Educause Security Discussion mailing list archives

Re: IT Policies based on NIST Framework


From: "Clark, Joseph K" <ClarkJK () COFC EDU>
Date: Tue, 28 Apr 2015 17:27:58 +0000

You can check out http://dis.sc.gov/PoliciesAndProcedures/Pages/default.aspx  they are mostly written off of NIST by 
Deloitte. Being a State school we are having to align ourselves with these policies.

Thanks,
Joseph Clark
Senior Information Security Analyst
Department of IT
College of Charleston
Charleston, SC 29424-0001
o:843.953.3846
c:843.870.4566
e:clarkjk () cofc edu<applewebdata://6E7C5E82-758F-4360-885A-17933EE7211E/clarkjk () cofc edu>

From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Carlos 
Lobato
Sent: Tuesday, April 28, 2015 10:29 AM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] IT Policies based on NIST Framework


Good Morning Colleagues,



If your University has developed IT policies based on the NIST Framework (SP 800-53v4) please let me know and if 
possible send me a link to your policy page.



Thanks in advance,



Carlos​



Carlos S. Lobato, CISA, CISSP, CPA

IT Compliance Officer



New Mexico State University

Information and Communication Technologies

MSC 3AT PO Box 30001

Las Cruces, NM  88003



Phone (575) 646-5902

Fax (575) 646-5278

Current thread: