Summary
Encryption is a critical security control at UofL, protecting the confidentiality and integrity of university data in transit and at rest. ITS Enterprise Security monitors and enforces encryption standards for devices, applications and network communications to safeguard sensitive information and comply with regulatory requirements.
Body
Before You Begin
Ensure you have a valid UofL login credentials.
Review UofL Information Security Policies and Procedures for encryption requirements.
Identify the systems, devices or applications that require encryption.
Instructions
Identify Data and Systems Requiring Encryption
- Review university policies to determine if your data is regulated (e.g., HIPAA, FERPA, PCI, GLBA).
- Identify devices, applications and network connections that handle sensitive or confidential data.
Implement Encryption
- Use ITS-approved encryption tools for devices, storage, and communications (e.g., BitLocker, FileVault, TLS certificates).
- For web applications, request a free TLS certificate from ITS to encrypt data in transit.
- Ensure all login pages and sensitive forms use HTTPS.
Verify Encryption
- Check that your device or application displays encryption status (e.g., lock icon in browser, BitLocker enabled).
- Use ITS vulnerability management services to scan for encryption compliance.
Maintain and Update Encryption
- Renew TLS certificates annually and respond to renewal notifications.
- Apply software updates to maintain encryption standards and patch vulnerabilities.
- Remove or update encryption keys when decommissioning systems or changing access.
Report Issues or Request Help
- If you suspect a security incident or data exposure, contact secureit@louisville.edu immediately.
- For encryption setup or troubleshooting, submit a ticket to ITS or consult the ITS HelpDesk.
Outcome
After completing these steps, your data and systems will be protected by encryption, reducing the risk of unauthorized access and ensuring compliance with university and regulatory standards.
Further Readings
Need Additional Help
• ITS HelpDesk
• Submit a Ticket: Use the self-service portal to log requests.
• In-Person Support: Visit the iTechConnect during business hours for individual help. Located on the lower level of the Miller Information Technology Center (MITC) - Belknap Campus.