Welcome to the newly designed Security site. Some content has moved: How-to guides and technical documentation have moved to IT Knowledge Hub (KB), and services are in the IT ServiceHub.
Campus Information Security Program Elements mapped to the NIST CSF Framework
An overview of Information Security Risk Governance at UC Berkeley
Information security risk decision authority and escalation
Requirements for ISMP review and acceptance
Risk Treatment Plan Approach
UC Berkeley uses a Risk Treatment Plan approach for managing information security risk, as described in Section III and IX of the MSSEI. The MSSEI constitutes UC Berkeley’s Risk Treatment Plan.
Additional Campus Resources Related to IS-3 Implementation