Log in to see all content. Some content is hidden to the public.
Can't find what you're looking for? Help us improve the search functionality by reporting the expected results.
1436 Results
Standard
UCSF Plan for Combating Unauthorized Distribution of Copyrighted Materials
Compliance with the peer-to-peer (P2P) provisions of the Higher Education Opportunity Act (HEOA) I. Introduction II. Technology-based deterrents A. Traffic monitoring B. DMCA notice response
Impacted Services: IT Security Outreach and Training
Guideline
Best Practices for Application and Website Security
Overview By following application and website security best practices, application owners can take proactive steps to eliminate or significantly reduce vulnerabilities in software before deployment. These vulnerabilities potentially provide attackers with the ability to take control of a server or computer, which can result in the compromise of UCSF data and personal data, denial of service, loss of service or damage to a system used by thousands of users. By reducing the numbers of vulnerabilities, UCSF data and personal data is better protected.
Impacted Services: IT Security Outreach and Training
Guideline
Physical Security Guidelines
Stop the most common method of information theft Many information security breaches do not occur through the Internet but because the device containing information is misplaced, lost or stolen.
Guideline
UCSF Implementation of the ECP - Access Without Consent
Access Without Consent to Electronic Communications Records A. Authorization An electronic communication holder's records may be inspected, monitored, or disclosed without the consent of the individual but with the approval of the authorizing Vice Chancellor (see Appendix A, Definitions) under the following conditions:
Guideline
IT Field Services - Service Level Agreement
Impacted Services: IT Field Services (ITFS) Desktop Support
Guideline
Recommendations for Securing Mobile Devices
What you need to know The following recommendations apply to all mobile devices, including both personally and UCSF-owned mobile devices, used for UCSF business. Mobile devices include, but are not limited to:
Impacted Services: IT Security Outreach and Training
Guideline
Criteria for Premium Support
What you need to know Premium Desktop Support is available for computers and devices that meet the following criteria:
Impacted Services: IT Field Services (ITFS) Desktop Support
Standard
UCSF 650-16 Addendum E - PCI
Purpose UCSF 650-16 Addendum E - PCI outlines the requirements for information, locations, facilities, and devices processing, storing, or transmitting credit card information. Objective To comply with data security requirements defined by Payment Card Industry Data Security Standards 3.1/3.2 (PCI-DSS)
Impacted Services: IT Security Outreach and Training
Standard
UCSF Policy 650-16 Addendum F, UCSF Data Classification Standard
UCSF_Data_Classification_Standard_08-09-19 (PDF) Document Owner: Patrick PhelanDepartment Contact: UCSF IT SecurityIssue Date: 4/24/17Effective Date: 4/24/17Reviewed/Revised Date: 8/9/19
Impacted Services: IT Security Outreach and Training
Guideline
UCSF IT Security Cloud Computing Guidance - Cloud Service Basics
Overview | What is the "cloud"? The "cloud" is a continually evolving concept that broadly references cloud services, or cloud computing. Cloud services can mean collections of any or all of the following: applications, information, infrastructure components and services provided as pools of resources. The ability for these broadly accessible services to be rapidly provisioned, deprovisioned, expanded and contracted based on demand creates a demand-driven service model, which can be seen as a "Pay for what you use" type of IT service.
Impacted Services: IT Security Outreach and Training