1930.023 IT Security: System and Application Management Policy
The University is subject to federal and state laws that require that it have in place administrative and technical standards to safeguard the confidentiality, integrity and availability of the data it creates and maintains. The University must protect computer systems on the FIU Network from being compromised by the introduction of viruses, worms, or other malicious programs. Computers are most often made vulnerable to compromise as the result of: (1) not having effective endpoint protection software installed, and/or (2) not applying necessary system updates (software and hardware revisions and patches). Not only could neglect in this area affect an individual user, but also, as a result of a system being compromised, it could affect other users who use FIU Information Technology Resources (ITR), and networked users external to the University.

