Implementation Update: Enhancing Security Measures for NIH Controlled-Access Data
Notice Number:
NOT-OD-25-083

Key Dates

Release Date:

April 2, 2025

Related Announcements

  • September 24, 2025 – NIH Policy on Enhancing Security Measures for Human Biospecimens. See notice NOT-OD-25-160
  • September 24, 2025 – Required Security and Operational Standards for NIH Controlled-Access Data Repositories. See notice NOT-OD-25-159
  • July 25, 2024 – Implementation Update for Data Management and Access Practices Under the Genomic Data Sharing Policy. See notice NOT-OD-24-157
  • August 27, 2014 – NIH Genomic Data Sharing Policy. See notice NOT-OD-14-124

Issued by

Office of The Director, National Institutes of Health (OD)

Purpose

NIH takes oversight of security including confidentiality, integrity, and availability of participant data very seriously.  In support of recent security directives, NIH is implementing a technical update to enhance security measures focused on protecting data provided by NIH Controlled-Access Data Repositories.

Specifically, as of April 4, 2025, NIH is prohibiting access to NIH Controlled-Access Data Repositories and associated data by institutions located in countries of concern. These countries include China (including Hong Kong and Macau), Russia, Iran, North Korea, Cuba, and Venezuela, consistent with EO 14117 and 28 CFR Part 202 “Preventing Access to U.S. Sensitive Personal Data and Government-Related Data by Countries of Concern or Covered Persons.

Inquiries

Please direct all inquiries to:

NIH Office of Science Policy

[email protected]