Information Technology policies pertaining to computers, computer and network use, email, VPN and more.

Articles (19)

Pinned Article Written Information Security Program (WISP)

Bowdoin's Written Information Security Program (WISP) establishes a comprehensive, institution-wide framework to identify and protect against information security risks and to comply with applicable regulations and standards, including the NIST Cybersecurity Framework, PCI-DSS, GLBA, FERPA, HIPAA, and Maine and Massachusetts data-protection laws. It defines the administrative, technical, and physical safeguards the College uses to protect sensitive information.

Bowdoin College Student Digital Excellence Commitment (DExC) Technology Agreement

Sets out the responsibilities of students who receive and use the Bowdoin College-owned "Technology Kit" (an Apple laptop, iPad, and related accessories) distributed under the Digital Excellence Commitment (DExC) program, and summarizes the policies governing student use of College-owned and managed technology. It applies to enrolled students issued a Technology Kit.

Bowdoin Print Policy

Provides guidelines for the type, placement, and appropriate use of printing hardware across Bowdoin's campus and formalizes student and office printing. It aims to ensure access to printing for necessary College operations while encouraging sustainable practices and reducing costs, and applies to students, faculty, and staff who print at the College.

Business Computing Policy

Requires that every business computing system at Bowdoin have a designated Business System Owner responsible for ensuring the system meets the College's business needs and is appropriately documented, secure, controlled, tested, available, and sustainable. It applies to all computerized systems involved in creating, processing, or distributing College business information.

Computer and Network Usage Policy

Defines the responsibility of all users of Bowdoin's network and computer resources to use and protect those resources appropriately and to respect the rights of others, in support of the College's teaching, learning, and research missions. It applies to everyone who uses College computing and network resources.

Computer Purchase and Support

Explains that hardware and software purchased with College or grant funds is the property of Bowdoin and describes the annual Computer Allocation Process (CAP) for requesting computers, peripherals, software, and upgrades, along with related purchasing and support practices. It applies to faculty and staff acquiring College-funded technology.

Data Classification Policy

Classifies all College data into defined access levels and requires that data not be accessed without proper authorization, in order to protect the College's information resources from unauthorized access or damage while supporting legitimate academic use. It applies to all College data and to anyone who accesses or manages it.

DMCA Compliance Policy

States Bowdoin's compliance with the U.S. Copyright Act and the Digital Millennium Copyright Act (DMCA), prohibiting the unauthorized downloading, uploading, or distribution of copyrighted material, and identifies the College's designated DMCA agent and takedown process. It applies to all members of the community who use College technology resources.

Drone Policy

Defines the requirements for operating drones — also known as Unmanned Aerial Vehicles (UAVs) or Unmanned Aerial Systems (UASs) — in compliance with FAA regulations and applicable federal, state, and local law on or near Bowdoin-owned or controlled property. It applies to anyone operating a drone on College property, College-controlled property, or at College-affiliated events.

Electronic Commerce Policy

This policy governs the use of electronic commerce (online business transactions such as conference registration and the purchase of course materials) by Bowdoin entities that generate revenue through fundraising or the sale of goods or services. It requires reasonable steps to protect purchasers’ personal information and privacy, compliance with PCI-DSS standards, and coordination with Information Technology and Finance.

Email Policy

This policy defines how Bowdoin College email accounts are created, used, retained, and deleted, and it sets expectations for privacy, routine deletion, and records retention. It applies to all employees, students, and email systems operated by the College.

Faculty Computer Policy

This policy describes how the College provides, replaces, maintains, and reclaims computers used primarily by faculty in their offices and related workspaces, including standard models, the four-year replacement cycle, use at home or while on leave, and return of equipment at the end of an appointment. It applies to faculty office computing, not to student workspaces or laboratories.

Identification, Authentication, and Authorization Policy

This policy establishes requirements for uniquely identifying, authenticating, and authorizing all users of Bowdoin IT resources, covering account types, account eligibility and expiration, authentication methods, and access-control models. It applies to students, faculty, staff, contractors, and any individual or entity using a Bowdoin IT resource.

Information Technology Computer Use Policy

This policy governs acceptable use of all computing equipment and facilities owned or operated by Bowdoin College, including access via the Internet, and describes users’ responsibilities, privacy expectations, and the College’s right to monitor system activity. It applies to all students, faculty, and staff who use College computing facilities.

Virtual Private Network (VPN) Policy

This policy defines the standards for connecting to Bowdoin’s internal network from off campus using a VPN client approved by the CIO or CISO, including remote-computer security requirements (patching, anti-virus, vulnerability scanning) and user responsibilities. It applies to all employees, contractors, consultants, temporary workers, and others who use VPN to access the Bowdoin network.

Web Policy

This policy sets Bowdoin’s expectations for College web content, including college-wide standards for look and feel, accessibility, copyright, and security; the requirement that departments, courses, faculty, and other College resources maintain a current web presence; and the requirement that official web materials reside on monitored College servers.

Website Privacy

This policy explains how Bowdoin College collects, uses, and protects information from visitors to bowdoin.edu and other College websites, including personally identifiable information, aggregate data, and the use of cookies. It applies to all websites and pages owned and operated by Bowdoin College.

Website Terms and Conditions of Use

These terms and conditions govern use of bowdoin.edu and other Bowdoin College websites, covering acceptable use, intellectual property and trademarks, disclaimers of warranty, and the College’s rights over submitted or posted content. By using a College website, visitors agree to be bound by these terms.

HEOA Requirements and Next Steps Related to Peer-to-Peer (P2P) File Sharing on College and University Networks

This policy addresses the College’s compliance with Higher Education Opportunity Act (HEOA) requirements related to peer-to-peer (P2P) file sharing on college and university networks, and outlines the College’s related next steps. The full details are provided in the PDF available in the Files section of the article.