

Any PHI or PCI data that must be maintained in printed form should be properly secured and should be securely transferred to the workplace for proper storage or destruction as soon as practical. Except as necessary, an employee should not print PHI, nor PCI data when working remotely. The employee is responsible for protecting and securing regulated information such as FERPA, Payment Card Industry data (PCI) and HIPAA protected health information (PHI), as well as the equipment used to access the information.

Some information (electronic and hard copy) used in work may be deemed confidential or highly confidential by the university. Maintenance, and any other measures appropriate for the job and the environment. The l evel as they would when working on-site in order to protect such information from unauthorized disclosure, loss or damage. Steps include the use of locked file cabinets and desks, regular password Security safeguards and document retention policies should be applied at Consistent with the organization’s expectations of information securityįor employees working at the office, remote work employees will be expected to ensure the protection of proprietary university information accessible from their home office.

Remote work employees continue to be bound by University of Colorado Denver | Anschutz Medical Campus information security polices while working at an alternative worksite. Information Security Policies for Remote and Hybrid Work
