Home page logo

educause logo Educause Security Discussion mailing list archives

Re: Federal laws applicable to Universities
From: "Carr, Michael G" <michael.carr () UKY EDU>
Date: Thu, 7 Nov 2013 21:00:50 +0000

Wow.  You are asking for a fairly long list.  Here are some for starters:

Reference materials: 

One list of existing federal privacy laws: https://www.cdt.org/privacy/guide/protect/laws.php

Another list: http://www.business.ftc.gov/privacy-and-security

A nice review of Federal Information Security & Data Breach Notification Laws: 

A nice list from Univ of Michigan: http://www.safecomputing.umich.edu/protect-um-data/compliance-table.php

Michael G. Carr, JD, CISSP, CIPP
Chief Information Security Officer
Academic Planning, Analytics & Technologies*
The University of Kentucky
122 James F. Hardymon Bldg
Lexington  KY  40506-0495
Desk: (859) 218-0306
Mobile: (513) 295-3067
Michael.Carr () UKy edu<mailto:Michael.Carr () UKy edu>

* UKIT is now part of APAT: Academic Planning, Analytics & Technologies

Security/Privacy Tip:  The APAT Service Desk will never ask you for your password.  Never give it out.
[Description: StaySecureBlue-smaller]

From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of 
Francisco Pérez
Sent: Thursday, November 07, 2013 3:44 PM
Subject: [SECURITY] Federal laws applicable to Universities

I know that FERPA, HIPAA( if healthcare data) and maybe PCI are applicable to Universities on the US. But there is any 
other federal laws applicable or that Universities need to comply with?. Just working on fundamental laws for IT 
Compliance on Universities.

Will appreciate your comments.

Francisco Pérez
Information System Office
UPR-Medical Sciences Campus
francisco.perez12 () upr edu<mailto:francisco.perez12 () upr edu>

Confidentiality Notice: Any use, review, distribution or copying of this communication by anyone other than the named 
recipient(s) is strictly prohibited. Please notify the sender immediately by e-mail if you have received this e-mail by 
error and delete this e-mail from your system.

Please print this email only when necessary.

  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]