Faculty and Staff PIMI Responsibilities
FACULTY AND STAFF PIMI RESPONSIBILITIES
All RIT faculty and staff are expected to follow the Private Information Management Initiative (PIMI) remediation requirements below:
- Review paper files for Private Information.
- Scan RIT computers with Spirion (Formerly Identity Finder) for Private nformation (if Spirion is not available, scanning with an alternative tool or reviewing the computer for Private Information is recommended). Information Technology Services (ITS) will initiate scans of most computers monthly.
- Scan or review personal/home computers, portable devices, and media for Private Information (e.g., Social Security Number, Bank Account Number, Credit Card Number or Drivers License).
- Inform your manager in writing if there is a compelling business reason for retaining Private Information. Promptly secure the information in compliance with the RIT Information Access and Protection Standard.
- Notify and receive approval from your PIMI Information Steward/Management Representative.
- If you're unable to remediate the information found within Spirion, please redact (securely erase or securely destroy) unnecessary Private Information.
- Complete the Digital Self Defense 103 Information Handling course. (Center for Professional Development, online) *Note: this course is designed for RIT employees who handle RIT Private or Confidential information.
ADDITIONAL REQUIREMENTS FOR DEPARTMENT MANAGERS
- Ensure faculty and staff have reviewed paper files and scanned or reviewed electronic files.
- Ensure faculty and staff have redacted, securely erased or securely destroyed unnecessary Private Information (e.g. Social Security Number, Bank Account Number, Credit Card Number or Drivers License).
- Receive authorization to retain any Private Information from the Divisional VP/Information Steward/Management Representative.
- Secure the remaining Private Information in compliance with the RIT Information Access and Protection Standard.
Links:
- Data Loss Prevention Overview
- Faculty and Staff Responsibilities
- Private Information Handling Quick Reference
- Private Information Decision Tree
- Private Information Management FAQ
- Spirion (Formerly Identity Finder) End User Documentation
- Technical and Management Representatives