The access and use of many university software platforms require careful management and security oversights.
The policies, guidance protocols and additional resources have been compiled to help you navigate your daily work tasks while maintaining the integrity of university data and crucial software systems.
Administrative Policy Statements
- Data Governance APS 6010
- IT Security Program APS 6005
- Providing and Using Information Technology APS 6001
- Use of Electronic Mail Administrative Policy Statement APS 6002
- Collection of Personal Data from Students and Customers Administrative Policy Statement APS 7003
- Retention of University Records Administrative Policy Statement APS 2006
University-wide Policies and Guidelines
General Security
Standards for system-wide baseline security, impact security, purchasing, software as a service and more can be found on the Office of Information Security (OIS) Policies webpage.
Data Privacy
For information on university-wide standards, procedures and guidelines, visit OIS Policies.
Additional Resources
Laws and Regulations
Sources for relevant legal and compliance policies and documentation.
- Colorado Protections for Consumer Data Privacy
- Family Educational Rights and Privacy Act (FERPA)
- Health Insurance Protability and Accountability Act (HIPAA)
- Gramm-Leach-Bliley Act (GLBA)
- Payment Card Industry Data Security Standard (PCIDSS)
Cyber Risk and Compliance Committee
The Cyber Risk and Compliance Committee serves to provide oversight and support of IT Security across all University of Colorado campuses.