Perceptive Content: Student Security Audit Process

Quick Search

Periodically through the year, OIT will perform a security audit of Perceptive Content designed to remove unneeded and expired access to the system. This process is performed via six steps:

  1. Steps
    1. Student Access Expiration Notices
    2. Student Access Remova

Steps

  1. Student Access Expiration Notices
    • Timeline: Approximately two weeks prior to the end of fall and spring semesters
       
    • Due to a limitation with student employment data, OIT does not have a record of student employee reporting structures. As a result, OIT will email students roughly two weeks with a notice of access removal.
       
    • The email instructs student employees to direct their manager to submit a Help Desk ticket requesting an access extension. For the purposes of satisfying audit requirements, every extension request must be documented in a TeamDynamix ticket. The notice also includes a list of the students' current groups to facilitate submitting a new security request should an extension not be filed properly before the deadline.

Sample email regarding student access removal

 

  1. Student Access Removal
    • Timeline: After stated deadline in student access removal notices
       
    • On the deadline, a process removes all group memberships across all application tiers from student employees that do not have an active access extension filed. All access removed in this manner is documented in a ticket for future reference and auditing purposes.