University of Maryland

Software Review Process

As this is a new and evolving topic, the

There are two independent but connected steps to USE or purchase ANY software (including free clickthrough agreements) on the UMD campus:

  • Software risk review
  • Procurement review

What can be used without review?

 

What’s Required

 

How long does it take?

In total, the process may take as long as 3-4 months.

Software risk review takes 3-4 weeks after receipt of all required documents. Procurement review length depends on the terms that may need to be negotiated, and how responsive the company is.

What must be reviewed?

All software used for academic, research, and administrative purposes must be reviewed, even if they’re free.

What is the Campus looking for?

  • ADA: Compliance with campus and federal ADA guidelines and regulations, regardless of whether a tool is required for class or departmental work.
  • Data Privacy: How the vendor will store and use university data.
  • IT Compliance: Whether the third-party providers meet legal requirements, helping the university avoid penalties, audit findings, legal issues and protecting the university reputation.
  • Procurement: alignment with UMD purchasing requirements, State of Maryland policies and law, indemnification, and reoccurring procurement terms without review.