Skip to main content

Information Security Policies

The security of the medical school's systems and data is of the utmost importance to Feinberg IT. Knowledge of and compliance with our security policies and procedures are the responsibility of each staff and faculty member. 

Skip to our information security policies list

Information Security & Access

Maintaining the privacy, security and integrity of data about our research participants, students and staff is both an ethical and legal responsibility. Given the nature of clinical care and biomedical research, staff at Northwestern University Feinberg School of Medicine are much more likely to collect, use, manage and be exposed to Protected Health Information (PHI) and Personally Identifiable Information (PII) than staff at most other schools within Northwestern University. To address this need, Feinberg has developed additional policies on the appropriate use of electronic resources that work in concert with university-wide policies.

Failure to comply with these policies will lead to sanctions, up to and including administrative suspension of activities, loss of faculty appointment, department or unit financial penalties or dismissal from the university.

View the General Security Policy

Questions about Feinberg IT Security policies or resources can be addressed to FSMIT-Policy@northwestern.edu.

Data Security Plan Requirements for Feinberg Research

The Feinberg IT Information Security provides guidelines, oversight and consultation to the research community on Data Security Plans (DSP). Visit the Feinberg Hub to view the Data Security Plan Requirements for Feinberg Research Policy, which establishes the use of DSP for studies that collect personal or health-related information.

Information Security Policies