Information Security Risk Management

Description  

IT Solutions identifies, assesses, and mitigates information security risks to help protect University data and technology resources. Services include cybersecurity awareness and education, security risk assessments, and reviews of policy and standard exceptions.

Key Features 

  • Cybersecurity Awareness: Educate the campus community about cybersecurity threats and best practices through awareness campaigns, training resources, and knowledge base articles.
  • Risk Assessment: Provide informal guidance on data security regulations, policies, standards, and guidelines, including MGDPA, FERPA, HIPAA, and PCI. Conduct risk and governance reviews of new and existing systems and software (Technology Software and Services Review).
  • Evaluate Exception Requests: Evaluate the risk to University data associated with requests for exceptions to information security policies and standards. Exception determinations are made by the Vice President and CIO for IT Solutions.

Who Can Use It 

  • Faculty
  • Staff
  • Departments

Cost 

There is no cost for this service. 

Requests and Support 

Use the request button on this page to submit a request for assistance. 

Policies and Compliance 

This service complies with Minnesota State University, Mankato and Minnesota State system policies, including: