Educause Security Discussion mailing list archives

Vendor contracts with security details. Follow up on vendor contracts network issues


From: David Grisham <DGrisham () SALUD UNM EDU>
Date: Fri, 6 Feb 2009 09:31:25 -0700

In a previous discussion on vendor contracts and data transmission there were some great documents provided to the 
group.  Does anyone have similar documents for security settings: AV, logs, appropriate hardening, automated patching, 
access controls, password complexity criteria , etc?


Cheers --grish
David D. Grisham, Ph.D.,  CISM, CHSP
Manager, IT Security,
UNM Hospitals, IT Division
1650 University Blvd,  S.500, Albuquerque, NM 87102
Ph: (505) 272-5657 FAX 272-6923
Work email:  dgrisham () salud unm edu
Adjunct Faculty, Computer Science, UNM
Academic & personal email:  dave () unm edu

The unauthorized disclosure or interception of e-mail is a federal crime.  See 18 U.S.C. Sec. 2517(4). This e-mail is 
intended only for the use of those to whom it is addressed and may contain information which is privileged, 
confidential and exempt from disclosure under the law.  If you have received this e-mail in error, do not distribute or 
copy it.  Delete it immediately and attachments, if any,  and notify me by telephone. Please do not forward or 
disseminate the information in this written document.

Current thread: