GRC Resources

Internal governance documents, compliance frameworks, and risk management resources for USU leadership, data stewards, and security staff. Access is role-based and requires authentication.

Warning
Restricted Access — Internal Use Only

The resources below contain sensitive institutional information governed by USU Policy 5200 and USHE R345. They are available to USU personnel with governance, compliance, or data stewardship responsibilities. Access requires USU single sign-on and is subject to conditional access policies. If you believe you should have access, contact the InfoSec Team.

Governance Documents & Tools

File Shield

Information Security Plan

USU’s comprehensive information security program document, satisfying USHE R345 requirements and crosswalked to NIST CSF 2.0 and CIS Controls v8.1. Covers roles, responsibilities, controls, compliance monitoring, and incident response.

Calendar Updated annually · Current: 2026
Tag USHE R345 · NIST CSF 2.0 · CIS v8.1 · GLBA
Folder Tree

Data Governance Directory

Interactive directory of USU data governance roles, stewardship assignments, and contact information across 11 governance domains. Includes an interactive mindmap of data stewardship relationships and policy cross-references.

Calendar Maintained continuously
Tag USU Policy 5200 · USHE R345 · GLBA · FERPA · HIPAA
Chart Line

Cybersecurity Framework Portal

USU’s internal NIST CSF 2.0 implementation tracker. Maps institutional controls to the Govern, Identify, Protect, Detect, Respond, and Recover functions. Tracks maturity, gaps, and remediation progress across the security program.

Calendar Updated quarterly
Tag NIST CSF 2.0 · CIS Controls v8.1 · USHE R345

Who Should Request Access

Landmark Executive Leadership
Shield Information Security Staff
Database Data Trustees & Stewards
Scale Office of General Counsel
Clipboard Check Compliance Officers
Magnifying Glass Internal Audit
Coins Finance & Controller’s Office
Graduation Cap Research Compliance