AT-3 Role Based Security Training
Last Review: 10/1/22
Statement
West Texas A&M University must provide role-based security-related training as part of training for new users and when required by Information System changes.
Applicability
This Control applies to all West Texas A&M personnel who use University information resources.
Implementation
- Role-based security training will be provided to staff with information security responsibilities.
- Developer, will take a “Developer Security Awareness Training” consisting of a mixture of general information security practices and work specific security issues such as coding practices and web application vulnerability.
- Infrastructure, will take an “Infrastructure Security Awareness Training” consisting of a mixture of general information security practices and work specific security issues such as information system access and encryption.
- Client-Services, will take a “Client Services Security Awareness Training” consisting of a mixture of general information security practices and work specific security issues such as client identity verification and sensitive information disposal.
- Just as with the basic security awareness training WTAMU utilizes third-party platforms that can be used to provide web based training, all of which are subject to change based on the budget and needs of the University.