COEHD, to be in compliance with Texas law, we (UTSA) must make sure any CLOUD services
being used are listed in the excel sheet attached, per the DIR TX-RAMP (Department of
Information Resources Texas Risk and Authorization Management Program). If your software
is on the list, this ensures that the Cloud vendor is protecting the State agency’s data.
Starting January 2023, if the Cloud software is not on the list, we may no longer use that
vendor – Purchasing will stop your Purchase Order. Please email me directly
marisol.johnson@utsa.edu<mailto:marisol.johnson@utsa.edu> or
informationsecurity@utsa.edu<mailto:informationsecurity@utsa.edu> if you have any
questions.
Please read below for more information!
Thank you,
Marisol Johnson
From: Office of Information Security <InformationSecurity(a)utsa.edu>
Date: Wednesday, November 16, 2022 at 12:41 PM
To: IT Associates Distribution List <itadl(a)utsa.edu>, SNOW CSM BSC Users
<SnowBSCUsers(a)utsa.edu>
Cc: Kendra Ketchum <Kendra.Ketchum(a)utsa.edu>, Nassos Galiopoulos
<NassosG(a)utsa.edu>, Jenell Bramlage <jenell.bramlage(a)utsa.edu>, Debby
Eyzaguirre <debby.eyzaguirre(a)utsa.edu>, Jonathan Medrano
<Jonathan.Medrano(a)utsa.edu>, Ashlee Vasquez <Ashlee.Vasquez(a)utsa.edu>, James R
Weaver <James.Weaver(a)utsa.edu>, Alex Ward <alex.ward(a)utsa.edu>, Mauricio
Sandoval <Mauricio.Sandoval(a)utsa.edu>
Subject: URGENT: Please Review This New Cloud Services Requirement
[UTSA Tech Solutions]
[
https://image.e.utsa.edu/lib/fe3511717064057d7c1772/m/1/dec2e333-d384-43d...]
Dear Colleague,
Please read the following message carefully to ensure that you are doing your part to keep
UTSA compliant with Texas law. If you have any questions at all, please reach out to OIS
(informationsecurity@utsa.edu<mailto:informationsecurity@utsa.edu?subject=TX%20RAMP>)
as soon as possible.
What’s Happening:
In 2021, the Texas Legislature passed a bill that impacts state agencies like UTSA and our
ability to engage cloud computing services. Beginning January 1, 2023, UTSA must only
enter or renew contracts to receive cloud computing services that comply with TX-RAMP
requirements.
What You Need to Do:
To ensure compliance, please take the following steps:
1. Identify any services that you engage with or plan to engage with that might be
considered cloud services.
2. Access the latest list of cloud computing services certified through
TX-RAMP<https://nam11.safelinks.protection.outlook.com/?url=https%3A%2...
to verify that any products/services you use are TX-RAMP compliant.
3. If you don’t see a product/service you are using or you plan to use on the list,
please contact
informationsecurity@utsa.edu<mailto:informationsecurity@utsa.edu?subject=TX%20RAMP>
as soon as possible. Failure to make contact prior to November 29, 2022 could stall or
halt a future cloud service purchase or renewal in 2023.
4. Note: some cloud computing services are considered exempt from TX-RAMP; Click here
for more
information<https://nam11.safelinks.protection.outlook.com/?url=https%...
Learn More:
For more information about TX-RAMP, check out our
website<https://nam11.safelinks.protection.outlook.com/?url=https%3A%2...;.
Thank you,
UTSA Office of Information Security
informationsecurity@utsa.edu<mailto:informationsecurity@utsa.edu>
The University of Texas at San Antonio
One UTSA Circle, San Antonio, TX, 78249
You are receiving this email because you are an employee of The University of Texas at San
Antonio. You can also view this email online<javascript:void(0);>.