Public (Green): Unauthorized access, use, disclosure, or loss is likely to have low or no risk. Data that is intended for public availability or has been explicitly approved for publication. There are no restrictions on access, but controls should be in place to prevent unauthorized modification or destruction.
Internal (Yellow): Unauthorized access, use, disclosure, or loss is likely to have moderate but not significant adverse impact. Non-sensitive data used in the daily operations of the University. While the data may not be explicitly protected by law, it is not intended for public release. The impact of disclosure is generally limited to operational disruption or minor reputational harm.
Private (Orange): Unauthorized access, use, disclosure, or loss is likely to have significant and serious adverse effects. Data that must be protected due to ethical, legal, or privacy considerations, even if not subject to the same strict regulatory requirements as Restricted data. The unauthorized disclosure could cause social, psychological, reputational, financial, or legal harm to individuals or the University.
Restricted (Red): Access and use is strictly controlled and restricted by laws, regulations, or contracts. Data where unauthorized access, use, disclosure, or loss will have severe legal consequences, including civil and criminal penalties, loss of funding, inability to continue current research, and inability to obtain future funding or partnerships. This data requires the highest level of protection.
| Category | Examples |
|---|---|
| Public (Green) |
|
| Internal (Yellow) |
|
| Private (Orange) |
|
| Restricted (Red) |
|
Questions? We're Here to Help.
Protecting university assets is a shared responsibility. Depending on your needs, please reach out to the appropriate team:
- Data Classification: For questions about who classifies data or determining which classification level applies to a specific data asset, contact the Data Governance Program at datagovernance@weber.edu.
- Data Security: For guidance on how to securely store, share, or manage data or establish appropriate security controls based on classification level, contact the Information Security Office at security@weber.edu.
