ThingsJason Hong
 
CyberSecurity Series Malware slides
CyberSecurity Series Malware slidesCyberSecurity Series Malware slides
CyberSecurity Series Malware slidesJim Kaplan CIA CFE
 
Public Good App House: Volunteer Management Apps for Food Security Organizations
Public Good App House: Volunteer Management Apps for Food Security OrganizationsPublic Good App House: Volunteer Management Apps for Food Security Organizations
Public Good App House: Volunteer Management Apps for Food Security OrganizationsTechSoup
 
Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...
Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...
Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...PMX Agency
 
Unlocking Scale Through Pricing
Unlocking Scale Through PricingUnlocking Scale Through Pricing
Unlocking Scale Through PricingOpenView
 
Quick Response Fraud Detection
Quick Response Fraud DetectionQuick Response Fraud Detection
Quick Response Fraud DetectionFraudBusters
 
20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social Media
20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social Media20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social Media
20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social MediaJesse Wilkins
 
An Agile Approach to Cloud Adoption
An Agile Approach to Cloud AdoptionAn Agile Approach to Cloud Adoption
An Agile Approach to Cloud AdoptionAmazon Web Services
 

Similar to Caveon Webinar Series - A Guide to Online Protection Strategies - March 28, 2018 (20)

Creating Trust for the Internet of Things
Creating Trust for the Internet of ThingsCreating Trust for the Internet of Things
Creating Trust for the Internet of Things
 
Integrated Agile and DevOps: DevOps 2.0 and Beyond
Integrated Agile and DevOps:  DevOps 2.0 and BeyondIntegrated Agile and DevOps:  DevOps 2.0 and Beyond
Integrated Agile and DevOps: DevOps 2.0 and Beyond
 
GDPR Series Session 4
GDPR Series Session 4GDPR Series Session 4
GDPR Series Session 4
 
Sonatype's 2013 OSS Software Survey
 Sonatype's 2013 OSS Software Survey Sonatype's 2013 OSS Software Survey
Sonatype's 2013 OSS Software Survey
 
Cybersecurity Series - Cyber Defense for Internal Auditors
Cybersecurity Series - Cyber Defense for Internal AuditorsCybersecurity Series - Cyber Defense for Internal Auditors
Cybersecurity Series - Cyber Defense for Internal Auditors
 
Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...
Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...
Landing Page Case Study: 350% Lift in Digitally-Driven Revenue for Genworth F...
 
Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...
Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...
Are You Making These 7 'Testing Metric' Mistakes? Webinar - Mark Bentsen, Phi...
 
The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217
The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217
The Do's and Dont's of Administering High Stakes Tests in Schools Final 121217
 
Ed Tech Innovation: Leap Frog vs Iteration
Ed Tech Innovation: Leap Frog vs IterationEd Tech Innovation: Leap Frog vs Iteration
Ed Tech Innovation: Leap Frog vs Iteration
 
How We Will Fail in Privacy and Ethics for the Emerging Internet of Things
How We Will Fail in Privacy and Ethics for the Emerging Internet of ThingsHow We Will Fail in Privacy and Ethics for the Emerging Internet of Things
How We Will Fail in Privacy and Ethics for the Emerging Internet of Things
 
CyberSecurity Series Malware slides
CyberSecurity Series Malware slidesCyberSecurity Series Malware slides
CyberSecurity Series Malware slides
 
IT Fraud and Countermeasures
IT Fraud and CountermeasuresIT Fraud and Countermeasures
IT Fraud and Countermeasures
 
Public Good App House: Volunteer Management Apps for Food Security Organizations
Public Good App House: Volunteer Management Apps for Food Security OrganizationsPublic Good App House: Volunteer Management Apps for Food Security Organizations
Public Good App House: Volunteer Management Apps for Food Security Organizations
 
Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...
Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...
Testing for Success: How to Infuse Consistent Testing Into Your Fundraising P...
 
Unlocking Scale Through Pricing
Unlocking Scale Through PricingUnlocking Scale Through Pricing
Unlocking Scale Through Pricing
 
Ethics for Internal Auditors
Ethics for Internal AuditorsEthics for Internal Auditors
Ethics for Internal Auditors
 
Quick Response Fraud Detection
Quick Response Fraud DetectionQuick Response Fraud Detection
Quick Response Fraud Detection
 
20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social Media
20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social Media20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social Media
20160602 ARMA Boston - You Shared WHAT? Applying Governance to Social Media
 
An Agile Approach to Cloud Adoption
An Agile Approach to Cloud AdoptionAn Agile Approach to Cloud Adoption
An Agile Approach to Cloud Adoption
 
Philly.com4
Philly.com4Philly.com4
Philly.com4
 

More from Caveon Test Security

Unpublished study indicates high chance of fraud in thousands of tests of enem
Unpublished study indicates high chance of fraud in thousands of tests of enemUnpublished study indicates high chance of fraud in thousands of tests of enem
Unpublished study indicates high chance of fraud in thousands of tests of enemCaveon Test Security
 
Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...Caveon Test Security
 
Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...Caveon Test Security
 
Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...
Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...
Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...Caveon Test Security
 
Caveon Webinar Series - Four Steps to Effective Investigations in School Dis...
Caveon Webinar Series -  Four Steps to Effective Investigations in School Dis...Caveon Webinar Series -  Four Steps to Effective Investigations in School Dis...
Caveon Webinar Series - Four Steps to Effective Investigations in School Dis...Caveon Test Security
 
Caveon Webinar Series - On-site Monitoring in Districts 0317
Caveon Webinar Series - On-site Monitoring in Districts 0317Caveon Webinar Series - On-site Monitoring in Districts 0317
Caveon Webinar Series - On-site Monitoring in Districts 0317Caveon Test Security
 
CESP Study Session #1 October 2016
CESP Study Session #1 October 2016CESP Study Session #1 October 2016
CESP Study Session #1 October 2016Caveon Test Security
 
A Tale of Two Cities - School District Webinar #1 Jan 2017
A Tale of Two Cities - School District Webinar  #1 Jan 2017A Tale of Two Cities - School District Webinar  #1 Jan 2017
A Tale of Two Cities - School District Webinar #1 Jan 2017Caveon Test Security
 
Caveon Webinar Series - Discrete Option Multiple Choice: A Revolution in Te...
Caveon Webinar Series  - Discrete Option Multiple Choice:  A Revolution in Te...Caveon Webinar Series  - Discrete Option Multiple Choice:  A Revolution in Te...
Caveon Webinar Series - Discrete Option Multiple Choice: A Revolution in Te...Caveon Test Security
 
Caveon Webinar Series - Test Cheaters Say the Darnedest Things! - 072016
Caveon Webinar Series -  Test Cheaters Say the Darnedest Things! - 072016Caveon Webinar Series -  Test Cheaters Say the Darnedest Things! - 072016
Caveon Webinar Series - Test Cheaters Say the Darnedest Things! - 072016Caveon Test Security
 
Caveon Webinar Series - The Test Security Framework- Why Different Tests Nee...
Caveon Webinar Series -  The Test Security Framework- Why Different Tests Nee...Caveon Webinar Series -  The Test Security Framework- Why Different Tests Nee...
Caveon Webinar Series - The Test Security Framework- Why Different Tests Nee...Caveon Test Security
 
Caveon Webinar Series - Conducting Test Security Investigations in School Di...
Caveon Webinar Series -  Conducting Test Security Investigations in School Di...Caveon Webinar Series -  Conducting Test Security Investigations in School Di...
Caveon Webinar Series - Conducting Test Security Investigations in School Di...Caveon Test Security
 
Caveon Webinar Series - Creating Your Test Security Game Plan - March 2016
Caveon Webinar Series -  Creating Your Test Security Game Plan - March 2016Caveon Webinar Series -  Creating Your Test Security Game Plan - March 2016
Caveon Webinar Series - Creating Your Test Security Game Plan - March 2016Caveon Test Security
 
Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...
Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...
Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...Caveon Test Security
 
Caveon Webinar Series - Will the Real Cloned Item Please Stand Up? final
Caveon Webinar Series -  Will the Real Cloned Item Please Stand Up? finalCaveon Webinar Series -  Will the Real Cloned Item Please Stand Up? final
Caveon Webinar Series - Will the Real Cloned Item Please Stand Up? finalCaveon Test Security
 
Caveon Webinar Series - Lessons Learned at the 2015 National Conference on S...
Caveon Webinar Series -  Lessons Learned at the 2015 National Conference on S...Caveon Webinar Series -  Lessons Learned at the 2015 National Conference on S...
Caveon Webinar Series - Lessons Learned at the 2015 National Conference on S...Caveon Test Security
 
Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...
Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...
Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...Caveon Test Security
 
Caveon Webinar - Weathering the Perfect Test Security Storm May 2015 edited
Caveon Webinar  - Weathering the Perfect Test Security Storm May 2015 editedCaveon Webinar  - Weathering the Perfect Test Security Storm May 2015 edited
Caveon Webinar - Weathering the Perfect Test Security Storm May 2015 editedCaveon Test Security
 
Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015
Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015
Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015Caveon Test Security
 
Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...
Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...
Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...Caveon Test Security
 

More from Caveon Test Security (20)

Unpublished study indicates high chance of fraud in thousands of tests of enem
Unpublished study indicates high chance of fraud in thousands of tests of enemUnpublished study indicates high chance of fraud in thousands of tests of enem
Unpublished study indicates high chance of fraud in thousands of tests of enem
 
Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...
 
Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...Caveon webinar series - smart items- using innovative item design to make you...
Caveon webinar series - smart items- using innovative item design to make you...
 
Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...
Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...
Caveon Webinar Series - The Art of Test Security - Know Thy Enemy - November ...
 
Caveon Webinar Series - Four Steps to Effective Investigations in School Dis...
Caveon Webinar Series -  Four Steps to Effective Investigations in School Dis...Caveon Webinar Series -  Four Steps to Effective Investigations in School Dis...
Caveon Webinar Series - Four Steps to Effective Investigations in School Dis...
 
Caveon Webinar Series - On-site Monitoring in Districts 0317
Caveon Webinar Series - On-site Monitoring in Districts 0317Caveon Webinar Series - On-site Monitoring in Districts 0317
Caveon Webinar Series - On-site Monitoring in Districts 0317
 
CESP Study Session #1 October 2016
CESP Study Session #1 October 2016CESP Study Session #1 October 2016
CESP Study Session #1 October 2016
 
A Tale of Two Cities - School District Webinar #1 Jan 2017
A Tale of Two Cities - School District Webinar  #1 Jan 2017A Tale of Two Cities - School District Webinar  #1 Jan 2017
A Tale of Two Cities - School District Webinar #1 Jan 2017
 
Caveon Webinar Series - Discrete Option Multiple Choice: A Revolution in Te...
Caveon Webinar Series  - Discrete Option Multiple Choice:  A Revolution in Te...Caveon Webinar Series  - Discrete Option Multiple Choice:  A Revolution in Te...
Caveon Webinar Series - Discrete Option Multiple Choice: A Revolution in Te...
 
Caveon Webinar Series - Test Cheaters Say the Darnedest Things! - 072016
Caveon Webinar Series -  Test Cheaters Say the Darnedest Things! - 072016Caveon Webinar Series -  Test Cheaters Say the Darnedest Things! - 072016
Caveon Webinar Series - Test Cheaters Say the Darnedest Things! - 072016
 
Caveon Webinar Series - The Test Security Framework- Why Different Tests Nee...
Caveon Webinar Series -  The Test Security Framework- Why Different Tests Nee...Caveon Webinar Series -  The Test Security Framework- Why Different Tests Nee...
Caveon Webinar Series - The Test Security Framework- Why Different Tests Nee...
 
Caveon Webinar Series - Conducting Test Security Investigations in School Di...
Caveon Webinar Series -  Conducting Test Security Investigations in School Di...Caveon Webinar Series -  Conducting Test Security Investigations in School Di...
Caveon Webinar Series - Conducting Test Security Investigations in School Di...
 
Caveon Webinar Series - Creating Your Test Security Game Plan - March 2016
Caveon Webinar Series -  Creating Your Test Security Game Plan - March 2016Caveon Webinar Series -  Creating Your Test Security Game Plan - March 2016
Caveon Webinar Series - Creating Your Test Security Game Plan - March 2016
 
Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...
Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...
Caveon Webinar Series - Mastering the US DOE Test Security Requirements Janua...
 
Caveon Webinar Series - Will the Real Cloned Item Please Stand Up? final
Caveon Webinar Series -  Will the Real Cloned Item Please Stand Up? finalCaveon Webinar Series -  Will the Real Cloned Item Please Stand Up? final
Caveon Webinar Series - Will the Real Cloned Item Please Stand Up? final
 
Caveon Webinar Series - Lessons Learned at the 2015 National Conference on S...
Caveon Webinar Series -  Lessons Learned at the 2015 National Conference on S...Caveon Webinar Series -  Lessons Learned at the 2015 National Conference on S...
Caveon Webinar Series - Lessons Learned at the 2015 National Conference on S...
 
Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...
Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...
Caveon Webinar Series - Learning and Teaching Best Practices in Test Security...
 
Caveon Webinar - Weathering the Perfect Test Security Storm May 2015 edited
Caveon Webinar  - Weathering the Perfect Test Security Storm May 2015 editedCaveon Webinar  - Weathering the Perfect Test Security Storm May 2015 edited
Caveon Webinar - Weathering the Perfect Test Security Storm May 2015 edited
 
Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015
Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015
Caveon Webinar Series - Weathering the Perfect Test Security Storm May 2015
 
Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...
Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...
Caveon Webinar Series - Integrating Data Forensics into the Entire Test Secur...
 

Recently uploaded

Atmosphere science 7 quarter 4 .........
Atmosphere science 7 quarter 4 .........Atmosphere science 7 quarter 4 .........
Atmosphere science 7 quarter 4 .........LeaCamillePacle
 
Planning a health career 4th Quarter.pptx
Planning a health career 4th Quarter.pptxPlanning a health career 4th Quarter.pptx
Planning a health career 4th Quarter.pptxLigayaBacuel1
 
Earth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice greatEarth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice greatYousafMalik24
 
What is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPWhat is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPCeline George
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfMr Bounab Samir
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Celine George
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentInMediaRes1
 
ACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdfACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdfSpandanaRallapalli
 
Introduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher EducationIntroduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher Educationpboyjonauth
 
Romantic Opera MUSIC FOR GRADE NINE pptx
Romantic Opera MUSIC FOR GRADE NINE pptxRomantic Opera MUSIC FOR GRADE NINE pptx
Romantic Opera MUSIC FOR GRADE NINE pptxsqpmdrvczh
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersSabitha Banu
 
Gas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxGas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxDr.Ibrahim Hassaan
 
Judging the Relevance and worth of ideas part 2.pptx
Judging the Relevance  and worth of ideas part 2.pptxJudging the Relevance  and worth of ideas part 2.pptx
Judging the Relevance and worth of ideas part 2.pptxSherlyMaeNeri
 
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️9953056974 Low Rate Call Girls In Saket, Delhi NCR
 
Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17Celine George
 

Recently uploaded (20)

Atmosphere science 7 quarter 4 .........
Atmosphere science 7 quarter 4 .........Atmosphere science 7 quarter 4 .........
Atmosphere science 7 quarter 4 .........
 
Planning a health career 4th Quarter.pptx
Planning a health career 4th Quarter.pptxPlanning a health career 4th Quarter.pptx
Planning a health career 4th Quarter.pptx
 
Earth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice greatEarth Day Presentation wow hello nice great
Earth Day Presentation wow hello nice great
 
What is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPWhat is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERP
 
OS-operating systems- ch04 (Threads) ...
OS-operating systems- ch04 (Threads) ...OS-operating systems- ch04 (Threads) ...
OS-operating systems- ch04 (Threads) ...
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media Component
 
ACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdfACC 2024 Chronicles. Cardiology. Exam.pdf
ACC 2024 Chronicles. Cardiology. Exam.pdf
 
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdfTataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
 
Introduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher EducationIntroduction to ArtificiaI Intelligence in Higher Education
Introduction to ArtificiaI Intelligence in Higher Education
 
Romantic Opera MUSIC FOR GRADE NINE pptx
Romantic Opera MUSIC FOR GRADE NINE pptxRomantic Opera MUSIC FOR GRADE NINE pptx
Romantic Opera MUSIC FOR GRADE NINE pptx
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginners
 
Gas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxGas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptx
 
Model Call Girl in Bikash Puri Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Bikash Puri  Delhi reach out to us at 🔝9953056974🔝Model Call Girl in Bikash Puri  Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Bikash Puri Delhi reach out to us at 🔝9953056974🔝
 
Raw materials used in Herbal Cosmetics.pptx
Raw materials used in Herbal Cosmetics.pptxRaw materials used in Herbal Cosmetics.pptx
Raw materials used in Herbal Cosmetics.pptx
 
Judging the Relevance and worth of ideas part 2.pptx
Judging the Relevance  and worth of ideas part 2.pptxJudging the Relevance  and worth of ideas part 2.pptx
Judging the Relevance and worth of ideas part 2.pptx
 
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
call girls in Kamla Market (DELHI) 🔝 >༒9953330565🔝 genuine Escort Service 🔝✔️✔️
 
9953330565 Low Rate Call Girls In Rohini Delhi NCR
9953330565 Low Rate Call Girls In Rohini  Delhi NCR9953330565 Low Rate Call Girls In Rohini  Delhi NCR
9953330565 Low Rate Call Girls In Rohini Delhi NCR
 
Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17
 

Caveon Webinar Series - A Guide to Online Protection Strategies - March 28, 2018

  • 1. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. Who What Where Why A Guide to Online Protection Strategies Cary StrawJen Baldwin Christie Zervos Executive Web Patrol Manager Director Of OperationsExecutive Web Patrol Manager
  • 2. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 2 Protection Strategies Overview
  • 3. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 3 WHO… Who should be in your protection hierarchy?
  • 4. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 4 Senior Management Test Development Test Security Manager Legal
  • 5. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 5 Senior Management • How much exposure are our items getting on the internet? • When in the testing cycle do the items begin to show up? • Do items for any administration appear before they are delivered? • What is being said on the internet about our program and exams?
  • 6. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 6 Test Development • What forms are most often exposed and can you determine the reasons why? • Do your question types invite exposure? • Are you working hand-in-hand with security to quickly identify exposures? • Can you rescue the exposed items by restructuring them? • How does the level of exposure impact your test’s useful life? • How does the level of compromise compare across forms and over time?
  • 7. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 7 Test Security Manager • What portions of your testing program are showing up online? • How quickly do items spread across the internet? • Who is posting exam items? • When a site claims to have “real” items, what do they typically have? • Are you doing routine checks of approved test prep providers?
  • 8. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 8 Legal • Is legal involved from the beginning of the process? • Are your exams copyrighted? • Do you have boilerplate letters/procedures to quickly address exposures? • How do you address privacy issues?
  • 9. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 9 Who makes the ultimate decision?
  • 10. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 10 Can you quickly respond, regardless of the size of the group?
  • 11. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 11 After all your effort, is the exposure situation getting better or worse?
  • 12. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 12 Questions/Comments
  • 13. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 13 W H A T … What common processes decrease the chance of your content appearing online?
  • 14. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 14 • Have a strong presence in online venues where your test takers congregate, especially during administrations • Provide a large amount of free practice materials • Limit re-use of exams, forms, items • Create and enforce non-disclosure agreements
  • 15. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 15 WHERE… Where are the best places to use your online security resources?
  • 16. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 16 • Determine where your exposures occur online • Your resources are typically limited. Where can they be used most effectively?
  • 17. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 17 Why do online protection strategies matter?
  • 18. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 18 • Lengthens the usable life of your tests • Perception of exam quality increases • Cost of replacement costs for exams decreases
  • 19. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 19 WHY… Why should I worry? I found a threat, and got it removed.
  • 20. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 20 • Follow up monitoring • Website may re-list threat after removal • Same threat may be shared or posted elsewhere • Do you even have to remove online threats?
  • 21. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 21 W H E R E … Where are the threats I find likely to spread?
  • 22. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 22 • Social Media • Braindumps • Forum/Discussion Groups • Flashcard Sites • Blogs • Archive Sites • Test Prep Companies
  • 23. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 23 Questions/Comments
  • 24. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 24 WHAT… What is the potential risk of an online threat?
  • 25. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 25 • Reputation Problems • Media Involvement • Shortened Exam Life
  • 26. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 26 W H E R E … Where the threat was found may not mean that’s where it originated geographically.
  • 27. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 27 IP Addresses are not reliable
  • 28. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 28 WHO… Who can you recruit to protect your exams?
  • 29. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 29 • Forum Moderators • Peer Ambassadors • Bloggers • Media Contacts
  • 30. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 30 W H Y … Why is it important to explore cutting edge technologies and processes to stay ahead of the game?
  • 31. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 31 • Stay ahead of thieves • Increase exam validity • Increase overall exam security • Remove weaknesses typically associated with outdated testing programs/methods
  • 32. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 32
  • 33. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 33
  • 34. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 34 Questions/Comments
  • 35. © 2018, Caveon, LLC. All rights reserved. Do not copy or distribute without permission. 35 Thank you! info@caveon.com

Editor's Notes

  1. RICHELLE
  2. CHRISTIE
  3. CHRISTIE
  4. CHRISTIE
  5. CARY
  6. CARY
  7. JEN
  8. JEN
  9. CARY
  10. CARY
  11. CARY
  12. JEN
  13. JEN
  14. CARY
  15. CARY
  16. CARY
  17. CARY
  18. JEN
  19. JEN
  20. JEN
  21. JEN
  22. CARY
  23. CARY
  24. CARY
  25. CARY
  26. JEN
  27. JEN
  28. CARY
  29. CARY
  30. CARY
  31. CHRISTIE