How can universities protect academic integrity when AI tools are everywhere? By controlling the environment where work is done, not just the network it travels over. Three controls do most of the work: virtual desktops, multi-factor authentication, and data enclaves.
Why a VPN is not enough
A VPN encrypts traffic and gets a remote student or faculty member onto the campus network. It does not control what happens on the device at the other end, it cannot see academic activity, and when it is slow people work around it. Each workaround is a gap.
The three controls
- Virtual desktops. Coursework and research run in a centrally managed workspace rather than on a personal machine. Access to materials is controlled, security policy applies to everyone, and exam environments are consistent and monitored.
- Multi-factor authentication. A stolen or guessed password is useless without a second factor. Built into the virtual desktop sign-in, it makes sure the person taking the exam is the person enrolled.
- Data enclaves. A restricted, monitored space where sensitive coursework, exams, and research data live. It isolates that work from unauthorized tools, tracks activity, and stops lateral movement across university systems.
Layer AI governance policy on top of the enclave and the institution can define what tools are permitted, and faculty can review flagged behavior.
Where to read more
The full article is Universities can leverage VDI, MFA, and data enclaves to safeguard academic integrity. For the wider picture, see our page for K-12 and higher education.
If you are weighing this for your institution, start a conversation. We compare options on one sheet and disclose how we are paid before you decide anything.



