Data Security Policy

Description:

Effective October 1, 2025, this policy outlines Roanoke College’s standards for safeguarding institutional data from unauthorized access, use, or disclosure. It defines data classifications (Public, Internal, Confidential), sets expectations for secure handling, access controls, and transmission protocols, and mandates compliance with legal regulations such as FERPA, HIPAA, and PCI DSS. All users are responsible for reporting incidents and using only IT-approved systems and devices.

Applies To: Staff, Faculty, Employees

Security Status: Public


Download PDF