Data Compliance

University of Texas at Dallas research and institutional activities involve many different types of data, each subject to specific legal, regulatory, contractual, and sponsor-driven requirements. Certain data types require heightened controls and may only be stored, accessed, or shared using approved systems and processes.

Examples of regulated or restricted data include Controlled Unclassified Information (CUI), Controlled Export Technology (CET), National Institutes of Health (NIH) data (including genomic and other sensitive human-subject data), National Science Foundation (NSF) data, personal data governed by the General Data Protection Regulation (GDPR), and protected health information (PHI) regulated under HIPAA.

Because safeguarding requirements vary by data type, researchers and staff are responsible for understanding the classification of the data they handle and ensuring appropriate protections are in place before data is collected, stored, processed, transmitted, or shared.