The browser you are using is not supported by this website. All versions of Internet Explorer are no longer supported, either by us or Microsoft (read more here: https://www.microsoft.com/en-us/microsoft-365/windows/end-of-ie-support).

Please use a modern browser to fully experience our website, such as the newest versions of Edge, Chrome, Firefox or Safari etc.

Information security incidents and events

Illustrative image.

During the autumn of 2019, an analysis was conducted of how the faculties and the University's IT functions currently manage incidents and events that threaten our information security. Preparatory analyses, training, activities and a management dialogue have been ongoing since 2019 in the field of information security.

The University is affected on a daily basis by events that negatively affect our information security, but only a very small proportion of all incidents are reported, mainly in IT. However, it is essential that other incidents are also reported in order for the damage to be reduced and remedied and to ensure better security measures can be introduced.

There are legal requirements placed on us as a public authority to handle serious information security incidents. There are also requirements to report certain IT and personal data-related incidents to parties outside the University.

During the autumn of 2020, one new initiative was launched to gradually put in place comprehensive reporting channels, procedures and processes concerning incident management.
This initiative are to help:

  • provide support for employees in identifying, reporting, highlighting and managing events and incidents that adversely affect information security
  • produce continuous reporting to management and other roles as a basis for priorities and measures
  • raise awareness of the importance of information security and the right security culture – "It's OK to report something that has gone wrong"

anders [dot] sj%C3%B6%C3%B6 [at] ldc [dot] lu [dot] se (Anders Sjöö) has been appointed to manage this initiative on behalf of the CISO (chief information security officer). In the long term, the goal is to involve all parts of the University. Anders will invite selected groups, faculties and organisations to take part in the initiatives.