Enhanced Cybersecurity Campaign

Through winter and spring 2018, the security team is rolling out a comprehensive set of initiatives that will significantly improve the cybersecurity of UCSF’s data, networks, and computer systems. These actions are in direct response to increasing global threats to UCSF systems, including a dramatic rise in phishing attacks. We are taking these steps to protect our data and IT systems and to prevent a data breach. Our dedicated IT teams will be implementing these important changes, many of which will be transparent to our UCSF community. Please continue to check this page for updates.

What’s next?

June 2018: Password Campaign - required password changes for UCSF network (Active Directory/email) logins begin and continue throughout 2018.

Summer 2018: Duo two-factor authentication for Connect Portal; Phishing Campaign continues

Network Access Control (NAC) - project information coming soon

Centralized Logging and Monitoring - project information coming soon

Server and Workstation Security Controls - project information coming soon


What we’ve accomplished

Spring 2018: Phishing Campaign, Phase 2

December 2017: Duo two-factor authentication for Pulse VPN and Outlook Web Access.  For more information:

Duo Two-factor Authentication      Duo Two-factor Authentication FAQs

Report a Security Incident