NSU NSU Website Contact OIT
 

Office of Information Technology

 
 

Office of Information Technology Policies

All documents open in a new window

The following OIT security policies establish a baseline for information security and risk management activities for the University and are based on the COV ITRM SEC501 Standard, which defines the minimum acceptable level of information security and risk management activities that the University must implement. It is the User's responsibility to ensure they familiarize themselves with these policies. Questions should be directed to the University Information Security Officer.

 62.200 Risk Management

62.202 Key Information Security Roles and Responsibilities
62.203 Business Impact Analysis
62.204 IT System and Data Sensitivity Classification
62.205 Sensitive IT System Inventory and Definition
62.206 Risk Assessment
62.207 IT Security Audits

 62.300 IT Contingency Planning

62.302 Continuity of Operations Planning
62.303 IT Disaster Recovery Planning Documentation
62.304 IT System and Data Backup and Restoration

 62.400 Information Systems Security

62.402 IT System Security Plans
62.403 IT System Hardening
62.404 IT Systems Interoperability Security
62.405 Malicious Code Protection
62.406 Systems Development Life Cycle Security
62.407 Application Security
62.408 Wireless Security

 62.500 Logical Access Control

62.502 Account Management
62.503 Password Management
62.504 Remote Access

 62.600 Data Protection

62.602 Data Storage Media Protection
62.603 Encryption
62.604 Protection of Sensitive Information on Non-Electronic Media

 62.700 Facilities Security

62.702 Facilities Security

 62.800 Personnel Security

62.802 Access Determination and Control
62.803 Information Security Awareness and Training
62.804 Acceptable Use - See 60.201 Acceptable Use of Technological Resources
62.805 Email Communications

 62.900 Threat Management

62.902 Threat Detection
62.903 Information Security Monitoring and Logging
62.904 Information Security Incident Handling
62.905 Data Breach Notification

 62.1000 IT Asset Management

62.1002 IT Asset Control
62.1003 Software License Management
62.1004 Configuration Management and Change Control
   

NSU University Wide Policies - Office of Information Technology