Securing Sensitive Information: Management of Portable Media devices and Sensitive Documents

Securing Sensitive Information

Management of Portable Media Devices and Sensitive Documents

Overview:

The University must take every reasonable precaution to secure both sensitive personal data and paper records, under federal and state law. Threats to the security of sensitive items come in several forms and each threat must be dealt with a unique countermeasure.  An important element in Information Security is an effective ongoing security education and training program.  The CSU system has access to a number of security training programs available online at http://csuso.cosaint.net, such as the Security of Mobile Devices, along with a general awareness program.  All members of the campus community with access to sensitive personal data will take the Information Security Awareness program within csuso.cosaint.net.  These individuals will be identified by the University's Information Security Officer.  Initial training through Cosaint will be followed up annually by visits from the security officer to document ongoing efforts to secure sensitive data.    Access to these programs can be arranged via the HR office on campus. 

Definitions:

Sensitive data: 

Portable Device: 

Data Security:

Transmission Security: 

Records Security:

Security Breaches: 

Policy Exceptions: 

Contact Information: 


ITS/CIO

April 28, 2008
October 10, 2019



Article ID: 169
Last updated: 5 Nov, 2020
Revision: 6
ITS -> Policies -> Securing Sensitive Information: Management of Portable Media devices and Sensitive Documents
https://easternct.makekb.com/entry/169/