Compliance

The OIT Division of Information Protection and Security is committed to providing department personnel with clear and accessible information on how to comply with federal and state legislation. University departments are responsible for the security, confidentiality and integrity of data covered by legislation that if unsecured, could result in unauthorized disclosure, misuse, alteration, destruction or other compromise.

Digital Millennium Copyright Act 
Rutgers complies with the Digital Millennium Copyright Act.

Gramm-Leach-Bliley Act (GLBA)
The Gramm-Leach-Bliley Act (GLBA), includes provisions to protect consumers personal financial information held by financial institutions. Under GLBA it is the obligation of the University to establish appropriate standards for areas under its jurisdiction relating to administrative, technical, and physical safeguards.

Health Insurance Portability and Accountability Act (HIPAA) 
If you have medical information and you bill electronically you are subject to the HIPAA requirements.

New Jersey Identity Theft Prevention Act 
The New Jersey Identity Theft Prevention Act mandates notification in the event of a security breach.

Payment Card Industry (PCI) 
The Payment Card Industry (PCI) requires that the university has a contractual obligation to comply with PCI Security Standards. Departments using credit cards for payment must adhere to these requirements.

Student and Exchange Visitor Information System (SEVIS)

Protection of Personal Information