Mobile Device Encryption Project
- General Information
- Laptop User Information
- LAN Administrators Information
- Related Policies and Initiatives
Background Information
As everyone is aware, the security of sensitive electronic information is an issue of critical significance for all academic institutions. The loss of sensitive information continues to occur at universities across the country with substantial consequences for both institutions and individuals. One of the common sources of data loss is lost or stolen mobile devices including laptop computers, SmartPhones, PDA’s, and external storage devices.
To help protect the University against the loss of sensitive information, IT Services has been directed to encrypt all University-owned mobile devices. IT Services recently completed an internal pilot project to encrypt its laptops and is now beginning the process of encrypting all eligible laptops across campus.
Product Information
The State of Colorado established a contract for the high-performance encryption solution SafeGuard Enterprise. All licenses for the initial deployment will be provided at no charge to the departments and laptops will be encrypted either by trained departmental LAN Administrators or by trained IT Services technicians.
Product
Utimaco SafeGuard Enterprise (SGN)
- Full-disk encryption for laptops
- Centrally–managed
- Uses Challenge/Response for password recovery
Deployment and Management of Encryption Software
IT Services will be the sole provider of this solution on university-owned mobile assets. This exclusivity is necessary based on these factors:
Standards
A standard solution needs to be used across campus to provide both scalability and supportability over the long-term.
Encryption Keys and Data Survivability
Centrally-maintained encryption keys will provide backup, facilitate data recovery, and allow for the provision of 24x7 password support.
Auditability and Accountability
A standard solution provides an audit and accountability framework.
Costs
A standard solution represents the lowest total cost of ownership (TCO) for the university
Project Information
Eligible Devices
- University-owned devices only
- Laptops
- Fairly wide variety of models ≤ 4 years old
- Windows XP, Vista
(Mac product available soon) - UCDENVER domain membership / LANdesk
- PDA’s & SmartPhones
- Fairly wide variety of models - TBD
- Windows Mobile 5, 6, Palm OS 3, 4, 5, others TBD
- Blackberry’s excluded
Project Timeline
The timeline for the initial deployment for laptops extends from the current date through the end of the fiscal year. In late spring, we are hoping to begin the encryption of additional mobile devices, specifically PDAs and SmartPhone-type devices.
Click image below to enlarge the timeline.
Project Contact Information
If you have questions about this project please contact the IT Services Help Desk at 303-315-4357. If you have questions or concerns about data security or policies relating to data security, please call the Office of Regulatory Compliance at 303-724-1010.
- Jeff Beel
- 303-315-2888
- Jeffrey.Beel@ucdenver.edu
- Eric Campagna
- 303-315-2886
- Eric.Campagna@ucdenver.edu
- Joe Kornblith
- 303-724-1431
- Joe.Kornblith@ucdenver.edu
- IT Services Helpdesk
- 303-724-4357
