Best Practice Update

Collage of photos: Harry the Hacker, Where's Harry training poster, seats at a training session, data protection education bag

Schools are back in full swing, and so is our work at Data Protection Education! This week, we’ve been busy with data walks, on-site training, and booking meetings across various schools to ensure data protection standards are up to date and effective.

Knowledge Bank update in blue text. data protection education logo.  Orange and blue circles in the back ground.  A phone and laptop with the knowledge Bank best practice area.   Cyber security best practice in navy text on an orange circle

🛡️✅ Gone are the days when cyber security issues meant accidentally downloading a virus, it has grown to mean so much more, where data and identities are stolen, fraud is committed and businesses can be shut down from a cyber attack.  With that in mind we have created a cyber security best practice area to help guide and support your data protection compliance.

  1. New Policies, Documents, Letters and Posters page
  2. Schools and Trusts Best Practice Area
  3. The DPE Retention Schedule
  4. Making the Rounds Update (now includes reporting)
  5. ESFA Cyber Essentials Requirement for Colleges from 2024/2025
  6. ICO Reprimands a School
  7. Navigating Privacy at the End of Term , Special Occasions and End of Year
  8. Out of date technology
  9. Data Retention and the Pupil File
  10. Have you assigned your SLT Digital Lead yet?
  11. Getting Started with AI (Artificial Intelligence)
  12. Cyber attack on a school during half term
  13. Update to the DfE Digital Cyber Security Standards for Schools and Colleges (May 2024)
  14. The rise of cyber attacks in schools are causing pupils to miss classes
  15. ICO: Learning from the mistakes of others report
  16. Cyber attack on a Trust; the aftermath
  17. School Focus: The Vale Federation | Aylesbury
  18. DfE Dealing with Subject Access Requests (SARs) Guidance
  19. Update to the Guidance on Information Sharing from the DfE
  20. FOI Requests generated by Artificial Intelligence
  21. Social Media Best Practice Area
  22. Lettings Best Practice Area
  23. Appropriate filtering and monitoring definitions
  24. MFA Bombing - What is it?
  25. Protecting your Social Media Accounts
  26. Why we recommend using checklists
  27. Product Focus on Checklists : Initial Trust Plan
  28. Product Focus on Checklists : End of Term Checklist
  29. Product Focus on Checklists : Information and Cyber Security
  30. Product Focus on Checklists : Social Media
  31. Product Focus on Checklists : Lettings
  32. Product Focus on Checklists : Record of Processing
  33. Milk Island: The secret location that allows children to view restricted content on Google Maps
  34. Why Data Should Stay Put: Benefits of Keeping Data in Its Original System
  35. Product Focus on Checklists : Data Retention and Destruction
  36. Product Focus on Checklists : Data Migration
  37. Product Focus on Checklists : Biometrics
  38. Product Focus on Checklists : Supplier Due Diligence
  39. Free Cyber help, advice and training with the Cyber Resilience Centres
  40. The Perils of Paper: The Printing Vulnerability
  41. Product Focus on Checklists : FOI
  42. Product Focus on Checklists : Governors and Data
  43. Product Focus on Checklists : DPIA
  44. Product Focus on Checklists : Site Moves
  45. Product Focus on Checklists : Data Breaches
  46. Product Focus on Checklists : Subject Access Requests
  47. Product Focus on Checklists : Bring your own device
  48. Product Focus on Checklists : Working out of school/offsite
  49. Cyber Attack on a School
  50. Product Focus on Checklists : Redaction
  51. Why Due Diligence is Important: Fake apps
  52. Product Focus on Checklists : CCTV
  53. Product Focus on Checklists : Clear desk
  54. Product Focus on Checklists : Commitment to compliance
  55. Product Focus on Checklists : Photos and video
  56. Product Focus on Checklists : Passwords
  57. Product Focus on Checklists : Information Classification
  58. Free cyber training for staff
  59. DfE Digital Standards Update
  60. The Mother of all Breaches
  61. International Data Transfers (part 1): Navigating Cross-Border Data Transfers: Understanding EU SCCs, UK Addendum, and UK IDTA
  62. ClassCharts Possible Data Breach
  63. Where is your data stored?
  64. IAPP looks at AI privacy risks
  65. If you suspect a financial scam .....
  66. School Focus: St Bernadette's Catholic Primary School | Brighton
  67. Guardians of Privacy: 16. Social Media Checklist
  68. Guardians of Privacy: 15. Navigating Social Media in Educational Settings Summary
  69. Guardians of Privacy: 14. Social Media and Cyber Bullying
  70. Guardians of Privacy: 13. Social Media, Copyright and Intellectual Property
  71. Guardians of Privacy: 12. Social Media and Going Viral
  72. Guardians of Privacy: 11. Staff Social Media Accounts
  73. Guardians of Privacy: 10. Social Media and Cookies
  74. Guardians of Privacy: 9. Social Media and Morality
  75. New Resources for Schools from the ICO
  76. Guardians of Privacy: 8. Social Media Policies
  77. Guardians of Privacy: 7. Social Media Data Retention
  78. Guardians of Privacy: 6. Posting Safely
  79. Guardians of Privacy: 5. Social Media and Consent
  80. Guardians of Privacy: 4. Social Media Access Control
  81. Guardians of Privacy: 3. Social Media Channels
  82. Guardians of Privacy: 2. Law and Regulations
  83. Guardians of Privacy: 1. Social media, privacy and children
  84. The ICO reprimands a Multi Academy Trust
  85. KCSIE: Filtering, Monitoring and Privacy
  86. Guidance for the use of school email and applying email retention in schools
  87. Data Protection Tips for Early Years Settings
  88. Children's Privacy around the world is a puzzle
  89. Trust Initial Plan Checklist Update
  90. Records Management Best Practice Update
  91. Governors and Data Best Practice Area Update
  92. What do I need to redact?
  93. Trust Initial Plan for Data Protection Compliance (for Multi Academy Trusts)
  94. Google for Education Resources: Helping IT Admins meet DfE digital and technology standards
  95. Lettings Best Practice and Guidance
  96. Considerations when migrating to a new MIS
  97. Public bodies and sensitive data
  98. Get a DPE Badge for your website!
  99. ICO: 10 Step guide to sharing information to safeguard children
  100. Help after a Cyber Attack/Incident
  101. Data Protection and Cyber Security (Inset Day) Training Ideas
  102. How KCSIE is linked to Cyber Strategy
  103. Handling Freedom of Information Requests the right way
  104. Where's Harry the Hacker?
  105. The ICO Reprimands a school
  106. Subject Access Requests (SARs)
  107. Redaction Guidelines Updated
  108. Using WhatsApp in Schools
  109. How to contact us for support, subject access requests, data breaches and FOI's
  110. FOI: Reinforced Autoclaved Aerated Concrete
  111. FOI: Henry Jackson Society
  112. FOI: Vaccination Justifications
  113. How the Record of Processing Can Help You
  114. What does a Data Protection Officer Do?
  115. Blog: Best Practice on the Retention of Child Protection Information
  116. Carrying out Supplier Due Diligence
  117. Email and retention periods
  118. How Long Should You Keep Personal Data For?
  119. Sharing this year’s Nativity play online
  120. A quick introduction to the Phishing Simulation tool
  121. B&H FoI: Racist/religious incidents/bullying
  122. Protocol for Setting Up and Delivery of Online Teaching and Learning
  123. Class Dojo International Data Sharing
  124. Model Publication Scheme: Amendments, Improvements and Updates
  125. Transparency
  126. Parents and students covertly recording conversations
  127. SAR? ER? FOI?
  128. Research projects and GDPR
  129. Secure file transfer of files using Royal Mail
  130. Emergency contacts and consent
  131. Key elements of a successful DPIA
  132. FOI Publication Schemes
  133. Best Practice for Managing Photos and Video
  134. New Drip Feeds: Recognise and Respond to Subject Access Request
  135. When to contact the Data Protection Officer?
  136. National child measurement programme
  137. Make sure DPE is your registered DPO with the ICO
  138. Headteacher fined for breach of data protection legislation

Search