Close Menu
  • Home
  • Higher ED
  • News
  • Regulations
    • U.S. State Privacy Legislation
    • General Data Protection Regulation
    • New York Privacy Act
    • California Privacy Rights Act/California Consumer Privacy Act
  • AI
    • AI – Info Tech News
    • Fordham Artificial Intelligence for Faculty and Staff
    • How Emory University Accelerated AI Research in the Cloud
  • Secure IT News
  • Info Tech News
  • Resources
    • Privacy Glossary of Terms
    • Privacy Policy
    • Your Privacy Questions Answered
    • NIST Privacy Framework
    • US State Privacy Legislation Tracker
    • Safeguarding Data and Student Privacy: A Handbook for Higher Education
    • Privacy Field Guides
    • Access Now Blog
    • Fordham CLIP
  • About
Facebook X (Twitter) Instagram
Trending
  • U.S. Lawmakers Push Back Against UK’s Demand for an Apple Encryption Backdoor
  • Beyond Goodbye: Safeguarding Employee Data Privacy After Death
  • AI Notetakers in Meetings: Balancing Efficiency with Privacy and Risk
  • Are You Ready for Web 3?
  • Stay Ahead of Scammers in 2025
  • What are VPNs?
  • LinkedIn Accused of Using Private Messages to Train AI Models
  • Your Data, Your Decision: How to Control Your Data Privacy
Facebook X (Twitter) Instagram
Privacy at Fordham University
  • Home
  • Higher ED

    Strengthening Website Security in Higher Education: Lessons from the FTC’s GoDaddy Settlement

    January 21, 2025

    Merging AI Innovation with IT Expertise in Risk Management

    January 6, 2025

    Staff Highlight – Marc Herzog

    January 3, 2025

    Staff Highlight – Shannon Ortiz

    January 2, 2025

    AI Guidance in Schools

    October 4, 2024
  • News
  • Regulations
    1. U.S. State Privacy Legislation
    2. General Data Protection Regulation
    3. New York Privacy Act
    4. California Privacy Rights Act/California Consumer Privacy Act
    Featured

    Reauthorized Section 702 of the Foreign Intelligence Surveillance Act

    By Josephine Law, FIP, CIPP/US, CIPMApril 22, 20242 Mins Read
    Recent

    U.S. Lawmakers Push Back Against UK’s Demand for an Apple Encryption Backdoor

    February 21, 2025

    Beyond Goodbye: Safeguarding Employee Data Privacy After Death

    February 19, 2025

    Opt-In or Opt-Out, Does it Matter?

    January 20, 2025
  • AI
    1. AI – Info Tech News
    2. Fordham Artificial Intelligence for Faculty and Staff
    3. How Emory University Accelerated AI Research in the Cloud
    Featured

    Merging AI Innovation with IT Expertise in Risk Management

    By Josephine Law, FIP, CIPP/US, CIPMJanuary 6, 20251 Min Read
    Recent

    AI Notetakers in Meetings: Balancing Efficiency with Privacy and Risk

    February 19, 2025

    LinkedIn Accused of Using Private Messages to Train AI Models

    January 30, 2025

    Opt-In or Opt-Out, Does it Matter?

    January 20, 2025
  • Secure IT News
  • Info Tech News
  • Resources
    • Privacy Glossary of Terms
    • Privacy Policy
    • Your Privacy Questions Answered
    • NIST Privacy Framework
    • US State Privacy Legislation Tracker
    • Safeguarding Data and Student Privacy: A Handbook for Higher Education
    • Privacy Field Guides
    • Access Now Blog
    • Fordham CLIP
  • About
Privacy at Fordham University
You are at:Home»Higher ED»Strengthening Website Security in Higher Education: Lessons from the FTC’s GoDaddy Settlement
Higher ED

Strengthening Website Security in Higher Education: Lessons from the FTC’s GoDaddy Settlement

Josephine Law, FIP, CIPP/US, CIPMBy Josephine Law, FIP, CIPP/US, CIPMJanuary 21, 2025Updated:January 22, 2025No Comments2 Mins Read
The logo for GoDaddy is displayed on a computer screen on Thursday, Jan. 16, 2020, in New York. The Federal Trade Commission said Wednesday, January 15, 2025, that GoDaddy had failed to protect customers from security threats. AP Photo/Jenny Kane © AP Photo/Jenny Kane
© AP Photo/Jenny Kane
Share
Facebook Twitter LinkedIn Pinterest Copy Link

The Federal Trade Commission’s proposed settlement with GoDaddy has implications for businesses and higher education institutions. With increasing reliance on web hosting providers for student portals, learning management systems, and alumni engagement platforms, colleges and universities must prioritize security when selecting and managing these services.

Here are four lessons from the GoDaddy case that higher education institutions should consider:

Evaluate Your Hosting Provider’s Security Practices

In the context of higher education, sensitive data—such as student records, financial information, and research data—must be protected. Institutions should ensure their hosting providers:

  • Encrypt sensitive information, both in transit and at rest.
  • Implement strict access controls to protect administrative and user accounts.
  • Regularly monitor and log access to critical systems, like student portals or admissions platforms.

As stewards of student and faculty data, higher education institutions must demand transparency from vendors about their security practices.

Enforce Multi-factor Authentication (MFA)

Universities frequently manage accounts for thousands of students, faculty, and staff. Implementing MFA for web hosting platforms and campus-wide systems is critical in preventing unauthorized access to accounts. If your hosting provider doesn’t offer MFA, it’s a sign that their security measures may not align with the needs of a modern institution.

Regularly Audit Third-Party Vendors

Higher education institutions often work with multiple vendors for hosting, LMS platforms, and research systems. Regular security reviews are crucial to ensure compliance with regulations like FERPA, GDPR, and HIPAA (for health-related programs). Request vendor certifications, such as SOC 2 Type II or ISO 27001, to verify their adherence to industry standards.

Learn from Real-World Consequences

The risks of lax data security are significant in higher education, where breaches can impact students, staff, and alumni. From phishing attacks targeting students to compromised alumni donation platforms, the stakes are high. Proactively addressing these risks with strong vendor management practices can protect institutional reputation and community trust.

As technology transforms higher education, institutions must stay ahead of evolving cyber threats. By selecting secure hosting providers, enforcing MFA, and conducting regular audits, universities can safeguard sensitive data and maintain the trust of their stakeholders.

The FTC’s guidance offers an opportunity to reflect on current practices and take proactive steps to mitigate risks. Read the FTC’s blog post here for more insights.

Data Privacy Week Higher ED news privacy Security
Josephine Law, FIP, CIPP/US, CIPM
  • X (Twitter)
  • LinkedIn

Senior IT Risk Analyst, Information Security and Assurance | Fordham University Certified Information Privacy Professional/United States (CIPP/US) and Certified Information Privacy Manager (CIPM) with a strong background in IT risk, privacy, and security. A versatile writer with experience in technical, policy, marketing, and social media content, blending expertise in business writing with communications and academics. Creative, resourceful, and adaptable, with a strong work ethic, a positive attitude, and a sense of humor.

Related Posts

U.S. Lawmakers Push Back Against UK’s Demand for an Apple Encryption Backdoor

February 21, 2025

Beyond Goodbye: Safeguarding Employee Data Privacy After Death

February 19, 2025

AI Notetakers in Meetings: Balancing Efficiency with Privacy and Risk

February 19, 2025
Privacy
  • Data Privacy FAQs
  • Your Privacy Questions Answered
  • Visions of Privacy
Search
Categories
  • AI (77)
  • CCPA (9)
  • GDPR (20)
  • Higher ED (25)
  • New Jersey Privacy (2)
  • New Jersey Privacy Law (2)
  • New York Privacy Act (7)
  • News (187)
  • Privacy (173)
  • Regulations (65)
Archives

Fordham University - The Jesuit University of New York

Founded in 1841, Fordham is the Jesuit University of New York, offering exceptional education distinguished by the Jesuit tradition to more than 15,100 students in its four undergraduate colleges and its six graduate and professional schools.
Copyright © Fordham University
Facebook X (Twitter) Instagram YouTube LinkedIn
© 2025 ThemeSphere. Designed by ThemeSphere.

Type above and press Enter to search. Press Esc to cancel.