This site requires JavaScript to be enabled
An updated version of this article is available

Web Governance Policy

35 views

7.0 - Last modified on 2025-12-17 Revised by Anna Campbell

6.0 - Last modified on 2024-10-21 Revised by Anna Campbell

5.0 - Last modified on 2023-02-03 Revised by Anna Campbell

4.0 - Last modified on 2021-07-20 Revised by Barb Kronkow

3.0 - Last modified on 2021-06-08 Revised by Anna Campbell

2.0 - Last modified on 2021-06-08 Revised by Barb Kronkow

1.0 - Last modified on 2021-05-26 Revised by Eileen Crowley (Inactive)

1.  Purpose

This policy establishes roles and responsibilities for governance of web content within the Fermilab web presence and the minimum requirements that website owners must meet in order to make content accessible via the Fermilab web presence. This policy uses a graded approach that ensures that the Fermilab web presence supports the laboratory’s scientific mission through a consistent and current web environment that maintains the reputation of the laboratory.

2.  Scope

This policy covers all web content in Fermilab-owned domains, regardless of whether the content is hosted on servers within or outside the Fermilab network.

3.  Applicability

This policy applies to all employees, users and contractors who create or maintain websites within all Fermilab web environments.

4.  Effective Date and Date Reviewed/Updated

This policy went into effect on October 1, 2015 and its update was effective on May 26, 2021.

5.  Policy

5.1 Governance

Overall governance for Fermilab’s web presence resides within the Office of Communication, with input from divisions, sections and users obtained through the Web Governance Committee. Governance is more tightly controlled in areas where there is external or labwide internal exposure.

Site owners and content editors are responsible for maintaining a clear understanding of how their websites or webpages are affected by web governance and IT policies and procedures. Site owners and content editors are responsible for ensuring their sites or pages follow all applicable security, access, branding, layout, structure, style, content guidelines, and maintenance rules as outlined in web governance and IT policies, procedures and guidelines.

5.2. Graded approach to web governance

The level of web governance rigor implemented by the Office of Communication for any given website will be determined using a graded approach that is based on a website’s intended audience and function; method of user access; and entity that owns the website.

The primary function of the graded approach is to provide an initial determination of (1) whether a site will undergo review by the Office of Communication and (2) the likely need for approvals of site branding and content and expected update frequency. Final decisions on required approvals for site ownership, branding and content, and minimum update frequency will be made by the Office of Communication on a case-by-case basis.

The level of web governance rigor implemented by the Office of Communication for any given website will be determined using a graded approach that is based on a website’s intended audience and function; method of user access; and entity that owns the website.

The primary function of the graded approach is to provide an initial determination of (1) whether a site will undergo review by the Office of Communication and (2) the likely need for approvals of site branding and content and expected update frequency. Final decisions on required approvals for site ownership, branding and content, and minimum update frequency will be made by the Office of Communication on a case-by-case basis.

Before any Fermilab website is created, significantly changed or upgraded to a new technology, the website owner is responsible for demonstrating the necessary web skills and competence for supporting web updates, conducting an evaluation of the site according to the criteria below, documenting the results and following the appropriate governance procedure depending on the level indicated.

The levels of web governance are:

High: Websites meeting the “high” criteria will automatically undergo review by the Office of Communication. After initial review, the Office of Communication will approve or deny public visibility if requested and document the high-level requirements for site branding, content and review/update frequency as well as any required additional approvals before the site can go into production.

In most cases, sites meeting the “high” criteria will be required to

Moderate: Websites meeting the “moderate” criteria will automatically undergo review by the Office of Communication; however, high-level requirements for site branding, content and review/update frequency will typically be less rigorous than for sites meeting the “high” criteria. After initial review, the Office of Communication will approve or deny public visibility if requested and document the high-level requirements for site branding, content and review/update frequency as well as any required additional approvals before the site can go into production.

In many cases, sites meeting the “moderate” criteria will be required to

Low or Minimal: Websites meeting the “low” or “minimal” criteria will not be presented to the Office of Communication for review before they go into production. As with all laboratory-supported websites, sites meeting the “low” or “minimal” criteria must still meet all applicable IT policies and requirements as specified by the laboratory.

 

 

Governance level

Intended Audience

Authentication, visibility

Website owner

Intended function

High

(If one or more of the specified criteria apply)

Public, including industrial partners, vendors, funding agencies, job candidates

All employees and/or all users

 

 

Public Relations

Public Outreach

Recruitment

Moderate

(If one or more of the specified criteria apply)

Large subset of employees or users (division/section/
large scientific collaboration)

 

Off-site, unauthenticated

 

 

 

Major laboratory unit(s), including laboratory-managed DOE Order 413 projects

Scientific collaboration or external laboratory-affiliated group

 

Low

(If none of the High or Moderate or Minimal criteria apply)

Small subset of employees (department, group)

Authenticated

On-site only, unauthenticated

 

Laboratory sub-unit/club

Individual employee or user

Information

Collaborative work

Archival

Minimal

(If none of the High or Moderate criteria apply)

 

 

 

Web application or service

Database

 

6.  Definitions

Fermilab web presence: All web accessible information in Fermilab-owned domains.

Website: A set of one or more webpages and related content under a subdomain.

Webpage: A document reachable at one URL on the web with a client such as a browser.

Site owners: People who own and are directly responsible for managing a website.

Content editors: People who have the authority and access, as designated by site owners, to modify some or all of the content of a website.

 

Authentication and visibility: Authenticated - a user or system is always required to provide credentials to view or access information. Unauthenticated - information is publicly accessible on the open internet (off-site) or only from within the network (on-site only).

7.  Responsibilities

 

Office of Communication

 

  • Set standards for website/webpage maintenance and ownership.
  • Maintain overall governance of the Fermilab website. Ensure website/webpage owners follow web maintenance and brand standards.
  • Set priorities for Fermilab’s web program.
  • Create look and feel (branding) and high-level messaging across the web (intranet, internet and collaboration sites).
  • Provide and maintain web templates and style guides.
  • Own and maintain content of top-level Fermilab public relations pages.
  • Approve subdomain names in the Fermilab web presence.
  • Authorize public visibility for web content.
  • Oversee the labwide web taxonomy.

 

Office of the CIO

  • Establish labwide web technology, development and cybersecurity standards and guidelines.

  • Support web infrastructure and content management system platforms.

  • Set cybersecurity processes to ensure that the information systems at Fermilab are operated at an appropriate level of risk.

Web Governance Committee

  • Serve as advisor on new web templates based on laboratory branding.

Site Owners and Content Editors

  • Ensure the processes and procedures required by this and any applicable information technology (IT) policies are followed.

  • Ensure web content made accessible via their websites is properly maintained and updated.

  • Ensure web style guide compliance.

 

 

 

8.  Authorities

  Fermilab Policies

  • Fermilab IT Policies
  • Records Management Policy
  • Policy on Communication

  Overarching Policies for all Federal Websites

Overarching policies covering basic requirements for all federal websites and
digital services:

 

9.  Owner

This policy is owned by the head of the Office of Communication.

10.  Review Cycle

This policy shall be reviewed every 2 years.

11.  Communication Plan

This policy shall be available in the Fermilab policy database and linked from the “Request a Website” form in Service Now.

A printable version of this policy or procedure can be located at the following URL:

http://directorate-docdb.fnal.gov/cgi-bin/RetrieveFile?docid=31