The University of California, Berkeley
Higher Education
10,000+
USA
Allison Henry, CISO
The University of California (UC) is the world’s leading public research university system, with ten campuses, five medical centers, three national labs, and a network of agricultural and natural resource centers. The first campus of the UC system, the University of California, Berkeley (UC Berkeley), was established in 1868 and currently has 14 colleges and schools offering over 350 degree programs to some 31,000 undergraduate and 12,000 graduate students.
In late 2018, the University of California Office of the President (UCOP) released the updated and revised Electronic Information Security Policy (IS-3). The policy applies to all UC locations and primarily focuses on risk management, shifting information security risk responsibility to individual units, including vendor risk.
The Information Security Office (ISO) at UC Berkeley needed to figure out a process to help units meet the compliance requirements to comply with the new policy standards.
They needed a centralized and automated solution that would allow them to conduct a custom survey based on ISO 27001, assign permissions to unit risk owners, conduct vendor risk assessments, and roll up data into insightful risk reports and dashboards.
The UC Berkeley ISO chose Isora GRC from SaltyCloud to help them meet campus-wide compliance with the IS-3.
Since deploying Isora GRC from SaltyCloud in 2020, the UC Berkeley ISO has seen several positive outcomes:
A prestigious academic medical center optimizes their third-party security risk management program with Isora
Virginia Tech matures their campus-wide security posture with the CIS Critical Security Controls and Isora GRC
How the University of Chicago Automates Enterprise-Wide NIST CSF Assessments & Risk Analysis with Isora GRC GRC