Policies

As a member of the UBC community, it is our duty to ensure we are familiar with all of the policies, guidelines, and standards governing our employee role. I have compiled a short list of important IT related policies that govern your every day operations within the department.

Privacy Matters

Information sharing is so common today that it is understandable for people to become complacent about privacy and information security. Yet, everyone has the right to expect their personal information to remain safe and secure.

At UBC, we are responsible for substantial amounts of personal information about students, faculty, staff, alumni, and donors. Protecting this information is everyone’s responsibility.

By taking the first simple steps to stay secure, you can make a big impact on privacy and information security, both at home and at UBC.

Staying Secure

Learn more about staying secure, please visit our Privacy Matters section.

Policy SC14 (Formerly known as Policy 104) – Acceptable Use and Security of UBC Electronic Information and Systems

This policy is intended to outline the responsibilities of members of the University community with respect to the acceptable use and security of University electronic information and the services, devices and facilities that store or transmit this information.

Learn more about SC14, please download Policy SC14.

Policy SC11 – Management of the Wireless Network

UBC makes use of radio frequency bands for research, teaching and communication as part of its functions and duties. The UBC wireless network, provided by UBC IT, is part of UBC’s telecommunications and data network. Devices that operate in the same frequency bands as the UBC wireless network, such as wireless
networking devices, cordless phones, microwave ovens, audio speakers, still cameras, video cameras, and other equipment, can interfere with the UBC wireless network, and can introduce performance, reliability, usability, sustainability, and security problems.

Learn more about SC11, please download Policy SC11.

Information Security Standards and Resources

As required under Policy SC14, Acceptable Use and Security of UBC Electronic Information and Systems, the CIO has published Information Security Standards, which are mandatory for all Users of UBC Electronic Information and Systems. To learn more about the application of these standards, see the roles and responsibilities table.

The Standards are listed in the tables below, along with resources to assist Users with compliance. While these resources are very useful, they are not mandatory unless explicitly stated. Recognizing that it will take time to fully meet all of the requirements in the Standards, Faculties and Departments are expected to gradually implement these requirements over time. See the example implementation roadmap for more information. Each Faculty and Department is responsible for creating its own implementation roadmap, based on risk and resource considerations.

The Standards have been divided into two categories: User Standards and Management and Technical Standards and the following audiences should approach these Standards as outlined below:

Learn more about these standards, please visit Information Security Policy, Standards, and Resources.