Data Governance and Security in Higher Education Institutions

 
Data Governance and Security
 
4/25/2023 – 4/26/2026
 
Master
Data
 
Student
 
Finance
 
Healthcare
 
Healthcare
 
Human
Resources
 
PCI
 
Data Governance and Security
 
What is Data Governance
ECU’s Data Governance Evolution
Primary Goals
Structure
Access Authority
Data Classifications
User Access Controls
Resource Links
 
Agenda
Agenda
 
What is Data Governance
What is Data Governance
 
Data Governance is a collection of persons in specific
roles who oversee the establishment, use and support
of processes, policies, and standards used to ensure:
The effective utilization of institutional data.
The quality and security of institutional data.
The realization of University goals.
 
Data Governance and Security
 
ECU’s Data Governance Evolution
ECU’s Data Governance Evolution
 
2011 - Due to challenges with the Baldridge
Application and SACS, ECU’s executive council
charged ECU to create a Knowledge Management
core project team responsible for addressing data
quality issues
2012 - ECU begins development of a data
governance regulation and identified resources
needed to implement a data governance program
2016 - 
Data Governance Regulation
 approved and
resources identified for the support of a data
governance program
 
Data Governance and Security
 
Primary Goals
Primary Goals
 
Ensuring Data Security and Reliability
Utilizing Institutional Data Fully, Effectively and
Efficiently
Establishing Data Standards and Standardization
Processes
Managing Data Access and Data Classification
 
 
Data Governance and Security
 
Structure
Structure
 
Data Governance and Security
 
Structure - Data Steward Committee
Structure - Data Steward Committee
 
Data Governance and Security
 
Structure - Data Governance Steering Committee
Structure - Data Governance Steering Committee
 
Data Governance and Security
 
Access Authority
Access Authority
 
Data Stewards or their designees are the only
personnel that are allowed to grant access to
institutional data
IT or coworkers should not give access to Institutional
Data without proper authorization from the data
owner
 
Data Governance and Security
 
Data Classifications
Data Classifications
 
Classify enterprise data and information into simple
confidentiality levels
Data must be classified based on the highest level of
confidentiality
ECU’s classifications
Level 1 – Public
Level 2 – Internal
Level 3 – Confidential/Sensitive
Level 4 – Highly Restricted
 
Data Governance and Security
 
User Access Controls
User Access Controls
 
Information systems hosting Level 3 and level 4 must
have the minimum controls below in place:
A documented process for users to request access
A weekly review of terminated users and removal of those
users from the system
A weekly review of transferred users and removal of those
users that changed duties and no longer need access
Bi-annual review of current user access and attestation
that the review was conducted
 
 
Data Governance and Security
 
Links
Links
 
Data Governance website
https://datagovernance.ecu.edu
Data Governance Regulation
https://www.ecu.edu/prr/01/15/06
Data Governance Communication Plan
https://datagovernance.ecu.edu/dsc-
communication-plan/
DSC Processes and Procedures
https://datagovernance.ecu.edu/data-stewardship-
committee-procedures
 
Data Governance and Security
 
Questions?
Questions?
 
 
Data Governance and Security
 
Slide Note
Embed
Share

Data governance and security play a critical role in ensuring the effective utilization, quality, and security of institutional data in higher education settings. This involves establishing processes, policies, and standards to support data governance goals such as data security, reliability, standardization, and access management. Case study examples from East Carolina University illustrate the evolution and implementation of data governance practices to address data quality issues and achieve institutional objectives.

  • Data Governance
  • Security
  • Higher Education
  • Institutional Data
  • East Carolina University

Uploaded on Mar 09, 2024 | 5 Views


Download Presentation

Please find below an Image/Link to download the presentation.

The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author. Download presentation by click this link. If you encounter any issues during the download, it is possible that the publisher has removed the file from their server.

E N D

Presentation Transcript


  1. Data Governance and Security Student Finance Human Resources Master Data Healthcare Healthcare PCI 4/25/2023 4/26/2026

  2. Data Governance and Security Agenda What is Data Governance ECU s Data Governance Evolution Primary Goals Structure Access Authority Data Classifications User Access Controls Resource Links

  3. Data Governance and Security What is Data Governance Data Governance is a collection of persons in specific roles who oversee the establishment, use and support of processes, policies, and standards used to ensure: The effective utilization of institutional data. The quality and security of institutional data. The realization of University goals.

  4. Data Governance and Security ECU s Data Governance Evolution 2011 - Due to challenges with the Baldridge Application and SACS, ECU s executive council charged ECU to create a Knowledge Management core project team responsible for addressing data quality issues 2012 - ECU begins development of a data governance regulation and identified resources needed to implement a data governance program 2016 - Data Governance Regulation approved and resources identified for the support of a data governance program

  5. Data Governance and Security Primary Goals Ensuring Data Security and Reliability Utilizing Institutional Data Fully, Effectively and Efficiently Establishing Data Standards and Standardization Processes Managing Data Access and Data Classification

  6. Data Governance and Security Structure

  7. Data Governance and Security Structure - Data Steward Committee Committee Role Data Domain Data Steward Title Contact Information Advancement Chuck Boulineau Director, Advancement Services boulineauc@ecu.edu Athletics Mike Hanley Senior Associate Athletics Director, Student Services (Chair, DSC) hanleym@ecu.edu Audit Data Wayne Poole Chief Audit Officer poolew@ecu.edu Faculty Sherry Lillington Director, AA Personnel & Resource lillingtons@ecu.edu Finance Carole Wilson Director, Systems Coordination wilsoncaro17@ecu.edu Chair Elect Financial Aid Julie Poorman Director, Financial Aid poormanj@ecu.edu Healthcare Michelle DeVille Chief Institutional Integrity Officer (Chair-Elect DSC) devillem18@ecu.edu Chair Human Resources Amanda Pantelidis Zach Loch Bryan Jenkins Director, Human Resources Information Systems pantelidisa@ecu.edu ITCS Legal Chief Information Officer Director of External Affairs and Constituent Relations lochz@ecu.edu jenkinsbr21@ecu.edu Library (AA) Library (HS) Jan Lewis Beth Ketterman Director, Joyner Library Director, Health Sciences Library lewisja@ecu.edu kettermane@ecu.edu Office of the Chancellor PCI Compliance Bryan Jenkins Director of External Affairs and Constituent Relations jenkinsbr21@ecu.edu Robin Mayo Business Systems Analyst mayoro@ecu.edu Research Becky Welch Assistant VC for Research Administration and Compliance welchb18@ecu.edu Student Affairs Jeremy Tuchmayer Angela Anderson Associate Vice Chancellor, Chief Academic Success Officer and University Registrar Senior Assoc Director for Assessment, Research, and Planning tuchmayerj14@ecu.edu Student Information andersona@ecu.edu

  8. Data Governance and Security Structure - Data Governance Steering Committee Committee Role Member Title Email Lee Cline Manager, Enterprise Data Management Support Services clineg18@ecu.edu Beverly King Director Institutional Planning Assessment & Research kingb14@ecu.edu Mike Hanley Senior Associate Athletics Director, Student Services (Chair, DSC) hanleym@ecu.edu Greg Harris Associate Director, Institutional Planning Assessment & Research harrisgr18@ecu.edu Zach Loch Chief Information Officer lochz@ecu.edu Scotty Stroup Director, Enterprise Data Services stroups@ecu.edu Chair Mark Webster Chief Information Security Officer (CISO) websterm19@ecu.edu Dr. Ray Hylock Faculty Representative Associate Professor and Chair, Health Services and Information Management, College of Allied Health Sciences Student Representative hylockr@ecu.edu Gigi Berrios berriosg21@students.ecu.edu

  9. Data Governance and Security Access Authority Data Stewards or their designees are the only personnel that are allowed to grant access to institutional data IT or coworkers should not give access to Institutional Data without proper authorization from the data owner

  10. Data Governance and Security Data Classifications Classify enterprise data and information into simple confidentiality levels Data must be classified based on the highest level of confidentiality ECU s classifications Level 1 Public Level 2 Internal Level 3 Confidential/Sensitive Level 4 Highly Restricted

  11. Data Governance and Security User Access Controls Information systems hosting Level 3 and level 4 must have the minimum controls below in place: A documented process for users to request access A weekly review of terminated users and removal of those users from the system A weekly review of transferred users and removal of those users that changed duties and no longer need access Bi-annual review of current user access and attestation that the review was conducted

  12. Data Governance and Security Links Data Governance website https://datagovernance.ecu.edu Data Governance Regulation https://www.ecu.edu/prr/01/15/06 Data Governance Communication Plan https://datagovernance.ecu.edu/dsc- communication-plan/ DSC Processes and Procedures https://datagovernance.ecu.edu/data-stewardship- committee-procedures

  13. Data Governance and Security Questions?

Related


More Related Content

giItT1WQy@!-/#giItT1WQy@!-/#giItT1WQy@!-/#