Core Principles of Data Protection

And the rights of individuals 

Core Principles of Data Protection 
Data must be processed lawfully, fairly and in a transparent manner
Data must be collected for specified, explicit and legitimate purposes
The data collected must be adequate, relevant and limited to what is needed
Data should be accurate, and where necessary, kept up to date
Data is kept no longer than necessary for the processing
Data must be processed in a manner that ensures appropriate security by technical and organisational measures


The Rights of Individuals
To be informed
To access
To rectification
The right to object to processing
The right to restrict processing
The right to erasure or the right to be forgotten
The right to data portability
Rights in relation to automated decision making and profiling
Schools have responsibility but not control over pupils’ data

Schools have responsibility but not control over pupils’ data

New report states “Schools have responsibility but not  control over pupils’ data”  A new report by the Digital Futures Commission recommends that the government ‘s Data Reform Bill should regulate data taken by educational technologies (EdTech) services widely used...

New school resources for teachers

New school resources for teachers

The ICO has produced a suite of school resources for teachers to use when discussing privacy issues and the value of personal data. The lesson plans cover what counts as personal data, why it’s valuable and how to keep it safe when using social media. The resources...

Are Educational Institutions at risk from a phishing attack?

Are Educational Institutions at risk from a phishing attack?

Absolutely they are!  The Cyber Breaches 2022 Survey Education Annex has some brilliant insights into what educational institutions are currently facing in terms of cybercrime and as in previous years, phishing is the top detected cyber-attack and it’s easy to see...