IT Security Activity Defintion
Aims of Activity
- Develop and implement information security policies, standards, practices, guidelines and codes of conduct in consultation with, and on behalf of, the University.
- Interact with JANET-CERT and other HEIs regarding information security issues concerning or affecting the University.
- Gather, collate and disseminate security information throughout the University and communicate and advertise information security standards and strategy.
- Promote user awareness and education about data security and staying safe on line, and alert the user community at times of increased security risks.
- Liaise with faculty/departmental administrators and IT support staff regarding information security policy matters and information security issues concerning or affecting their systems.
- Investigate complaints received from internal and external bodies or individuals concerning allegations of misuse or abuse associated with the University's computer systems or network.
- In accordance with information security policy take appropriate action in the interests of the University where faculty/departmental systems are adversely affecting the University network, or placing it at risk.
- Liaise with the police and law enforcements agencies concerning allegations of computer misuse involving University systems that may constitute an offence under criminal law.
- Provide IT/IS security consultancy services to the University concerning the introduction or development of systems, and participate in projects which have IT/IS security implications.
- Co-ordinate working groups that are formed to address or examine specific undertakings which have a bearing on information security or information security policy development.
- Co-ordinate and participate in the University's Information Security Group (ISG).
- Analysing, implementing, developing, documenting and training others in the use of tools for monitoring IT information security.
- Liaise with internal and external auditors and organisations governing higher education in relation to information security policy and practice at the University.
- Provision of information security reports and feedback to the University's special interest groups and management committees.
Activity Contacts:
Main activity provider contacts:
IT/IS Security Coordinator
Tel: (0113) 343 1118
Email: it-security@lists.leeds.ac.uk