Policy for CSIR-NIIST IT infrastructure users
- Objective
This IT Policy aims to establish guidelines and implement proactive measures for the appropriate use of information technology resources within CSIR-NIIST to ensure security, integrity, and availability of IT infrastructure and data.
- Implementing authority
Information Technology Services Unit (ITSU) of CSIR NIIST
- Acceptable Use
o IT resources are to be used for official purposes and research activities which deemed legal by the law of land.
o Personal use of IT resources is permitted on a limited basis, provided it does not interfere with work responsibilities or violate any other institute or Govt of India policies/rules/Acts.
o Users must not use IT resources for any illegal activities, including but not limited to software piracy, harassment, or accessing unauthorized systems. - User Scope and Device scope
o This policy applies to all regular employees, students, contractors, consultants, temporary staff, and other workers and all personnel affiliated with third parties using IT infrastructure of CSIR-NIIST.
o Desktop/laptops/servers/workstations/instrument computers purchased through NIIST, personal devices connected to NIIST network. - Device and data policy
o Users must protect their authentication usernames and passwords and must not share them with others in order to prevent unauthorised access to their desktops/laptops
o All devices connected to the institute network must have genuine licensed up-to-date antivirus software.
o It is sole responsibility of user to take regular backup of the data stored in their desktops/laptops to pen drives/external hard disks to overcome loss of data due to hardware crashes or similar situations.
o Users must report any security incidents immediately to the IT department via email to itlab@niist.res.in if possible with primary information screenshots. - Email policy
o Email (with domain @niist.res.in) should be used only for official purposes and will abide by guidelines of NIC/Meity/CSIR
o Users must not send unsolicited bulk emails (spam). - Internet Usage
o Internet access is provided for research/official purposes.
o Users must not visit websites that contain offensive or inappropriate content.
o Downloading software or files from the internet must be authorized by the IT department. - Software and Hardware
o All software purchase may be processed in concurrence with ITSU.
o Users must not install or use unauthorized/pirated software in devices used in NIIST network. - Monitoring and Privacy
o The ITSU officials reserves the right to monitor IT resource usage to ensure compliance with this policy.
o Users have no expectation of privacy when using CSIR-NIIST IT resources. - Violations
o Violations of this policy may result in disciplinary action as per Govt of India rules
o Legal action may be taken for serious breaches involving illegal activities. - Review and Updates
o This policy will be reviewed every 6 months and updated as necessary.
o Employees will be notified of any significant changes to the policy.