Policy Category | Policy Owner | Version Effective Date | Review Cycle | Policy Contact |
X. Information Governance, Security & Technology | Chief Transformation Officer | October 31, 2023 | Every 2 years | infosec@umgc.edu |
Purpose
The purpose of this policy is to establish information security standards for the configuration management processes relevant to University of Maryland Global Campus ("UMGC" or "University") Information Technology Resources.
Scope and Applicability
This policy applies to all University Information Systems and Information Technology Resources. Information System Stewards and Technical System Leads are responsible for adhering to this policy.
Definitions
Defined terms are capitalized throughout this Policy and can be found in the Information Governance Glossary.
Configuration Management
Information System Stewards or Technical System Leads should adhere to this policy when configuring and managing University Information Technology Resources to prevent unauthorized changes from being made.
Exceptions
Exceptions to this policy should be submitted to Information Security for review and approval. If an exception is requested a compensating control or safeguard should be documented and approved.