Best Practice Update

A mobile phone with lots of apps held in a hand.  The word fake in navy on an orange background.  Data Protection Education logo

We recommend completing due diligence on any third party suppliers that you share personal data with.  We recommend that you do this BEFORE purchasing, installing and using the product to share information.  Our Knowledge Bank platform has a Supplier Due Diligence Best Practice area to help with this and lists many suppliers that we have done some generic risk assessments on.  Ensuring due diligence is part of your procurement process for apps means that someone is less likely to

Meeting DfE Digital standards in schools and colleges in orange and white text. Children in the background smiling or working. Children in a small circle graphic on laptops.  Data Protection Education logo in blue on an orange background

The DfE have recently published an update to their meeting digital and technology standards in schools and colleges, with three new sections:
Digital Accessibility Standards
Digital Leadership and Governance Standards
Laptop, desktop and tablet standards

Data breach in orange text on a computer screen with computer data behind it

Security researchers and computing blogs are reporting 'the mother of all breaches' in reference to a data breach where billions of records have been breached.  The dataset doesn't come from one single breach but a compilation of multiple data breaches.  

International Data Transfers (part 1):  Navigating Cross-Border Data Transfers: Understanding EU SCCs, UK Addendum, and UK IDTA

The first in a seriers on International Data Transfers..
Navigating Cross-Border Data Transfers: Understanding EU SCCs, UK Addendum, and UK IDTA

In the ever-evolving landscape of global data protection, we are continually challenged to ensure the secure and lawful transfer of personal data across borders. The European Union (EU) has long been a frontrunner in establishing data protection standards, and its regulations have far-reaching implication

Data breach in orange text in computing font on a computer screen with computer code in blue text

A number of schools have reported a data breach by ClassCharts this week.  ClassCharts is school management software that allows teachers to create a customisable classroom seating chart.  It can also be used to track student behaviour, reading levels and other student data.

  1. Where is your data stored?
  2. IAPP looks at AI privacy risks
  3. If you suspect a financial scam .....
  4. School Focus: St Bernadette's Catholic Primary School | Brighton
  5. Guardians of Privacy: 16. Social Media Checklist
  6. Guardians of Privacy: 15. Navigating Social Media in Educational Settings Summary
  7. Guardians of Privacy: 14. Social Media and Cyber Bullying
  8. Guardians of Privacy: 13. Social Media, Copyright and Intellectual Property
  9. Guardians of Privacy: 12. Social Media and Going Viral
  10. Guardians of Privacy: 11. Staff Social Media Accounts
  11. Guardians of Privacy: 10. Social Media and Cookies
  12. Guardians of Privacy: 9. Social Media and Morality
  13. New Resources for Schools from the ICO
  14. Guardians of Privacy: 8. Social Media Policies
  15. Guardians of Privacy: 7. Social Media Data Retention
  16. Guardians of Privacy: 6. Posting Safely
  17. Guardians of Privacy: 5. Social Media and Consent
  18. Guardians of Privacy: 4. Social Media Access Control
  19. Guardians of Privacy: 3. Social Media Channels
  20. Guardians of Privacy: 2. Law and Regulations
  21. Guardians of Privacy: 1. Social media, privacy and children
  22. The ICO reprimands a Multi Academy Trust
  23. KCSIE: Filtering, Monitoring and Privacy
  24. Guidance for the use of school email and applying email retention in schools
  25. Data Protection Tips for Early Years Settings
  26. Children's Privacy around the world is a puzzle
  27. Trust Initial Plan Checklist Update
  28. Records Management Best Practice Update
  29. Governors and Data Best Practice Area Update
  30. What do I need to redact?
  31. Trust Initial Plan for Data Protection Compliance (for Multi Academy Trusts)
  32. Google for Education Resources: Helping IT Admins meet DfE digital and technology standards
  33. Lettings Best Practice and Guidance
  34. Considerations when migrating to a new MIS
  35. Public bodies and sensitive data
  36. Get a DPE Badge for your website!
  37. ICO: 10 Step guide to sharing information to safeguard children
  38. Help after a Cyber Attack/Incident
  39. Data Protection and Cyber Security (Inset Day) Training Ideas
  40. How KCSIE is linked to Cyber Strategy
  41. Handling Freedom of Information Requests the right way
  42. Where's Harry the Hacker?
  43. The ICO Reprimands a school
  44. Subject Access Requests (SARs)
  45. Redaction Guidelines Updated
  46. Using WhatsApp in Schools
  47. How to contact us for support, subject access requests, data breaches and FOI's
  48. FOI: Reinforced Autoclaved Aerated Concrete
  49. FOI: Henry Jackson Society
  50. FOI: Vaccination Justifications
  51. How the Record of Processing Can Help You
  52. What does a Data Protection Officer Do?
  53. Blog: Best Practice on the Retention of Child Protection Information
  54. Carrying out Supplier Due Diligence
  55. Email and retention periods
  56. How Long Should You Keep Personal Data For?
  57. Sharing this year’s Nativity play online
  58. A quick introduction to the Phishing Simulation tool
  59. B&H FoI: Racist/religious incidents/bullying
  60. Protocol for Setting Up and Delivery of Online Teaching and Learning
  61. Class Dojo International Data Sharing
  62. Model Publication Scheme: Amendments, Improvements and Updates
  63. Transparency
  64. Parents and students covertly recording conversations
  65. SAR? ER? FOI?
  66. Research projects and GDPR
  67. Secure file transfer of files using Royal Mail
  68. Emergency contacts and consent
  69. Key elements of a successful DPIA
  70. FOI Publication Schemes
  71. Best Practice for Managing Photos and Video
  72. New Drip Feeds: Recognise and Respond to Subject Access Request
  73. When to contact the Data Protection Officer?
  74. National child measurement programme
  75. Make sure DPE is your registered DPO with the ICO
  76. Headteacher fined for breach of data protection legislation

Search