Safeguarding PII While Working From Home

Personally Identifiable Information (PII) is information that, when used alone or with other relevant data, can identify an individual. Many employees work with PII about students, staff or alumni. Find a more detailed definition of PII and Kalamazoo College’s policy for protecting it on the IS Policies page.

  • Follow the steps in our earlier post “Tips for Working Securely from Home.” In particular, employees should be extra vigilant when working from home against social engineering attacks.  It might be harder to tell if that email from your supervisor or colleague is legitimate when you are not located down the hall from them. If you receive a request for PII, we suggest that you get verbal/video confirmation from the requester.  
  • Try to minimize how much PII you work with from home. 
  • Never send PII through email 
  • If you need to work with PII, the best way to keep it secure is to store it on a computer that is on campus under IS management. This would include the KFiles server. We do not recommend storing PII on cloud-based services or on your device at home.  
  • To work with PII, you can also use remote access via our VPN to connect using Remote Desktop to a campus computer. Another advantage to connecting with remote desktop is that if your home internet connection is unstable, your work is preserved on the campus desktop if you get disconnected.
  • If you have further questions or need help getting set up for remote access, please contact the Help Desk.