A shield with a padlock at its center, surrounded by circuit boards and wires, with a faint university building silhouette in the background, conveying security and online protection.

University's E-Commerce Policy: Safeguarding Funds Online

The University's E-Commerce Policy, outlined in Policy 6170, guarantees the secure and thorough facilitation of electronic commerce activities. This policy safeguards funds and sensitive information online by emphasizing data protection, utilizing encryption, and prioritizing fraud prevention measures that adhere to PCI DSS standards. The policy applies to all employees, student clubs, departments, and divisions, outlining transaction procedures, data security measures, and policy compliance enforcement. To guarantee a safe and thorough online environment, the university provides support resources, including e-commerce tools, training, and technical assistance. Further guidance on implementing these safeguards is available through the university's detailed guidelines and documentation.

Key Takeaways

• The University's E-Commerce Policy ensures the safeguarding of funds online through adherence to applicable laws and best practices.
• Data security measures are emphasized, utilizing data encryption and fraud prevention measures to protect sensitive information.
• The Official E-Commerce Package must be used for online transactions, ensuring compliance with Policy 6120 and PCI DSS requirements.
• The policy outlines procedures for secure online transactions, maintaining the security of sensitive information and providing a customizable online storefront.
• Non-compliance with the policy may result in consequences, with support resources available to ensure a safe and compliant online environment.

Understanding E-Commerce Policy

Facilitating the University's electronic commerce activities while safeguarding funds and sensitive information is the primary objective of University Policy 6170, which outlines the guidelines and procedures for conducting online transactions.

This policy guarantees the campus community understands the importance of e-commerce guidelines and adheres to applicable laws and best practices. The policy's scope encompasses all employees, student clubs, departments, and divisions conducting online transactions.

To maintain transaction security, the University's Official E-Commerce Package must be used, which adheres to the Payment Card Industry Data Security Standard (PCI DSS).

Safeguarding Sensitive Information Online

To safeguard the security of funds and sensitive information, the University's E-Commerce Policy emphasizes the importance of protecting sensitive information online, particularly when conducting online transactions. This is achieved through data encryption, which maintains that sensitive information remains confidential and protected from unauthorized access.

The policy also prioritizes fraud prevention measures to minimize the risk of fraudulent activities. By adhering to the Payment Card Industry Data Security Standard (PCI DSS), the University ensures that all online transactions are secure and payment security is maintained.

This dedication to protecting sensitive information online enables the University to provide a secure environment for online transactions, safeguarding the integrity of its e-commerce operations.

Online Transaction Procedures

When conducting online transactions, the University requires adherence to its Official E-Commerce Package to secure compliance with Policy 6120 and maintain the security of sensitive information. This guarantees that all online transactions, including fundraising activities, are conducted in accordance with the University's fundraising guidelines and online security protocols.

To facilitate secure payment processing, the University's E-Commerce Package provides a customizable online storefront for conference registrations, invoices, and other transactions.

All online transactions must comply with Payment Card Industry Data Security Standard (PCI DSS) requirements.

The University's E-Commerce Coordinator is available to assist with creating storefronts and verifying compliance with payment processing and regulatory requirements.

Adherence to the University's Official E-Commerce Package secures that online transactions are conducted in a secure and compliant manner, safeguarding University funds and sensitive information.

Policy Compliance and Enforcement

The University takes policy compliance and enforcement seriously, ensuring that all online transactions conducted within the institution adhere to the guidelines outlined in this policy and applicable laws and regulations. Policy enforcement is pivotal to safeguarding funds and sensitive information.

The University expects all employees, student clubs/groups, departments, and divisions/subdivisions to comply with this policy. Failure to comply may result in consequences, including disciplinary action, evaluated on a case-by-case basis. Sanctions may include exclusion, expulsion, or dismissal.

The Office of Institutional Compliance and Ethics should be contacted for any policy-related inquiries or concerns. The University emphasizes that policy compliance is essential to maintaining a secure online environment, and any non-compliance will be addressed promptly and appropriately.

Additional Resources and Support

University-provided e-commerce tools and training resources are available to support employees, student clubs/groups, departments, and divisions/subdivisions in conducting online transactions securely and efficiently. These resources aim to ensure a safe and compliant online environment.

To facilitate this, the university offers:

  • Training workshops: Regular sessions are conducted to educate users on the e-commerce package, online storefront creation, and PCI DSS compliance.

  • Technical assistance: The University E-Commerce Coordinator provides support in creating and customizing online storefronts, as well as troubleshooting technical issues.

  • Guidelines and documentation: Thorough resources, including user manuals and FAQs, are available to guide users through the e-commerce process.

Frequently Asked Questions

Can Student Clubs/Groups Create Their Own Online Storefronts?

While student clubs and groups may envision independent online storefronts for student entrepreneurship and fundraising opportunities, they must utilize the University's Official E-Commerce Package to guarantee compliance with PCI DSS and safeguard sensitive information.

Who Provides Training on the University's E-Commerce Package?

The University E-Commerce Coordinator provides training on the University's E-Commerce Package, offering personalized assistance and online tutorials to guarantee secure and compliant online transactions, thereby safeguarding funds and sensitive information.

Are Online Transactions Through Third-Party Vendors Allowed?

Like a treasure chest guarded by a vigilant sentinel, online transactions through third-party vendors are not permitted, as they compromise the fortress of third-party security, undermining the university's payment options and putting sensitive information at risk.

How Do I Report a Suspected E-Commerce Policy Violation?

To report a suspected e-commerce policy violation, follow the established reporting process, ensuring confidentiality throughout. Submit concerns to the Office of Institutional Compliance and Ethics (policyinfo@boisestate.edu), which will handle consequences and follow up as necessary.

Is Policy 6170 Applicable to Online Auctions and Raffles?

'When exploring unfamiliar terrain, it is crucial to follow the map. Online auctions and raffles, as types of online fundraising, must adhere to Policy 6170, guaranteeing compliance with regulations and addressing privacy and security concerns to safeguard funds.'

Back to blog
Liquid error (sections/main-article line 134): new_comment form must be given an article