Educause Security Discussion mailing list archives

Re: Data classification


From: "Bruhn, Mark S." <mbruhn () INDIANA EDU>
Date: Mon, 12 Jul 2004 10:25:18 -0500

See http://datamgmt.iu.edu.  Specific to classifications, see the link
titled "IU Policy on Access to Institutional Data."  From that document:

Data, limited-access
These are data elements that, because of legal, ethical, or other
constraints, may not be accessed without specific authorization or to
which only selective access may be granted.

Data, public
These are data elements to which the general public may be granted
access.

Data, university-internal
These data elements may be accessed by all eligible employees of the
university, without restriction, for the conduct of university business.

M.

-- 
Mark S. Bruhn, CISSP, CISM

Chief IT Security and Policy Officer
Associate Director, Center for Applied Cybersecurity Research
(http://cacr.iu.edu)

Office of the Vice President for Information Technology and CIO
Indiana University
812-855-0326

Incidents involving IU IT resources: it-incident () iu edu
Complaints/kudos about OVPIT/UITS services: itombuds () iu edu




-----Original Message-----
From: The EDUCAUSE Security Discussion Group Listserv
[mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Slade Griffin
Sent: Monday, July 12, 2004 9:55 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] Data classification


All,
        Does anyone on this list deal with data classification?  If so I
would like to discuss what levels or classifications are used in the edu
community.  Thanks in advance.

Slade Griffin
ITSG
University of Tennessee
http://oit.utk.edu/infosec

**********
Participation and subscription information for this EDUCAUSE Discussion
Group discussion list can be found at http://www.educause.edu/cg/.

**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/cg/.

Current thread: