Educause Security Discussion mailing list archives

Re: FTC and Red Flag Rule


From: "Basgen, Brian" <bbasgen () PIMA EDU>
Date: Wed, 8 Oct 2008 13:47:06 -0700


 We are also working on our approach. Here are some documents our Finance folks have pulled together that are helping 
us better assess applicability.


~~~~~~~~~~~~~~~~~~

Brian Basgen

Information Security

Pima Community College


From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Anand 
Malwade
Sent: Wednesday, October 08, 2008 12:24 PM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] FTC and Red Flag Rule


Hi,

Does anyone know if Educational Institutions are affected by the FTC's Red flag rule about maintaining an Identity 
Theft program ? If yes has anyone implemented or has a roadmap for deployment?
In my opinion if the rule is indeed applicable, the Institution's Legal Counsel should drive the initiative and not IT.

Any suggestions are welcome.


http://www.dciginc.com/2008/08/ftc-issues-red-flag-rules-reminder-ensuring-i.html

http://www.ftc.gov/bcp/edu/pubs/business/alerts/alt050.shtm



Thanks,
Anand



Anand Malwade, CISSP,CISM,CISA.
Information Security Officer,
Seton Hall University,
malwadan () shu edu

Attachment: FTC Document r611019redflagsfrn.pdf
Description: FTC Document r611019redflagsfrn.pdf

Attachment: Guidelines to FTC Red Flag APP from NACUBO.PDF
Description: Guidelines to FTC Red Flag APP from NACUBO.PDF

Attachment: 26 Red Flags from FTC Document r611019redflagsfrn.pdf
Description: 26 Red Flags from FTC Document r611019redflagsfrn.pdf


Current thread: