Members of the University of Colorado community collect and use personal information for many educational and business functions. CU is committed to safeguarding this data consistent with applicable legal and policy requirements.

The GLBA Safeguards Rule requires CU to implement safeguards to ensure the security and confidentiality of certain nonpublic personal information (NPI) that is obtained when CU offers or delivers a financial product or service to an individual for personal, family, or household purposes. To support compliance with the Rule, CU has implemented administrative, technical, and physical safeguards as part of its comprehensive Data Governance and Information Technology (IT) Security programs.

Quick Look

 

What does the GLBA Safeguards Rule require?

Why does CU have to comply with the GLBA Safeguards Rule?

How does CU comply with the GLBA Safeguards Rule?

How do I know if my org unit must comply?

What must I do if my org unit is affected?

How are CU's service providers affected?