Presentation for Common Solutions Group, January 11, 2008 is Here.

Effective Practice & Solution Outline Document is Here.

  • No labels

1 Comment

  1. Randy Marchany

    VT AUP went into effect in 1990.

    HR sanctions are the preferred method of enforcement and can cause a good amount of pain depending on the severity of the offense. The thinking at the time was to treat AUP violations no differently than a "real world" violation. That way, there was no need for a separate enforcement structure or rules.

     The ISO was created in 1998. One of the earlier ISOs created in the EDU world and certainly one of the few high up the University Mgt chain.

    There is a plan for putting together a comprehensive security strategy. That is the Defense in Depth doc produced by the ISO.

    The VPIT has been given the authority by the BOV to enforce all IT policies. The authority to impose sanctions on violators (net disconnection, etc.) was granted to the VPIT as well. The security buck stops at the VPIT.