College of Liberal Arts Home : U of M Home

CLA Standard

In March 2007, the Dean approved the following CLA policy:

All college owned computers have the potential to contain or access legally private data and are thus required to comply with the University of Minnesota Securing Private Data Standard. Exemption from this policy must be requested in writing from the CLA-OIT InfoTech Services Director.

To carry out the approved policy, CLA-OIT has developed the following:

Every computer in CLA will adhere to an approved Securing Private Data implementation plan. CLA-OIT will maintain a basic plan that will accommodate most users and take advantage of both University and College services and resources. This plan will be the default plan for all CLA computers. Departments with special needs can establish a unit-specific implementation plan. Individual faculty and/or staff users may also develop a custom implementation plan with the support of their local technician.

Every implementation plan will provide specific details on the tools, strategies, and settings used to meet each of the 18 requirements of the University Securing Private Data Standard. The CLA-OIT plan will be regularly reviewed by OIT Security. Department and individual plans will be reviewed by the CLA-OIT InfoTech Services staff and escalated to OIT Security, as necessary. All plans must be approved by the CLA-OIT IT Services Director. Appeals will be forwarded to the CLA-OIT Director and/or the CLA Dean.

Each clause of a custom implementation plan will answer the following questions:

  1. In what ways is the basic CLA-OIT implementation plan incompatible with the administrative, instructional, and/or research operations conducted on the computer(s) in question?
  2. What alternative tools, strategies, and/or settings will be used to meet the specified University requirement?
  3. How does the alternative plan mitigate the risk of exposure or loss of legally protected private data?
  4. Every plan must be reviewed and approved annually to ensure it meets University standards and takes advantage of the most effective technologies available.
  5. In addition, CLA-OIT will also prepare and disseminate a Securing Private Data guide for faculty, staff, and grad students based on the CLA-OIT Basic Implementation Plan. The guide will include user expectations (minimum requirements that all users must follow) and recommended best practices. Units with approved alternative implementation plans may develop a customized version of this guide for their users.
CLA Office of Information Technology
110 Anderson Hall
257 19th Ave S.
Minneapolis, MN 55455

612-624-4357 (4-HELP)
help@cla.umn.edu
Contact the CLA-OIT website maintainer: webhelp@cla.umn.edu