
Principle: Secure
Statement:
Florida State University ensures technical architecture that provides appropriate levels of confidentiality, integrity and availability of information.
Rationale:
Inappropriate or unauthorized use of university data or capabilities includes the possibility of loss, injury or other adverse or unwelcome circumstance. In response, the university uses a risk assessment-based approach to information security to achieve an appropriate, careful balance between access necessary to achieve university goals and the privacy and protection of personal information, intellectual property and other data. Security policies should be fully embraced, and resulting guidelines, standards and best practices should be strategically implemented throughout the organization’s systems, processes and daily operations. Solutions should emphasize practicality and usability augmented through documentation and training to ensure continued compliance. Security should be contemplated across the university's entire technical architecture, and its implementation reassessed throughout the lifecycles of its constituent elements to ensure additional risks have not been introduced through subsequent changes.
