Reference no: EM132307741 , Length: word count:2500
Context
University A in NSW, Australia is focused on implementing a new Student Management System (SMS) to manage the operations of the Higher Education services. University A recruits students both domestically (55%) and internationally (45%).
Key Requirements
• improving compliance (and therefore maximising direct revenue)
• improving University A's responsiveness to market conditions
• reducing the administrative and manual handling burden (reducing cost to serve)
• improving student experience (increasing revenue through conversion and retention)
• reducing reputational risk from exposure to adverse findings in compliance or quality audits or security breaches
Expected Benefits
• Reduced spend on compliance changes
• Reduced cost of student service
• Net revenue from improved conversion (after teaching costs)
• Extra government funding from improved compliance rate
• Non-financial Benefits include
o Improved user experience for students and teachers
o Agility in terms of using either in-house or 3rd party services to modify business rules, processes and UX for new business needs
University A has just set up a workforce evaluating different options. There are a few ideas being considered:
• In house built system, or
• Off-the-self product running on premise, or
• SaaS solution (fully managed)
Tasks
Your team (team of four) have been selected as security consultant assisting the workforce. The workforce is particularly interested in the following from the Privacy perspective:
• What laws or regulations the University A needs to comply with?
• What are the obligations of University A under those laws / regulations / other related policies and procedures?
• Why are those obligations important? If breached, what is the consequence?
• What does University A / this workforce need to do demonstrate the compliance?
• Any other areas that need to be considered in the initiative?