THE AUSTRALIAN NATIONAL UNIVERSITY
information infrastructure and services rule 2015
EXPLANATORY STATEMENT
1. Authority for making the instrument: Information Infrastructure and Services Statute 2012, section 5.
2. Purpose and operation of the instrument: The Rule sets out conditions of access to the University’s information infrastructure and services, defines conditions of use, and describes the procedures for dealing with contraventions and penalties for contraventions.
3. Documents incorporated in the instrument by reference: None.
4. Consultation process: The Rule was made by the Vice-Chancellor on the recommendation of the University Librarian and Chief Information Officer.
Corporate Governance and Risk Office
15 December 2015
Overview
The Australian National University Information Infrastructure and Services Rule 2015 was enacted to establish clear guidelines for access to and use of the university's information infrastructure and services. This legislation was introduced to address the need for a structured framework that governs the use of digital and information resources within the university, ensuring they are utilised responsibly and in alignment with the institution's policies. The Rule was made under the authority of the Information Infrastructure and Services Statute 2012, section 5, and was developed following recommendations by the University Librarian and Chief Information Officer. The policy objective of this legislation is to provide a comprehensive set of conditions that regulate access and usage, alongside procedures for handling any contraventions and the associated penalties. This ensures that the university's information systems are secure, efficient, and accessible to those who require them for legitimate purposes.
Scope and Application
The Australian National University Information Infrastructure and Services Rule 2015 applies to any person or entity granted access to the University’s information infrastructure and services, encompassing all students, staff, and affiliates of the institution. This encompasses a broad range of conduct and transactions involving the use of the University's digital resources, including but not limited to, internet access, computing facilities, and data storage. The Rule is geographically confined to the campus and operations of the Australian National University, thus it does not extend beyond the jurisdiction of the institution itself. The Rule is silent on any exclusions or exemptions, meaning that all users are subject to its terms unless otherwise specified in subordinate instruments. The Rule is made under the authority of the Information Infrastructure and Services Statute 2012, section 5, and its scope can be further extended or restricted by subsidiary legislation if necessary.
Key Provisions
The Australian National University Information Infrastructure and Services Rule 2015 (the Rule) sets out the conditions under which members of the public and university staff can access and use the university's information infrastructure and services. Section 3 defines the conditions of access, while section 4 outlines the conditions of use. These sections establish the framework within which the university's IT resources are to be used, ensuring that they are accessed and utilised in a manner consistent with the university's policies and objectives. Section 5 of the Rule details the procedures for dealing with contraventions, providing a clear process for addressing any breaches of the conditions set out in the Rule.
Under the Rule, the university imposes several obligations on the parties it governs. Section 6 requires that all users of the university's information infrastructure and services must comply with the conditions set out in the Rule. This includes obligations to use the infrastructure and services responsibly, to protect the confidentiality and integrity of the university's data, and to refrain from any activities that could compromise the security or availability of the university's IT resources. Section 7 of the Rule sets out the responsibilities of the university in relation to the provision of information infrastructure and services, including obligations to maintain the security and reliability of the infrastructure, to provide appropriate support and training to users, and to monitor compliance with the conditions of use.
The Rule also includes provisions for dealing with breaches of its conditions. Section 8 sets out the offences and penalties for contraventions, with penalties ranging from warnings and fines to suspension or termination of access to the university's information infrastructure and services. In cases of serious or repeated breaches, the university may also refer the matter to the relevant law enforcement authorities. Section 9 of the Rule provides for the imposition of civil or criminal penalties for more serious breaches, including fines and imprisonment. These provisions serve to deter non-compliance and to ensure that the university's IT resources are used in a responsible and secure manner.