- Get help
- Announcements & alerts
- Service outages
- Security alerts
- Major initiatives
- Expanded gender identity options for students within goSFU
- Help us, help you, connect to better WiFi
- IT Services' new support system: ServiceHub
- Information Security Essential Courses
- IT Services leadership announcement
- University Wide Password Change Initiative
- April 2021 technical issue
- Telephone System Core Infrastructure Upgrade
- Decommissioning fraser.sfu.ca
- Information security
- Anti-Spam (CASL) Compliance
- Data security standard
- Desktop Security
- Identity Protection
- Phishing Scams
- How to stay safe online
- Security hygiene
- Tips for safe computing
- Travelling with technology
- Keeping Your Personal Information Safe During the Holidays
- Don't get caught by a phishing scam
- Vision, strategy and policy
- One I.S. vision
- Cloud Computing Strategy
- Stewardship Model
- Stewardship Committees
- Stewardship Workflow
- Connecting to University Governance
- Approval and Prioritization
- Stewardship and Project Management
- Terms of Reference: One I.S. Stewardship Committee
- Administrative Systems Stewardship Committee
- Terms of Reference: Research Systems Stewardship Committee
- Terms of Reference: Educational Systems Stewardship Committee
- Mobile Strategy
- Vision, strategy and policy
ServiceHub is our new one-stop portal for you to interact with IT Services about the services you are interested in.
If you need assistance with a service, request for support at servicehub.sfu.ca.
Desktops and laptops managed by IT Services
Managed devices refers to desktops and laptops that are managed by IT Services. Staff and faculty can enroll their devices purchased through SFU's Procurement Services into managed devices, to benefit from standards that ensure the device is secure, license compliant, connected to enterprise resources, and regularly updated and maintained. Managed devices can also be found in offices, lecture rooms, labs, and libraries on campuses.
Why use managed devices?
- Reliability - Your device will quickly receive software updates and patches with little to no interaction on your part.
- Time efficiency - You will stay more productive as most deployment and updating processes run in the background, freeing up more time for teaching, research and management.
- Flexibility - You can choose when and where to install new software or run maintenance on your device through Self-service portals.
- Security - IT Technicians will manage the security of your machine so you don't have to. You can rest assured that software patches, antivirus protection, and firewalls are well maintained.
- Confidentiality - Your data and files will remain confidential; no personal data is scanned, indexed, or transmitted off your device. ITs servers also keep full audit logs of any actions performed by technicians.
- Compliance - Your device will always be in compliance with legislation governing requirements for research or student data on University computers. Your device will quickly receive software updates and patches with little to no interaction on your part.
How do I obtain a managed device?
Faculty and staff can contact your departmental IT staff to obtain or enroll in managed devices. Please contact your departmental IT staff first for any question and issue related to managed devices.
Endpoint Detection & Response (EDR): Managed Device Security Feature
SFU is committed to protecting the digital information and systems that are critical to teaching, research and university operations.
Cyber-attacks and phishing attempts are on the rise and continue to get more sophisticated. IT Services strives to protect and mitigate cybersecurity risks for SFU.
EDR Frequently asked questions
What is Endpoint Detection & Response (EDR)?
Endpoint Detection and Response (EDR) is a proactive security solution that protects against malicious activity before it can create a problem to the end user. To recognize and respond to potential threats and to protect the SFU community’s information and data, IT Services is creating a more secure digital space and will continue to execute projects like EDR from its latest security plan.
Why is EDR being implemented?
EDR, along with other information security initiatives such as Multi-Factor Authentication (MFA) and regularly resetting our passwords, are proactive ways we can enhance our ability to counter cyber-attacks and better protect the SFU community.
Is EDR monitoring my files or what webpages I visit?
No. EDR software monitors malicious application activity and doesn’t monitor individual use or their files. It is NOT monitoring and reporting individuals’ activities on the web nor processing or indexing their files or other information on their computers. The new EDR program monitors what applications are doing on your computer – not you.
How does it impact SFU managed devices?
Users don’t need to do anything and won’t notice any differences on their managed devices unless there’s a malicious attack on their computer. EDR software runs in the background of your managed device and if/when malicious activity is identified, you will receive a pop-up notice. Users with EDR installed may also notice a new green circle icon in the menu on your device.
How EDR can help mitigate effects of a ransomware attack?
EDR works at the kernel level, to evaluate and prevent activity that the operating system simply shouldn’t be doing. As compared to anti-virus software which uses canned heuristics or file-based signatures to block activity.
Example: Ransomware is trying to encrypt a file system. If standard Windows tools are used to start the encryption, anti-virus won't stop it because it's not malware per se. It's a Windows process doing its job. However, EDR would stop it because the process that kicks off the encryption isn't started by Windows security policy or other standard deployment methods. Endpoint detection and response works by observing endpoint and system events and recording the data in a focal database to facilitate examination, location, detailing, and alerting occurrences.
What if I don’t have an SFU managed device?
SFU faculty and staff without managed devices are encouraged to opt-in to being managed, which allows for continual software updates and enhanced security via the Endpoint Detection and Response (EDR). This provides greater cyber security measures for SFU IT systems. Contact your local IT support to opt-in to having your device managed. The IT Service Desk can be contacted at email@example.com for general assistance.
For unmanaged devices, IT Services has secured some licenses for Trend Micro Apex One, an enterprise class endpoint security software. It is available to faculty and staff through March 7, 2023.
What do I do if my application is blocked by EDR?
Contact the IT Service Desk at firstname.lastname@example.org for assistance.
If you would like more information on EDR please contact IT Services at email@example.com.
Managed Devices Questions or Issues?
- Need desktop support?