Gramm-Leach-Bliley Act (GLBA)
The Gramm-Leach-Bliley Act (GLBA), includes provisions to protect consumers personal financial information held by financial institutions. Under GLBA it is the obligation of the University to establish appropriate standards for areas under its jurisdiction relating to administrative, technical, and physical safeguards.
RU Compliance Policy In Support of GLBA
Rutgers University GLBA Policy: http://policies.rutgers.edu/PDF/Section50/50.3.11-current.pdf
GLBA Security Program-Annual Report
The designated departmental GLBA contact will report the status of the Information Security Program for covered data accessible in that unit to the Coordinator at least annually. To this end IP&S presented this questionaire for the 2007/2008 annual report.
GLBA Security Program-Planning
Planning includes: 1. An inventory (Hardware, Software, Services, Data and Data flow) 2. Risk assessment
GLBA Security Program-Training
Annual training is required of all staff who have access to GLBA covered data.
GLBA Security Program-Prevention
GLBA Security Program-Detection
GLBA requires that attempts to obtain access to covered data be recorded.
GLBA Security Program-Reaction/Recovery
GLBA Security Program-Reporting
GLBA Annual Report (Expanded)
Here are sub-topics to be considered when creating your annual GLBA report.