-
Research
and PublicationsStay -
Conferences
and EventsAnnual Conference
October 15–18, 2013
Save the date!Events for all Levels and Interests
Whether you're looking for a conference to attend face-to-face to connect with peers, or for an online event for team professional development, see what's upcoming.
Stay -
Career
DevelopmentEDUCAUSE Institute
Leadership/Management Programs
Explore MoreCareer Center
Leadership and Management Programs
EDUCAUSE Institute
Advanced Programs
Project Management
Jump Start Your Career Growth
Explore EDUCAUSE professional development opportunities that match your career aspirations and desired level of time investment through our interactive online guide.
Stay -
Focus Areas
and InitiativesLatest Topics
EDUCAUSE organizes its efforts around three IT Focus Areas
Join These Programs If Your Focus Is
Stay -
Connect
and ContributeFind Others
Get on the Higher Ed IT Map
Employees of EDUCAUSE member institutions and organizations are invited to create individual profiles.
Stay -
About
EDUCAUSEUncommon Thinking for the Common Good™
EDUCAUSE is the foremost community of higher education IT leaders and professionals.
Stay
Subscribe
Filter by type
Filter by Publications
Filter by Presentations
Filter by Library Taxonomy
- Federal Privacy Law [x]
- Health Insurance Portability and Accountability Act (HIPAA) [x]
- Policy and Law [x]
- Security Management [x]
- Cybersecurity (29)
- Federal Policy and Law (29)
- Privacy (17)
- Family Educational Rights and Privacy Act (FERPA) (14)
- Data Security (12)
- Information Technology Management and Leadership (11)
- Campus Policies (9)
- Campus Policy and Law (9)
- Cybersecurity Policy (9)
- Identity and Access Management (5)
- Information Systems and Services (5)
- Security Risk Assessment and Analysis (5)
- PCI DSS (4)
- Privacy Policies (4)
- Security Policies (4)
- Staffing (4)
Information technology policy is impacted by a wide range of perspectives from international, national, state, and campus levels. This resource page underscores the connections among these different levels and how international organizations, Congress, federal agencies, state governments, and the courts all play a role in shaping IT policy and law, as well as why this matters to higher education. Campus policies, whether developed to comply with legal mandates or to formalize institutional norms and processes, are under constant development and review as a result of changes precipitated by the introduction of new information technologies.
Featured Resources
Latest News
PCI compliance, privacy, InCommon implementation, and legal issues in IT are just a few of the preconference seminar topics offered at the EDUCAUSE Annual Conference, November 6-9 in Denver....
Library Items on this Topic
EDUCAUSE Library Items for Policy and Law
-
Toolkit for Developing an Identity and Access Management (IAM) Program
-
May 7, 2013
The IAM Program Outline has been created as a roadmap for institutions to use in developing an IAM program (or to address gaps in their current offerings) including: Providing a structure o…
-
IT Compliance Framework for Institutions of Higher Ed
-
April 16, 2013
|
A session at the Security Professionals Conference
Institutions of higher education are increasingly expected to comply with various regulatory requirements specifically focused at data privacy and protection. Sometimes there could be overlap in ef…
-
Protecting the Security of Research Data
-
November 8, 2011
The effective protection and management of research data has become a hot topic in U.S. higher education. Funding agencies increasingly require data management plans as part of grant submittals…
-
Leverage the Cloud + Leverage In-House + Improve Security = Save Money
-
January 11, 2012
|
A session at the Mid-Atlantic Regional Conference 2012
The University of Maryland in Baltimore had to replace its in-house student e-mail system. Our students wanted Google. We had concerns with security as well as compliance requirements such as HIPAA…
-
Compliance Matrix Poster for IT & Compliance Professionals
-
March 17, 2010
This matrix poster developed by Symantec outlines IT Controls for security and privacy concerns related to regulatory compliance in the workplace. Topics addressed in this poster include: Regu…
-
Privacy and Confidentiality: Holding IT Service Providers Accountable
-
November 3, 2009
This ECAR research bulletin addresses the data privacy issues that must be covered by contractual language when entering into an agreement for externally provided IT services or for external con…
-
Forward Into the Cloud
-
September 30, 2009
With more students auto-forwarding e-mail to private accounts, even colleges that have not outsourced their e-mail find it difficult to keep correspondence on their own servers. …
-
Ferreting Out Sensitive Data
-
March 10, 2009
|
A session at the NERCOMP Annual Conference 2009
FERPA, HIPAA, and red flag rules: we're swimming in an alphabet soup of federal regulations related to information privacy and prevention of identity theft. Learn how MIT approached the proble…
-
Information Confidentiality
-
March 11, 2009
Protecting information confidentiality is a critical security objective for all colleges and universities. Institutions must deploy confidentiality controls in addition to security controls, and…
-
Joint Guidance on the Application of the Family Educational Rights and Privacy Act (FERPA) And the Health Insurance Portability and Accountability Act of 1996 (HIPAA) To Student Health Records
-
December 4, 2008
The purpose of this guidance is to explain the relationship between the Family Educational Rights and Privacy Act (FERPA) and the Health Insurance Portability and Accountability Act of 1996 (HIPA…

















