SMPH Cybersecurity Overview
SMPH Cybersecurity Overview
Mission (the what & why, why our department/team exists)
To safeguard educational excellence and research innovation by protecting SMPH's people, data, systems, and technology through risk-informed cybersecurity and a culture of shared responsibility.
Our Community. Our Data. Our Responsibility.
Vision ("what we want to be" and ideal condition)
To empower the SMPH community to embed security into the fabric of our technology, research, and daily operations to protect the SMPH mission and maintain the trust of those we serve.
Better Together: Protecting People, Powering Progress.
Values
-
Leadership, Accountability & Trust
We lead by example—making informed, principled decisions and owning outcomes. By communicating openly and operating transparently, we strive to build trust across SMPH and ensure that cybersecurity is both visible and credible.
-
Partnership & Collaboration
We succeed through strong partnerships. By working closely with researchers, educators, administrators, and technology teams, we integrate security into the processes and solutions that support SMPH's mission.
-
Security as an Enabler
We design security to be a catalyst—not a barrier—for innovation. We empower teams to achieve their goals securely by delivering practical guidance, effective controls, and responsive support.
-
Inclusion & Community Building
We foster a welcoming and inclusive environment where diverse perspectives strengthen our approach to security. We invest in growing a community of cybersecurity-aware professionals across SMPH.
-
Continuous Improvement & Excellence
We never stop learning. We adapt to new threats, improve based on experience, and strive for operational excellence in every facet of our cybersecurity mission.
Before We Act, We Ask:
-
Strategy: Does this help us be proactive?
-
Risk: Does this significantly reduce risk?
-
Partnership: Does it build trust and strengthen collaboration?
-
Sustainability: Can we make this repeatable, scalable, and enduring?
-
Measurement: How will we know it worked?
-
Alignment: Does this directly advance our mission, vision, and values?
-
Ease of Use: Does this reduce friction and make cybersecurity seamless in daily work?
-
Culture: Will this elevate cybersecurity awareness and drive everyday adoption?
For complete service information and additional documentation visit: https://it.med.wisc.edu/cybersecurity/
Get Support
- All requests for Cybersecurity support should be submitted using the Cybersecurity Portal (within SMPH Navigator)
- Audit Questionnaires
Assistance with regulatory or organizational cybersecurity audits. - Policy & Procedures
Request exceptions, clarification, or provide feedback on SMPH policies, standards, and guidance. - Vulnerability Scans
Security evaluations of applications, systems, and networks within SMPH. - Contract Reviews
Cybersecurity review of vendor contracts or technology agreements. - Regulatory Compliance
Support for meeting federal, state, or institutional cybersecurity requirements (e.g., HIPAA, data protection). - Report an Incident
Report cybersecurity incidents, vulnerabilities, or suspicious activity. - Consultations
Request time with cybersecurity staff for tailored guidance or risk discussions. - Risk Assessments
Assessments required before the adoption or implementation of new tools.
- Audit Questionnaires