Telecommuting Guidelines
We all have a shared responsibility to protect the confidentiality, integrity and availability of Cal Poly information assets. The following guidelines are intended to provide you with the tools and information to protect yourself, your computer, and help prevent the unauthorized access or use of University information while working remotely.
Before Telecommuting
Work with your technical support team to ensure the following settings are in place prior to remote work:
- Telecommuting should only be done on a state-owned computer, which has many of these guidelines for telecommuting already in place.
- Cal Poly-provided antivirus, Sophos Central Endpoint Protection, should be installed and the operating system firewall enabled. Refer to our Antivirus Download page for details.
- Ensure only required software for official duties installed on the computer.
- Enable automatic updates for the operating system and installed software.
- Overseas telecommuters should disable automatic updates while traveling and enable them upon return. See our Travel Tips for details.
- Full-disk encryption enabled, either with Windows’ BitLocker or the Mac’s FileVault.
- Cal Poly’s VPN software must be installed. See our VPN link for details.
- Enable a timed screensaver or screen lock that asks for your password to login again.
- The state-owned computer should be bound to Cal Poly’s Active Directory, which enables login with Cal Poly Portal credentials.
- Ensure all local computer accounts have passwords compliant with Cal Poly’s password requirements.
- Guest accounts should be disabled.
- User administrator rights should be disabled.
While Telecommuting
While telecommuting, be aware of the following best security practices:
- State-owned computers should only be used for official duties.
- Access to Cal Poly resources should be accessed through Cal Poly’s VPN. Some on-campus services require access through the VPN. See our VPN link for details.
- The state-owned computer should be logged off or turned off when not in use for extended period of time. When stepping away from your computer, the computer should also be locked.
- Ensure you’re connected to wireless networks you trust.
- Level 1 and Level 2 data may not be stored locally on any device. Refer to our Information Classification Standard for details.
- The state-owned computer should be updated with security updates to the operating system and installed applications, such as Firefox, Chrome, or Acrobat, during the telecommute.
- Do not update software while telecommuting overseas. See our Travel Tips for details.
- Shared logon or access to the state-owned computer is not allowed.