4000-4-8 Account Life Cycle
Upon request, the college will provide a copy of this policy in an alternate format.
Policy
Lambton College has a responsibility to keep an accurate and timely account registry to protect the personally identifiable information, the integrity of critical infrastructure, and to maintain cost effective infrastructure and licensing. This policy applies to all applications, students, former students, alumni, employees, former employees, retirees, and third parties of Lambton College. Account access applies to all systems such as, but not limited to, operation systems, databases, applications, devices, cloud applications, and stand-alone devices.
This policy governs the procedures for the creation, maintenance, licensing, and termination of IT accounts for various user groups at Lambton College. The primary objective of this policy is to ensure the security, efficiency, licensing compliance, and accountability of IT account management.
Applicants
- Applicant accounts serve as a gateway for individuals seeking enrollment at Lambton College. They provide access to application status and related information during the selection process.
- Account Creation: Applicant accounts will be created upon submission of an application for enrollment.
- Account Access: Applicants will have access to application status and relevant information during the admission process. This will include email and myLambton access.
- Account Pickup: Applicants are emailed their account information to their preferred personal email address.
- Account Maintenance: Applicant accounts will remain active for the duration of the application and selection process.
- Account Termination: Applicant accounts will be disabled after two (2) years from the date of application.
Students
- Student accounts facilitate access to essential academic services and resources for enrolled students, streamlining the educational experience.
- Account Creation: Students who move from an Applicant to a Student are done so automatically through registration processes.
- Account Access: Students will have access to course registration, academic resources, and student services.
- Account Pickup: Student accounts and credentials will be distributed during orientation or provided electronically upon enrollment confirmation.
- Account Maintenance: Student accounts will be active for the duration of their enrollment. Accounts will be disabled upon graduation or withdrawal.
- Account Termination: Student accounts will be migrated to Alumni after thirty (30) days after graduation or withdrawal.
Employees
Support Staff
- Support staff accounts provide access to essential tools and systems needed for the efficient functioning of departments and administrative tasks.
- Account Creation: Support staff accounts will be created upon successful onboarding.
- Account Access: Support staff will have access to departmental and administrative tools necessary for their job responsibilities.
- Account Pickup: Support staff will receive their account credentials during the onboarding process through the HR or IT Department.
- Account Termination: Accounts will be disabled immediately upon termination, resignation, or end of contract. Access may be provided for thirty (30) days as a grace period to ensure that all hours are entered, all work has been submitted, and employee/student inquiries are responded to.
- Account Maintenance: Support staff accounts will remain active during employment.
Faculty
- Faculty accounts grant access to teaching and research resources, enabling educators to deliver quality instruction and conduct research effectively.
- Account Creation: Faculty accounts are generated by having a valid person, payroll, and employee record entered by Human Resources. A signed and completed offer must be received by Human Resources.
- Account Access: Faculty will have access to teaching and research tools, as well as administrative resources as required.
- Account Pickup: Faculty will receive their account credentials as part of the onboarding process through the academic or IT Department.
- Account Maintenance: Faculty accounts will remain active during their employment.
- Account Termination: Accounts will be disabled immediately upon retirement, resignation, or end of contract. Access may be provided for one-hundred thirty (130) days as a grace period to ensure that grades can be posted, student inquiries responded to, and communication with the College regarding future contracts.
Administration
- Administrative accounts provide access to essential tools and systems needed for the efficient functioning of departments and administrative tasks.
- Account Creation: Administrative accounts will be created upon successful onboarding.
- Account Access: Administrative staff will have access to departmental and administrative tools necessary for their job responsibilities.
- Account Pickup: Administrative staff will receive their account credentials during the onboarding process through the HR or IT Department.
- Account Maintenance: Administrative accounts will remain active during employment.
- Account Termination: Accounts will be disabled immediately upon termination, resignation, or end of contract. Access may be provided for thirty (30) days as a grace period to ensure that all hours are entered, all work has been submitted, and employee/student inquiries are responded to.
Retirees
- Employees who retire from Lambton College retain email access for ninety (90) days as a grace period to assist with the transition. After the ninety (90) days, retires do not retain any email access.
Third Party
- Lambton College, at its sole discretion, may create accounts for contractors or other third parties to perform work or for collaboration with the College. Any third party will require a College contact that is responsible for establishing the identify of the individual and submitting a third party access request form to the IT Service Desk.
- Account Creation: Third party accounts (e.g., contractors, vendors) will be created upon approved request by the responsible department or project manager.
- Account Access: Third party accounts will have access to specific systems or resources as outlined in their access request.
- Account Pickup: Third party users will receive their account credentials from the department or project manager who requested the access.
- Account Maintenance: Third party accounts will remain active for the duration of their authorized access. Regular reviews of 3rd party accounts will be conducted to ensure ongoing necessity.
- Account Termination: Third party accounts will be disabled at the end of the requested date to a maximum of six (6) months. Any requests to extend this access must come from the College contact.
Account Security
- All user groups are responsible for safeguarding their IT account credentials and adhering to password policies. Account access will be restricted based on the principle of least privilege, granting users only the necessary access to perform their job functions. Requests to increase access will be sent to the Information Technology Department for review and may require additional approval.
- All accounts at Lambton College are required to have multi-factor authentication (MFA) enabled. Any exemptions for multi-factor authentication will be approved by the Director of Information Technology and documented for the exemption if approved.
Licensing Compliance
- Accounts shall be assigned the appropriate licenses based on user group requirements and organizational licensing agreements. Additional license requests will be sent to the Information Technology department for review and may require additional approval.
Definitions
- Authorized Use
- Use of College Information Technology resources for college educational or administrative activities recognized by the College as such, or such other uses as approved by the Information Technology department.
- Data
- Facts and statistics collected for reference or analysis.
- Information Technology Resources
- Those physical, electronic, and intellectual resources used to produce, convey, transmit, store, analyze, collate, distribute, present, or display data or information in whatever form (e.g. text, pictorial, graphic, video, audio) that typically consist of, but are not limited to, computer hardware, computer software, network, devices and equipment, and applications, servers, databases, audio-visual equipment, telephone equipment, any device that connects to the internet and/or the network, and other forms of information technologies that exist today or may be developed in the future.
- Person Record
- The unique record in the College's primary information system that identified the individual.
- Employment Record
- The unique record in the College's primary information system that identifies that a person has employment at the College and indicates the start date and, if applicable, the end date.
- User
- An individual authorized to use all or some subset of the College Information Technology resources.
- User Account
- An account configured by the Information Technology department either manually or through automation which is assigned to an individual. Accounts could be locally configured or be part of core College infrastructure.
- User ID
- The name assigned to a user by the Information Technology department to authorize and enable access to the College Information Technology resources.
For questions or concerns regarding this policy, please contact the Policy Sponsor by phoning our main line 519-542-7751.