UNIVERSITY of GLASGOW

IT Services

Central Systems

Data is stored on secure machines maintained in secure physical environments.

The key business systems of the University are designed and managed with a high level of security in mind. 

Access to these systems is managed so that only those who need specific information as part of their work can get access to it.
Such access is provided on an individual basis and must not be shared with others.

  • The owners of data on central systems are responsible for defining and authorising which particular University groups (or individuals) get access to the data and what they are permitted to do with it.
  • A risk assessment and measures to mitigate risk should be defined and enforced.
  • Exporting data  from these systems should be approved by data owners and the required risk assesment and mitigation measures are strictly adhered to.  

Confidential  data should not be held on local disk storage (e.g. C: drive) of a desktop machine.