| |
XII. Administrative/Faculty Computer Use Policy
The use of The Juilliard School’s information technology systems, including its computer systems, networks and the data contained therein, is governed by a set of rules contained in the Computer Use Policy. All users are expected to familiarize themselves with these policies and sign a memorandum of understanding stating such.
A. Institutional Privileges
System administrators may monitor and log usage data and may review this data for evidence of violation; when necessary, they may monitor all the activities and inspect the files of specific users on their computers and networks. System administrators may suspend privileges of an individual user for reasons relating to physical or emotional safety and well being, or for reasons relating to the safety and well being of other members of the Juilliard community or Juilliard property. Juilliard retains ownership of all administrative information created by its employees. Departments that operate their own computers or networks may add, with the approval of the appropriate Senior Staff member, individual guidelines that supplement, but do not relax, this policy.
B. Institutional Responsibilities
Juilliard does not and will not act as a censor of information but will investigate properly identified allegations arising from the Juilliard community and will comply with applicable state and federal laws (see appendix). Supervisors are responsible for providing copies of this policy to consultants, temporary staff and other special employees and assisting them to understand the policy. Juilliard will fully comply with the authorities to provide any information necessary for the litigation process and will report criminal offenses to the appropriate authorities.
C. Security
- Physical
Access to the computer operations area is restricted to those responsible for operation and maintenance. No individuals are allowed in Juilliard’s IT or Library server rooms unless they are under close and immediate supervision of a IT staff member or authorized Library staff member. Tampering with equipment is prohibited.
- Network
The owner of a private computer connected to Juilliard’s network is responsible for the behavior of its users and for all network traffic to and from that computer. A private computer is defined as a non-Juilliard owned computing device, including any type of PC (personal computer) or a PDA (personal digital assistant). Private computers must not be used to provide network access to individuals who do not have access through official Juilliard systems or as a router to other networks or to non-Juilliard affiliated systems. Private computers must not use the Juilliard network for commercial gain or profit.
Users may not alter the Juilliard network infrastructure (including ResNet) by installing any unauthorized networking equipment including (but not limited to) hubs, switches, routers, or wireless access points of any kind without the expressed permission of the I.T. Department. It is also a violation to install any devices or programs on Juilliard networked or any other PC or computing device connected to the Juilliard network (including ResNet) that are designed to alter, reshape, affect, monitor, or intercept network traffic.
The Juilliard School reserves the right to terminate or limit the network connectivity of any user whose online activities are deemed detrimental to the health of the network.
- Administrative Data
Access to administrative systems is based on the need to use specific data, as defined by job duties, and will be annually re-evaluated by the supervisor. Employees are to safeguard the integrity, accuracy, and confidentiality of information as part of the condition of employment. Any person-authorized access to information of any type is not to remove any official record, report or copy from the office where it is kept except in performance of job responsibilities. Any person-authorized access to information is not to make or permit unauthorized use of that information. Employees who attempt unauthorized access to administrative computer access IDs are subject to disciplinary measures. Improper access to or unauthorized disclosure of confidential information may be a violation of federal law. Users must hold confidential any administrative data after termination of employment with Juilliard.
Monitors should be positioned to prevent unauthorized reading of sensitive information. Users are also strongly advised to lock their workstations when leaving them even for only a few minutes. Workstations can be locked by hitting Ctrl + Alt +Delete keys. They are unlocked by providing the network access password. Storage or dissemination of non-electronic forms of administrative information must safeguard against unauthorized viewing as well as loss due to accidents or acts of nature. Good judgment should be used in the storage and disposal of administrative data. Floppy disks, other electronic storage media and paper copies should be stored in secure places; when it is necessary to discard information, data should be removed from disks and paper copies should be shredded. Department heads are responsible for implementing procedures to maintain access security and for educating their employees regarding these procedures.
All Juilliard-related work files should be stored in the “My Documents” folder. This folder is located on the network, and is backed up nightly to safeguard against loss of data. Employees are encouraged NOT to store important Juilliard files on the computer itself (the ”C:” drive, or internal hard drive). Personal files may be stored on the computer (the “C:” drive, or internal hard drive). The IT Department is NOT responsible for the preservation or content of these files, and may remove any applications or files it deems in violation of this Computer Use Policy. Personal files, such as music (mp3), video, and high-resolution pictures, may NOT be stored in the “My Documents” folder or on a network share.
Students must provide identification to access their own data. Parents must provide written evidence that a student is their dependent to access the student’s data unless specific permission is given by the student (refer to FERPA guidelines). Individuals who are on leave of absence or whose employment has been terminated for reasons other than retirement with reemployment rights have the right of access to their records. Legal representatives of deceased faculty and staff members shall have the right of access for five years after the death of the individual.
- User Accountability
Any attempts to secure a higher level of privileges on networked systems are punishable disciplinary offenses. Gaining unauthorized access to a system or area of a system using knowledge of access abilities gained during a previous position at Juilliard is prohibited. Under no circumstances may individuals give others access to any system they do not administer. Gaining access to non-public computers, network facilities, information services and resources is a violation of this policy.
Any user who finds a possible security lapse on a Juilliard system is obliged to immediately report it to the system administrator. Loopholes in system security or knowledge of a special password are not to be used to damage systems or obtain unauthorized services. Users are expected not to develop programs or use mechanisms to alter or avoid accounting, or to employ means by which the facilities and systems are used anonymously or by means of an alias. Use of systems and/or networks to connect to other systems, in evasion of the security limitations of the remote system/network, is prohibited. Users must not physically or electronically attach any foreign device without specific authorization. Rules prohibiting theft or vandalism apply to authorization codes, long distance telephone services, television signals and service information, as well as to physical equipment.
- Integrity of Use
Any person authorized to access information is not to knowingly include in any record or report a false, inaccurate, or misleading entry. The creation, alteration, or deletion of any electronic information contained in or posted to any Juilliard computer or affiliated network will be considered forgery. Knowingly accepting or using information that has been obtained by illegal means is a violation of others’ rights and is subject to disciplinary action. The use of Juilliard computing facilities to effect or receive unauthorized electronic transfer of funds is prohibited.
- Copyright
Users must abide by all applicable copyright laws and licenses. Users are responsible to use available mechanisms and procedures to protect their own programs, programs in software libraries, and data. Users are also responsible for assisting in the protection of the systems they use. Employees are not allowed to copy programs, take them home, distribute, or sell them to others. Juilliard reserves the right to refuse to defend any faculty, student, or staff member named in a lawsuit arising out of alleged copyright infringement activity, and to refuse to pay any damages awarded by a court of law against such person.
- Network
Security for access to the network and to files and applications on a server will be implemented via a user ID and password.
- Accounts
Computer accounts are owned by Juilliard and are to be used for Juilliard-related activities only. Accounts remain in effect as long as the user maintains an official relationship with Juilliard. Any employee who does not access an administrative system in a one-year time period will have access removed and must be reauthorized for access. Access managers will immediately delete the access of employees who have been terminated by Juilliard. Employees who resign may keep their Juilliard email account for up to two months after they leave Juilliard. All other access for these employees will be terminated. Providing false or misleading information for the purpose of obtaining access to computing facilities is prohibited and may be regarded as an offense to the disciplinary code and treated accordingly by Juilliard.
Employees are accountable for the activities on their workstation. Sharing of IDs is prohibited. Workstations must be logged off to a point that requires a new logon whenever employees leave their work area. Access to Juilliard Computing resources requires a valid username and password combination. The system locks out a user after 8 unsuccessful attempts to log on. Locked out users can only be unlocked with IT Department intervention.
Administrative accounts in the windows domain are subject to a password complexity requirement enforced by Active Directory group policy. Passwords must contain a minimum of 6 characters, and characters from 3 of the following 4 character groups must be present: uppercase letters, lowercase letters, numbers and alphanumeric symbols. The chosen passwords may not contain the accounts username, and the last 6 passwords set by a user are remembered and blocked from re-use. Passwords must be changed every 180 days.
Colleague users log into the Colleague system through Unix. Passwords expire every 90 days. Passwords must be at least 6 characters but there is no maximum limit and the first 6 characters of the password must contain at least two alphabetic and one numeric character. Only the first 8 characters are encrypted.
No user ID or administrative system may be used for unethical, illegal, or criminal purposes. Accessing files or directories of other users is not permitted without consent of the other user. Remotely logging onto or otherwise using any workstations or computers not designated explicitly for public logons is not permitted without consent from the owner. Users must not conceal or cover up violations by anyone.
D. INDIVIDUAL PRIVILEGES
- Privacy
Users must respect the privacy and personal rights of others. Computer programs, email, voice mail and electronic files can only be accessed by authorized personnel for compelling business or security reasons and only with the approval of the President. Information that users obtain through special privileges is private. User privacy cannot be extended under conditions such as a program causing disruption to the network or other shared resources or the suspected violation of Juilliard’s guidelines of behavior or state or federal law. System administrators may view the contents of email due to serious addressing errors or as a result of maintaining the email system.
- Freedom of Expression
The constitutional right to freedom of speech applies no matter what medium is used. System administrators will not remove any information from individual accounts unless the information involves illegality, endangers computing resources, is inconsistent with the mission of the institution or involves obscene, bigoted, or abusive language; users who wish to appeal such removal of information may do so through the Office of Legal Affairs.
- Responsible Use
While some incidental personal use of Juilliard computing resources may be allowed, it is not appropriate for employees to convert Juilliard resources to private endeavors. No administrative computing system may be used for improper purposes, such as computer games or the playing of practical jokes. Users should, where possible, limit the wastage of paper by not printing unnecessary listings or multiple copies of files. Users must check thoroughly for all errors and corrections before printing documents. Users must print only academic, school life or job-related work.
Changing another person’s password is considered harassment. Chain letters and other forms of mass mailings are not allowed. The messaging services should not be used to send rude, obscene, harassing, or illegal materials. Potentially offensive material is not to be forwarded to others without their consent. No one should look at, copy, alter, or destroy anyone else’s personal files without explicit permission, unless authorized to do so by law or regulation. Downloading onto your desktop any inappropriate images, photos, sounds, email attachments or messages is prohibited; refrain from transmitting to others inappropriate images, sounds, or messages which might reasonably be considered harassing. Users must not use any communications services to intimidate, insult, or harass others. Users must not use mail or messaging services for broadcasting unsolicited messages.
- Discipline
Violations of this policy will be governed under the disciplinary procedures as stated in the faculty or staff handbook, whichever is applicable.
E. LAB USAGE POLICY
By entering this lab, you agree to the following:
- Only current Juilliard faculty, staff, interns and students are allowed to use machines in the lab. A valid Juilliard ID is required to make reservations; while the ID number is used to make a reservation, the actual ID is required for entry to lab. A reservation may be made for a total of 90 minutes per day, divisible into no more than two separate slots.
- You are not permitted to install any software onto Juilliard machines.
- You will not bring any food or beverages into the lab. You will be liable for any damage that occurs.
- Under a networked Print Accounting System, each student is allocated $100 worth of printing privilege (1,000 pages). When this is used up, they can replenish their printing accounts at a rate of $0.10 per page.
- The Student Computer Lab is open from 2 PM till 5 PM on Sundays.
- The Juilliard School will not be held liable for any material you send or receive over the Internet.
- You agree not to use the lab for illegal purposes or for the transmission of material that is unlawful, harassing, libelous, invasive of another’s privacy, abusive, threatening, harmful, vulgar, obscene, tortuous, or otherwise objectionable, or that infringes or may infringe the intellectual property or other rights of another.
- We reserve the right to restrict computer usage if it is deemed inappropriate for our educational environment.
- You agree that The Juilliard School may in its sole discretion terminate your account if it believes you have in any way violated the Terms of Service.
F. LILA ACHESON WALLACE LIBRARY COMPUTER USE POLICY
The Library computer network provides access to JUILCAT, The Juilliard School On-line Library Catalog, as well as to a number of electronic resources. These computers are designed to be used for reference and research purposes only. Three computers at the far end of the library reference room have been designated for web browsing. There is a twenty (20) minute time limit on use of these computers. Use of other computers in the library for web browsing or e-mail is forbidden.
G. RELEVANT FEDERAL LAWS
- Communications Decency (47 USCS § 223)
- Computer Software Rental Amendment (17 USCS § 109)
- Copyright Act (17 USCS)
- Electronic Communications Privacy:
- Destruction or Removal of Property to Prevent Seizure (18 USCS § 2232)
- Disclosure of Contents (18 USCS § 2702)
- General Prohibition on Pen Register and Trap and Trace Device Use; Exception (18 USCS § 3121)
- Interception and Disclosure of Wire, Oral or Electronic Communications Prohibited (18 USCS § 2511)
- Unlawful Access to Stored Communications (18 USCS § 2701)
- Family Educational and Privacy Rights—FERPA (20 USCS § 1232g)
- Fraud and Related Activity in Connection with Computers (18 USCS § 1030)
- Search or Seizure of Work Product Materials (42 USCS § 2000aa)
|
|
|