We're a public university, so finding the right security controls without hindering the university's core activities is challenging. We need solutions that provide balance and enable secure collaboration.
Siloed security operations and limited infrastructure at UIC presented challenges in addressing cybersecurity threats across its 16 colleges and healthcare system. At the same time, the university needed to uphold its open-access mission, requiring a careful balance between security and academic freedom.
Automated phishing response reduced support tickets from over 300 to near zero. Improved visibility and orchestration synergized UIC's security operations, significantly accelerating security maturity and enabling faster incident response across all departments.
With 16 colleges and a sprawling healthcare system, UIC faces the dual challenge of maintaining robust cybersecurity while preserving the collaborative spirit essential to its mission. Under the leadership of Shefali Mookencherry, Chief Information Security Officer and Chief Privacy Officer, the university has embarked on a transformative journey to modernize its security maturity, infrastructure, and culture.
UIC’s expansive and decentralized environment presented significant hurdles. Security operations varied widely across departments, leaving the institution vulnerable to threats. At the same time, the university’s open-access mission demanded a delicate balance—ensuring protection without stifling innovation or collaboration.
With sensitive data flowing through research labs, clinical systems, and student services, UIC needed a solution that could unify its security posture while respecting the diverse needs of its academic community.
To address these challenges, UIC turned to Splunk’s data analytics and automation capabilities. The adoption of Splunk marked a pivotal shift from reactive security practices to a proactive, intelligence-driven approach. By centralizing data visibility and automating threat response, UIC was able to streamline operations and enhance institutional alignment.
One of the most impactful changes was the implementation of automated phishing responses. Previously, phishing incidents generated over 300 support tickets, which was a drain on resources and a risk to data integrity. With automation in place, that number dropped to free up IT Security staff to focus on other security initiatives.
Splunk has been central to our transformation journey. Each year, we're leveraging Splunk more strategically, enhancing our security posture and supporting our broader institutional objectives.
We're a public university, so finding the right security controls without hindering the university's core activities is challenging. We need solutions that provide balance and enable secure collaboration.
Central to UIC’s success has been the cultivation of a cybersecurity culture rooted in awareness, collaboration, and trust. Shefali Mookencherry emphasized the importance of engaging stakeholders across the university—from faculty and researchers to administrative staff and students. Through targeted training, transparent communication, and inclusive governance, UIC has built a resilient community capable of adapting to evolving threats.
This cultural transformation has also extended to UIC’s healthcare system, where data protection is paramount. Splunk’s orchestration tools have enabled faster incident response and improved compliance with regulatory standards, reinforcing UIC’s reputation as a leader in secure, patient-centered care.
UIC’s journey offers a compelling blueprint for other institutions navigating the complexities of cybersecurity in higher education. By aligning technology with mission-driven values, UIC has demonstrated that security and openness are not mutually exclusive—they are mutually reinforcing.
As threats continue to evolve, UIC remains committed to innovation, collaboration, and excellence. The university’s experience underscores the power of strategic leadership, data-driven decision-making, and a community-first approach to cybersecurity.
The potential of Splunk is endless. It helps us turn data into actionable stories, driving not just security improvements, but cultural shifts around security awareness and practice across our community.