Your Department
 

Technology Security Reviews

Information Technology Security Reviews

The IT Security Office will regularly scan for vulnerabilities on Virginia Tech's network to help identify potential problems that could result in data disclosures, illegal usage, weak systems that are attractive for attacks, etc.

Security reviews are also conducted on a regular basis for areas that are required by policy (or law) to verify a secure operating environment. For example, requirements from the Payment Card Industry (PCI) for systems that collect credit card data, HIPPA in terms of health related information, and others.

In all these cases, the IT Security Office will follow-up by contacting and working with areas to eliminate problems that may be discovered.

Areas may request security reviews be done in a specific area by contacting Brad Tilley at: brad.tilley@vt.edu

To better understand the steps take during a security review please refer to the "security review process document".

For a few examples of some high-level topics covered by the reviews please click here.

Security Review Documents and Presentations

VASCAN Security Presentation

Incident Response Hardware Kit List

Payment Card Industry Documents

PCI pdf Standard v1.1

PCI pdf Standard v1.0

VT PCI Readme

VT PCI Secure

VT PCI Offline

VT PCI Redirect

Related Links

Acceptable Use of Information Systems at VT

Computing.vt.edu
The one-stop computing resource site for VT

Antivirus.vt.edu
Virus protection software and downloads

Answers.vt.edu
Knowledge base with answers to common computing questions

VA SCAN
Virginias Alliance for Secure Computing site

EDUCAUSE
Computer and network security web site

Virginia Tech Policies/Compliance

Contact Information

Report a Violation
Report all violations to abuse@vt.edu