Security & Privacy

Your security and privacy are our top priorities. Learn about the measures we take to protect your data and ensure a secure campus IT environment.

Security Measures in Place

Our comprehensive security infrastructure protects your data and ensures a safe digital environment for all users.

End-to-End Encryption

Active

All data transmitted between your device and our servers is encrypted using industry-standard TLS 1.3 protocol, ensuring complete confidentiality of your information.

Multi-Factor Authentication

Available

Optional 2FA available for all user accounts using time-based one-time passwords (TOTP) to enhance security and prevent unauthorized access.

24/7 Security Monitoring

Active

Continuous real-time monitoring of all systems for suspicious activities, potential security threats, and unauthorized access attempts.

Regular Encrypted Backups

Active

Automated daily backups with 30-day retention policy. All backup data is encrypted at rest using AES-256 encryption standard.

Role-Based Access Control

Active

Granular RBAC system ensures users only access resources authorized for their role, minimizing the risk of data breaches.

Enterprise Firewall Protection

Active

Multi-layered firewall system protecting against DDoS attacks, SQL injection, XSS, and other common web vulnerabilities.

Secure Campus Network

Active

Campus WiFi secured with WPA3 encryption, MAC address filtering, and mandatory device authentication requirements.

Regular Security Audits

Active

Quarterly security audits and vulnerability assessments conducted by security professionals and Volunteers.

Intrusion Detection System

Active

Advanced IDS/IPS (Suricata) monitors network traffic for malicious activity and automatically blocks potential threats in real-time.

Incident Response Team

Active

Dedicated security team available 24/7 to respond to security incidents and implement immediate countermeasures.

Secure Web Gateway

Active

Content filtering and malware protection for all web traffic, blocking malicious websites and phishing attempts.

Real-Time Threat Intelligence

Active

Integration with global threat intelligence feeds to stay updated on emerging threats and zero-day vulnerabilities.

Security Policies & Guidelines

Password Requirements
  • Minimum 8 characters length
  • Mix of uppercase and lowercase letters
  • At least one number and special character
  • Password expiry every 90 days
  • No password reuse for last 5 passwords
Account Security
  • Automatic lockout after 5 failed login attempts
  • Session timeout after 30 days of inactivity
  • Email notifications for suspicious login attempts
  • Mandatory password change on first login
  • Account recovery through verified email only
Data Protection
  • All personal data encrypted at rest and in transit
  • Regular data backup every 24 hours
  • Data retention policy compliant with regulations
  • Right to data access and deletion upon request
  • Strict access controls on sensitive information

Recent Security Updates

Security Patch Applied

Nov 20, 2025

Updated system libraries to patch CVE-2025-12345 vulnerability.

Firewall Rules Updated

Nov 15, 2025

Enhanced firewall configurations to block emerging threats.

Security Audit Completed

Nov 10, 2025

Quarterly security audit completed with no critical issues found.

SSL Certificates Renewed

Nov 5, 2025

All SSL/TLS certificates renewed for another year.

Report a Security Issue

If you discover a security vulnerability or suspicious activity, please report it immediately to our security team.