Governance, Risk, and Compliance

Governance, Risk, and Compliance

Governance, Risk, and Compliance (GRC) is how IT structures governance, risk management and regulatory compliance for the Maricopa Community College system. 

By using GRC, we unify Maricopa's governance and risk management with our technological innovation and adoption, allowing us to achieve goals reliably, while removing uncertainty and meeting compliance requirements.

Information Technology Directives

As MCCCD continues efforts to strengthen and secure its information resources, a new set of Information Technology governance documents have been created in accordance with Administrative Regulation 4.23 Written Information Security Program. Administrative Regulation 4.23 provides the Vice Chancellor for ITS with the authority to “issue Governance Directives as needed to regulate [the] use of IT resources.”

Known as the Information Technology Directives (ITD), these foundational documents will continue to shape information security and privacy practices for MCCCD.  The ITDs demonstrate to those who have entrusted information to MCCCD (our students, employees, and other community stakeholders) that MCCCD has and enforces foundational information security and privacy policies and practices.

Information Technology Directives (restricted access)