Educause Security Discussion mailing list archives

Re: Policy Defining Responsibility for CIO & CISO


From: randy <marchany () VT EDU>
Date: Mon, 22 Feb 2016 11:03:18 -0500

Our Board of Visitors affirmed the authority of our CIO in a resolution.
That resolution is at
http://www.bov.vt.edu/minutes/07-06-04minutes/attach_v_070604.pdf. Our
University Policy 7010 (www.policies.vt.edu/7010.pdf) delegates authority
from the CIO to the ISO. Our IT policies are at www.policies.vt.edu in the
7000 section.

-Randy Marchany
VA Tech IT Security Office and Lab

On Mon, Feb 22, 2016 at 10:27 AM, Carlos Lobato <clobato () nmsu edu> wrote:

Good Morning Colleagues,


If your institution has a policy that clearly delineates responsibility
for the CIO and CISO, I would highly appreciate if you would send me a link
to your policy.


Thanks in advance,


Carlos


*Carlos S. Lobato, CISA, CISSP, CPA*

*IT Compliance Officer*



*New Mexico State University*

Information and Communication Technologies

MSC 3AT PO Box 30001

Las Cruces, NM  88003



Phone (575) 646-5902

Fax (575) 646-5278


Current thread: