The UK GDPR requires us to keep personal data secure. The Regulation states personal data must be:
Processed in a manner that ensures appropriate security of the personal data, including protection against unauthorised or unlawful processing and against accidental loss, destruction or damage, using appropriate technical or organisational measures. [Article 5 (1) (f), UK GDPR]
The University sets out its approach to data security in its Information Security Policy. Other associated security policies can be accessed via the University’s Information Policy Index.
For additional information, see Cybersecurity and the University’s Records Management resources.