Jump to content

Best Data Handling Procedures and Safeguarding/Forensic Investigation Policy


Recommended Posts

Posted

Hi all,

 

Over summer I have been tasked with creating two reports:

 

1) The creation of a report which uses information from the DFE, ICO and any other valid sources for best data handling practices in a school context. Applying not only to data stored in SIMS or electronically; but paper too. The main focus of this is data protection.

 

2) Creation of a policy/best practice strategy that can be used in the event of an incident by a third party or an internal school member to maintain integrity during the investigation of any issue that requires the assessment of ICT equipment. Such as chain of custody etc. The ultimate aim is to create a 'go to' document that will promote the necessary steps to ensure investigations are being carried out lawfully without interfering with the integrity of any potential evidence.

 

I was wondering how this is done in your schools? Do you simply follow DFE or ICO guidance, have you created or had input in the creation of your own policies that are used across your school? Would anybody be so kind to give me some insight in to your own policies and what areas you have covered? If anybody is prepared to share there policies it would be greatly appreciated.

 

Thanks a bunch,

  • 2 weeks later...
Posted
If there's an incident so serious it needs a chain of custody, sounds like you should just let the police handle it. Lock the device in a safe, disable the account, make a copy of network files and put that in the safe.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...