Press Enter to skip to the main content
Catalog Degrees Visit Apply
Give Blinn A-Z Calendars myBLINN
Blinn College For Mobile Devices
  • About
    • About
    • Administration
    • Accreditation
    • Affordability
    • Blinn A-Z
    • Board of Trustees
    • Campuses
    • Campus Maps
    • Catalog
    • Chancellor
    • Contact Blinn
    • Directory
    • Economic Impact
    • Employment Opportunities
    • Institutional Research and Effectiveness
    • Newsroom
  • Student Services
    • Student Services
    • Academic Advising
    • Activities Calendar
    • Business Office/Payment
    • Campus Safety
    • Career Services
    • Counseling Services
    • Disability Services
    • Financial Aid
    • Graduation Information
    • Housing and Residence Life (Brenham Campus)
    • Health Clinics
    • Meal Plans
    • Pregnancy and Parenting Services
    • Police and Emergency Management
    • Scholarships
    • Student Leadership/Activities
    • Title IX
    • Transcripts
    • Veteran Services
  • Future Students
    • Future Students
    • Academic Advising
    • Admissions
    • Application Steps
    • Contact a Recruiter
    • Course Registration
    • Housing and Residence Life
    • Immunization Information
    • Important Dates and Deadlines
    • International Students
    • New Student Registration
    • Placement Testing
    • Preview Day
    • Residency
    • Visit
  • Blinn College For Desktop Devices
  • Programs
    • Programs
    • Academic Affairs
    • Academic Calendar
    • Applied Technology and Workforce
    • Blinn Online
    • Catalog
    • Course Schedule
    • Dual Credit
    • Programs A-Z
    • Transfer Information
    • Instructional Leadership
  • Academic Resources
    • Academic Resources
    • Bookstore
    • Ecampus
    • Learning Center
    • Library
    • myBLINN
    • Testing Services
    • Tutoring Services
    • Writing Center
  • Community
    • Community
    • Alumni and Friends Association
    • Alumni Lettermen Association
    • Athletics
    • Blinn College Foundation
    • Box Office
    • Performing Arts Series
    • Rent Event Spaces
    • Small Business Development Center
    • Star of the Republic Museum
    • Visual and Performing Arts
  • Administrative Regulations Home
  • Recording of Class Lectures by Students
  • Quiet Hours and No Loitering
  • Purchasing
  • Procurement Card (P-Card)
  • Printing Guidelines
  • Payment of Medical Care Costs for Student Athletes
  • Parking and Traffic Regulations
  • Outside Employment
  • Excused Absences for Students Called To Active Military Service
  • Blinn Announcement (Mass Email) Guidelines
  • Building Access Key and Card Regulation
  • Institutional Scholarships/Pell Grant Award Coordination
  • Information Resources Acceptable Use, Security and Copyright Infringement
  • Incivility Protocol
  • Hiring Manager’s Guide For Faculty and Staff
  • Graduation
  • General Educational Development Test Administration
  • Flexible Work Schedules
  • Financial Support for Student Organizations
  • Final Course Grade Appeal
  • Faculty Workload, Teaching Load, and Office Hours
  • Faculty Professional Development
  • Unearned Tuition Assistance Funds
  • Facility Naming Rights
  • Externally Funded Grants and Contracts
  • Expulsion of Students from Class
  • Expressive Activities on Campus by Students and Employees
  • Employee Progressive Discipline
  • Employee Performance Evaluations
  • Assistance Animals - Emotional Support Animals
  • Cell Phone Allowances
  • Emergency Response Plan
  • Employee Book Voucher
  • Emergency Procedures Manual
  • Athletic Department Drug Testing
  • Drug and Alcohol Prevention Program (DAAPP)
  • Disposal of Property
  • Display Screen Guidelines
  • Discretionary Time
  • Direct Deposit, Payroll
  • Capital Asset Guidelines
  • Campus Security Authorities
  • Campus Carry
  • Information Systems and Services
  • Information Systems and Information Integrity
  • Information Systems and Communications Protection
  • Information Systems Supply Chain Risk Management
  • Information Systems Security Planning
  • Administrative Organization Plan - Councils and Committees
  • Information Systems Security Assessment and Authorization
  • Information Systems Risk Assessment
  • Prohibited Technologies and Covered Applications
  • Information Systems Media Protection
  • Information Systems Maintenance
  • Information Systems Security Program
  • Information Resources Acceptable Use, Security and Copyright Infringement
  • Information Systems Incident Response
  • Information Systems Identification and Authentication
  • Information Access Control
  • Photo Identification (ID) Card
  • Faculty Credentialing Procedures
  • Blinn Alert Notification
  • Student Code of Conduct
  • Approved Vendors for Apparel and Promotional Items
  • Alternate Work Location
  • Admission Requirements and Registration Eligibility
  • Web Accessibility
  • Board Policy/Administrative Regulations Development and Approval
  • Quarantine Leave for Certain Law Enforcement and EMS Personnel
  • Outdoor Intramural Spaces Guidelines
  • Name, Image, and Likeness
  • Indoor Tabling Guidelines
  • Hazing Prevention
  • Credit by Examination, Prior Learning Assessment, Awarding Credit
  • Additional Education During Term of Employment
  • Post Accident Drug and Alcohol Testing
  • Personal Leave
  • Prohibition Against Inducements, Commission and High-Pressure Recruitment Tactics for Service Members
  • Continuity of Operations Plans
  • Employee Complaints
  • Community Users of the Blinn College Library
  • College District Closures
  • College District Brand Guidelines
  • College Catalog Policy
  • Information Systems Physical and Environmental Protection
  • Information Systems Personnel Security
  • Information Systems Contingency Planning
  • Information Systems Configuration Management
  • Information Systems Awareness and Training
  • Information Systems Audit and Accountability
  • Awarding Incomplete Grades
  • Athletic Awards Criteria
  • Assessment of Instructional Programs and Courses
  • Board Policy CS - Information Systems
Administrative Regulations Home Recording of Class Lectures by Students Quiet Hours and No Loitering Purchasing Procurement Card (P-Card) Printing Guidelines Payment of Medical Care Costs for Student Athletes Parking and Traffic Regulations Outside Employment Excused Absences for Students Called To Active Military Service Blinn Announcement (Mass Email) Guidelines Building Access Key and Card Regulation Institutional Scholarships/Pell Grant Award Coordination Information Resources Acceptable Use, Security and Copyright Infringement Incivility Protocol Hiring Manager’s Guide For Faculty and Staff Graduation General Educational Development Test Administration Flexible Work Schedules Financial Support for Student Organizations Final Course Grade Appeal Faculty Workload, Teaching Load, and Office Hours Faculty Professional Development Unearned Tuition Assistance Funds Facility Naming Rights Externally Funded Grants and Contracts Expulsion of Students from Class Expressive Activities on Campus by Students and Employees Employee Progressive Discipline Employee Performance Evaluations Assistance Animals - Emotional Support Animals Cell Phone Allowances Emergency Response Plan Employee Book Voucher Emergency Procedures Manual Athletic Department Drug Testing Drug and Alcohol Prevention Program (DAAPP) Disposal of Property Display Screen Guidelines Discretionary Time Direct Deposit, Payroll Capital Asset Guidelines Campus Security Authorities Campus Carry Information Systems and Services Information Systems and Information Integrity Information Systems and Communications Protection Information Systems Supply Chain Risk Management Information Systems Security Planning Administrative Organization Plan - Councils and Committees Information Systems Security Assessment and Authorization Information Systems Risk Assessment Prohibited Technologies and Covered Applications Information Systems Media Protection Information Systems Maintenance Information Systems Security Program Information Resources Acceptable Use, Security and Copyright Infringement Information Systems Incident Response Information Systems Identification and Authentication Information Access Control Photo Identification (ID) Card Faculty Credentialing Procedures Blinn Alert Notification Student Code of Conduct Approved Vendors for Apparel and Promotional Items Alternate Work Location Admission Requirements and Registration Eligibility Web Accessibility Board Policy/Administrative Regulations Development and Approval Quarantine Leave for Certain Law Enforcement and EMS Personnel Outdoor Intramural Spaces Guidelines Name, Image, and Likeness Indoor Tabling Guidelines Hazing Prevention Credit by Examination, Prior Learning Assessment, Awarding Credit Additional Education During Term of Employment Post Accident Drug and Alcohol Testing Personal Leave Prohibition Against Inducements, Commission and High-Pressure Recruitment Tactics for Service Members Continuity of Operations Plans Employee Complaints Community Users of the Blinn College Library College District Closures College District Brand Guidelines College Catalog Policy Information Systems Physical and Environmental Protection Information Systems Personnel Security Information Systems Contingency Planning Information Systems Configuration Management Information Systems Awareness and Training Information Systems Audit and Accountability Awarding Incomplete Grades Athletic Awards Criteria Assessment of Instructional Programs and Courses Board Policy CS - Information Systems

Information Systems Security Planning

BLINN COLLEGE ADMINISTRATIVE REGULATIONS MANUAL

SUBJECT: Information Systems Security Planning

EFFECTIVE DATE: March 1, 2020; amended September 19, 2023

BOARD POLICY REFERENCE: CS

PURPOSE

Develop policies and procedures for security planning.

PROCESS

Security Planning Policy and Procedures (PL-01)

The College District

  1. Develops, documents, and disseminates to information system owners:
    1. A security planning policy that addresses purpose, scope, roles, responsibilities, management commitment, coordination among organizational entities, and compliance; and
    2. Is consistent with applicable laws, executive orders, directives, regulations, policies, standards, and guidelines; and
    3. Procedures to facilitate the implementation of the security planning policy and associated security planning controls; and
  2. Reviews and updates the current:
    1. Security planning policy biennially; and
    2. Security planning procedures annually.

Security Planning Policy

The CISO must direct and coordinate the creation of a security plan protecting the information system assets of the College District. The plan must address the information systems’ identification and classification, owners, automated protection tools, network security, minimum levels of system security settings, security audit process and frequency. In addition:

System Security and Privacy Plans (PL-02)

The College District

  1. Develops a security plan for the information system that:
    1. Is consistent with the organization’s enterprise architecture;
    2. Explicitly defines the authorization boundary for the system;
    3. Describes the operational context of the information system in terms of missions and business processes;
    4. Provides the security categorization of the information system including supporting rationale;
    5. Describes the operational environment for the information system and relationships with or connections to other information systems;
    6. Provides an overview of the security requirements for the system;
    7. Identifies any relevant overlays, if applicable;
    8. Describes the security controls in place or planned for meeting those requirements including a rationale for the tailoring and supplementation decisions;
    9. Is reviewed and approved by the authorizing official or designated representative prior to plan implementation;
    10. Describe the controls in place or planned for meeting the security and privacy requirements, including a rationale for any tailoring decisions;
    11. Include risk determinations for security and privacy architecture and design decisions;
    12. Include security- and privacy-related activities affecting the system that require planning and coordination with information system owner and CISO; and
    13. Are reviewed and approved by the authorizing official or designated representative prior to plan implementation.
  2. Distributes copies of the security plan and communicates subsequent changes to the plan to information system owners
  3. Reviews the security plan for the information system annually;
  4. Updates the plan to address changes to the information system/environment of operation or problems identified during plan implementation or security control assessments; and
  5. Protects the security plan from unauthorized disclosure and modification.

Rules of Behavior (PL-04)

The College District

  1. Establishes and makes readily available to individuals requiring access to the information system, the rules describing their responsibilities and expected behavior with regard to information and information system usage;
  2. Include in the rules of behavior, restrictions on:
    1. Use of social media, social networking sites, and external sites/applications;
    2. Posting organizational information on public websites; and
    3. Use of organization-provided identifiers (e.g., email addresses) and authentication secrets (e.g., passwords) for creating accounts on external sites/applications.
  3. Receives a signed acknowledgment from such individuals, indicating that they have read, understand, and agree to abide by the rules of behavior, before authorizing access to information and the information system;
  4. Reviews and updates the rules of behavior biennially; and
  5. Requires individuals who have signed a previous version of the rules of behavior to read and resign when the rules of behavior are revised/updated.

Baseline Selection (PL-10)

The default baseline for an information system shall be the controls contained in the Security Controls Catalog (Information Systems Administrative Regulations).

The College District head may employ standards for the cost-effective information security of information, information resources, and applications within or under the supervision of the College District that are more stringent than the standards the DIR prescribes under this section if the more stringent standards:

  1. contain at least the applicable standards issued by the department; and/or
  2. are consistent with applicable federal law, policies, and guidelines issued under state rule, industry standards, best practices, or deemed necessary to adequately protect the information held by the College District.

Baseline Tailoring (PL-11)

The College District head may employ standards for the cost-effective information security of information, information resources, and applications within or under the supervision of the College District that are more stringent than the standards the DIR prescribes under this section if the more stringent standards:

  1. contain at least the applicable standards issued by the department; and/or
  2. are consistent with applicable federal law, policies, and guidelines issued under state rule, industry standards, best practices, or deemed necessary to adequately protect the information held by the College District.
PROGRAMS
VISIT
APPLY

The Blinn College District is accredited by the Southern Association of Colleges and Schools Commission on Colleges (SACSCOC) to award associate degrees. The Blinn College District also may offer credentials such as certificates and diplomas at approved degree levels. Questions about the accreditation of the Blinn College District may be directed in writing to the Southern Association of Colleges and Schools Commission on Colleges at 1866 Southern Lane, Decatur, GA 30033-4097, by calling (404) 679-4500, or by using information available on SACSCOC's website (www.sacscoc.org).

The Blinn College District does not discriminate on the basis of race, color, national origin, sex, or disability. For information regarding Title IX, ADA, Section 504, and other anti-discrimination coordinators, see the Student Title IX page.

quick links
  • A to Z Index
  • About Blinn College
  • Academic Calendar
  • Blinn Bookstores
  • Campus Maps
  • Choose your Campus
  • Contact Us
  • Directory
  • Employment Opportunities
  • Giving to Blinn
  • Library
  • myBLINN login
  • Social Media
resources
  • Access Syllabi & CVs
  • Curriculum Committee
  • Expressive Activity on Campus
  • Financial Transparency
  • House Bill 2504
  • Mental Health Counseling
  • Online Institutional Resumes
  • Open Records
  • Required Notices
  • State Auditor's Office Fraud, Waste, or Abuse Hotline
  • Student Complaint Forms
  • Student Consumer Information
  • Student Rights and Responsibilities
  • Student Title IX
  • Web Accessibility Statement
safety & security
  • Annual Security Report
  • Blinn Alert
  • Emergency Management
  • Police
  • Privacy Notice
  • Safety & Risk Management

departments
  • Accounting Department
  • Facilities, Planning, and Construction
  • Human Resources
  • Communications, Media Relations, and Marketing
  • Purchasing Department
Administration
  • Administration
  • Board of Trustees
  • Academic Committees
  • Administrative Regulations
  • Advisory Committees
  • Institutional Review Board
  • Legislative Matters
  • Office of Institutional Research and Effectiveness
  • Office of the Chancellor
  • Office of the Executive Vice Chancellor and General Counsel
  • Quality Enhancement Plan
  • Strategic Plan

©2026 Blinn College District | 902 College Avenue | Brenham, TX 77833 | 979-830-4000

Broken Aria Reference