Information Technology and Information Security
Governs responsible use of campus technology, including computer access, email conduct, and hardware lifecycle management
Policies in this Category
-
Acceptable Use Policy for Roanoke College IT Resources
Effective October 1, 2025, this policy outlines responsible, ethical, and legal use of Roanoke College’s IT resources by students, faculty, staff, and guests. It covers general conduct, email and messaging, internet access, file sharing, and social media, with specific prohibitions against harassment, unauthorized data access, and illegal activities. Violations may result in disciplinary action, and the College reserves the right to monitor IT systems to ensure compliance.
-
Email Appropriate User Policy
Effective May 1, 2025, this policy defines Roanoke College’s standards for secure and responsible use of College email accounts, which serve as the official communication channel for faculty, staff, and students. It prohibits the use of external email services for College business, outlines restrictions on forwarding, personal use, and data transmission, and mandates compliance with privacy regulations such as FERPA, HIPAA, and PCI. Violations, including misuse or illegal activity, may result in disciplinary action and loss of access.
-
Computer Purchasing Policy
Effective May 1, 2025, this policy outlines Roanoke College’s procedures for purchasing and replacing faculty and staff workstations, including a standard six-year replacement cycle and centralized procurement through IT. It details funding responsibilities, equipment standards, and disposal protocols, emphasizing security compliance and responsible asset management. All purchases outside the normal cycle must be submitted via the CAP workflow and approved by IT.
-
Data Security Policy
Effective October 1, 2025, this policy outlines Roanoke College’s standards for safeguarding institutional data from unauthorized access, use, or disclosure. It defines data classifications (Public, Internal, Confidential), sets expectations for secure handling, access controls, and transmission protocols, and mandates compliance with legal regulations such as FERPA, HIPAA, and PCI DSS. All users are responsible for reporting incidents and using only IT-approved systems and devices.
-
Software Adoption Policy
Effective October 1, 2025, this policy outlines Roanoke College’s structured process for evaluating, selecting, and implementing software applications, including free and hosted solutions. It emphasizes strategic alignment with campus priorities, stakeholder involvement, technical review by IT, and project management coordination to ensure secure integration and effective use. Final decisions rest with the functional area using the software, following demos, vendor engagement, and training planning.
-
Computer Accounts and Email Policy
Effective October 1, 2025, this policy defines Roanoke College’s procedures for creating, retaining, and deleting computer and email accounts across various user groups including faculty, staff, students, alumni, retirees, contractors, volunteers, and campus residents. It ensures secure and compliant access to institutional systems by aligning account lifecycle management with HR records and operational needs. Specific timelines for account deactivation and deletion vary by role and affiliation status.