“We’re From the Government and We’re Here to Help You” Privacy Initiatives at the U.S. Department of Education January 25, 2012 EDUCAUSE Webinar Kathleen.

Slides:



Advertisements
Similar presentations
National Forum on Education Statistics sponsored by the National Cooperative Education Statistics System and the National Center for Education Statistics.
Advertisements

FERPA - Sharing Student Information
Information for Students MGH Institute of Health Professions Use your down arrow or click your mouse to advance through the presentation.
The Family Educational Rights & Privacy Act (FERPA) & other statutes related to student information.
FERPA: UPDATE ON THE FAMILY EDUCATIONAL RIGHTS AND PRIVACY ACT Presented by Brenda V. S. Selman University Registrar-MU University of Missouri-Columbia.
Intro. Website Purposes  Provide templates and resources for developing early childhood interagency agreements and collaborative procedures among multiple.
Safeguarding Data to Ensure Effective Data Use Paige Kowalski |Director| State Policy & Advocacy July 2014.
FERPA Family Educational Rights and Privacy Act September 20, 2012Presented by: David Stocker General Counsel ACT, Inc.
Copyright Eastern PA EMS Council February 2003 Health Information Portability and Accountability Act It’s the law.
Privacy Laws & Higher Education. Agenda 1.Five Privacy Laws a.FERPA b.HIPAA c.GLB d.FACTA Disposal Rule e.CAN-SPAM 2.Overview of the Laws a.What does.
School-Based Health Centers & Confidentiality: Understanding FERPA & HIPAA Laurie Mesibov & Jill Moore UNC School of Government December 2012.
Privacy and Data Sharing in Higher Education: Open your Data, not Pandora’s Box August 9, SHEEO Higher Education Policy Conference Kathleen M.
FERPA: WHAT YOU SHOULD KNOW ILASFAA April 18, 2008 Amy Perrin Director of Financial Aid Elgin Community College.
March 4, 2015 U.S. Department of Labor U.S. Department of Education U.S. Department of Health and Human Services.
Insights on the Legal Landscape for Data Privacy in Higher Education Rodney Petersen, J.D. Government Relations Officer and Security Task Force Coordinator.
Protection of Personally Identifiable Information through Disclosure Avoidance Techniques Michael Hawes Statistical Privacy Advisor U.S. Department of.
Data Privacy: Third Parties, Vendors, & Nonprofits Baron Rodriguez (PTAC), Michael Hawes (DoED), & Mike Tassey (PTAC)
FAMILY EDUCATIONAL RIGHTS AND PRIVACY ACT Electronic Signatures This work is the intellectual property of the author. Permission is granted for this material.
Office of Safe and Drug-Free Schools Advisory Committee Meeting February 21, 2007.
8/28/2015 The Family Educational Rights and Privacy Act (FERPA)  Also known as the Buckley Amendment.  Statute: 20 U.S.C. 1232g; Regulations: 34 CFR.
CUI Statistical: Collaborative Efforts of Federal Statistical Agencies Eve Powell-Griner National Center for Health Statistics.
Data Sharing: Federal TA Efforts, What We Know & What We Need to Know 2013 IDEA Leadership Conference July 29, 2013.
FAMIS CONFERENCE Mari M. Presley, Assistant General Counsel Florida Department of Education June 14, 2011.
Family Educational Rights and Privacy Act (FERPA) Statute: 20 U. S. C
FERPA Update February 13-14, 2012 National Forum on Education Statistics San Diego, California Kathleen M. Styles Chief Privacy Officer U.S. Department.
Responsible Conduct of Research (RCR) Farida Lada October 16, 2013
SHEEO/NCES Breakout Session: Overview of the Privacy Technical Assistance Center May 5, 2011 Emily Anthony, National Center for Education Statistics Baron.
U.S. Department of Education Privacy Initiatives Kathleen M. Styles Chief Privacy Officer U.S. Department of Education April 18, 2011.
Computerized Networking of HIV Providers Workshop Data Security, Privacy and HIPAA: Focus on Privacy Joy L. Pritts, J.D. Assistant Research Professor Health.
Student Confidentiality: The FERPA/HIPAA Facts AISD Policy Student Records AISD Procedure AP. 11.
1 Secure Commonwealth Panel Health and Medical Subpanel Debbie Condrey - Chief Information Officer Virginia Department of Health December 16, 2013 Virginia.
THE FAMILY EDUCATION RIGHTS & PRIVACY ACT (FERPA) Presented by: Robin B. Snyder, Esquire.
Privacy Technical Assistance Center (PTAC)—Frequently Asked Questions Emily Anthony, NCES Baron Rodriguez, AEM Anthony Bargar, ESS Tom Szuba, QIP FAQs.
Mississippi Department of Education FERPA August 29, 2012 Raina Anderson Lee Special Assistant Attorney General Counsel for the MS Dept. of Education.
HIPAA Michigan Cancer Registrars Association 2005 Annual Educational Conference Sandy Routhier.
Family Educational Rights and Privacy Act (FERPA) Also known as the Buckley Amendment Statute: 20 U.S.C. § 1232(g) Regulations: 34 CFR Part 99.
Student Data and Confidentiality Parents Rights Schools’ Responsibilities.
FERPA & Record Keeping Bob Lichtenstein, Education Consultant Connecticut State Department of Education October, 2005.
1 National Audioconference Sponsored by the HIPAA Summit June 6, 2002 Chris Apgar, CISSP Data Security & HIPAA Compliance Officer Providence Health Plan.
Session Title: FERPA: What You Need To Know Presented By: Jeffery Loggins Institution: Mississippi Valley State University September 15, 2015.
FAMIS CONFERENCE Mari M. Presley, Assistant General Counsel Florida Department of Education June 12, 2012.
SLDS Technical Brief #1: Basic Concepts and Definitions for Privacy and Confidentiality in Student Education Records NCES Publication #
Special Education 101 Elementary Dept. Chair 1/27/2009 Confidentiality.
Privacy Panel: Information Sharing Between Education and Child Welfare Agencies and Access to Records CIP Conference July 2010.
U.S. Department of Education Safeguarding Student Privacy Melanie Muenzer U.S. Department of Education Chief of Staff Office of Planning, Evaluation, and.
When Can You Redact Information Without Requesting an Attorney General Decision? Karen Hattaway Assistant Attorney General Open Records Division Views.
Data Sharing: Federal TA Efforts, What We Know & What We Need to Know Improving Data Improving Outcomes Meeting September 2013 Washington, DC 1.
Configuring Electronic Health Records Privacy and Security in the US Lecture b This material (Comp11_Unit7b) was developed by Oregon Health & Science University.
Sharing Information (FERPA) FY07 REMS Initial Grantee Meeting December 5, 2007, San Diego, CA U.S. Department of Education, Office of Safe and Drug-Free.
FERPA for the Financial Aid Office NCASFAA Fall Conference November 2012.
101: Intro to the Privacy Technical Assistance Center (PTAC) Toolkit Emily Anthony, NCES Allison Camara, PTAC Alexandra Henning, PTAC Toolkit STATS-DC.
TASFAA 2016 Legacy of Leadership. TASFAA 2016 Legacy of Leadership Family Educational Rights and Privacy Act (FERPA) An Overview Molly Thompson Associate.
The Georgia Open Records Act and ferpa
FERPA & Data Security:FERPA & Data Security: Passwords and Authenticators.
Laws and Regulations. Family Educational Rights and Privacy Act Children’s Online Privacy Protection Act Protection of Pupil Rights Amendment Health Insurance.
Welcome to Workforce 3 One U.S. Department of Labor Employment and Training Administration Webinar Date: Thursday, October 23, 2014 Presented by: Division.
Overview of McKinney-Vento Homeless Education Under ESSA Office for the Education of Homeless Children and Youth March 2016.
Provide an overview of WIOA and the joint guidance Provide an overview of the Federal laws and regulations governing the use and disclosure.
FERPA Family Educational Rights and Privacy Act
Denise Chrysler, JD Director, Mid-States Region
Ask Matt – March 2012 – Family Educational Rights Privacy Act (FERPA)
Data Security and Privacy Overview: NJDOE’s Approach to Cybersecurity
An Update on FERPA and Student Privacy
Obligations of Educational Agencies: Parents’ Bill of Rights
Family Education Rights and Privacy Act
Stay on the Linking Path: Don’t Forget Privacy
Welcome to the FERPA training for Faculty and Staff.
Government Data Practices & Open Meeting Law Overview
Protecting Student Data
Presentation transcript:

“We’re From the Government and We’re Here to Help You” Privacy Initiatives at the U.S. Department of Education January 25, 2012 EDUCAUSE Webinar Kathleen M. Styles, Chief Privacy Officer Michael B. Hawes, Statistical Privacy Advisor

Presentation Overview  Overview of changes to FERPA regulations  Privacy initiatives at ED  Priorities for 2012  Interactive polls throughout 2

POLL #1 We’re presuming most of you are in the postsecondary community. Which part of the postsecondary community do you work in specifically? A.IT B.Registrar/Administration/Admissions C.Faculty D.Other postsecondary role E.Your assumption is wrong! I’m not part of the postsecondary community 3

Background: Student Privacy  FERPA enacted 1974  Move to electronic records  State longitudinal databases  2009 Fordham report  New risks and vulnerabilities 4

Breaches by Educational Institutions All varieties: hacking, loss of portable device, unintentional, insider breach, etc. Year Number of Breaches Number of Records ,886, ,019, , ,107, ,062, ,575, ,008 Source: Privacy Rights Clearinghouse 5

6 Received in an “You know how sometimes FERPA can tie your brain in a knot trying to think through it all?” Our Favorite FERPA Quote

Poll #2 Question: Which answer best characterizes your prior experience with FERPA? A.I’m a pro! I work with the statute and regs all the time B.I work with FERPA, but find it confusing C.I know what FERPA is, but don’t work with it often D.FERPA? What’s FERPA? 7

FERPA & Postsecondary Ed  FERPA Basics  Health and safety emergencies  Intersection with state and local laws 8

Early 2011 – ED Privacy Initiatives Begin FERPA Notice of Proposed Rulemaking Best Practices -- NCES Technical Briefs Privacy Technical Assistance Center (PTAC) Chief Privacy Officer 9

Late 2011: Building on Progress Regulatory changes PTAC best practice documents Privacy Advisory Committee Soliciting input 10

FERPA Regulatory Changes  274 Comments received  Final FERPA regulatory changes – December 2, 2011 Federal RegisterFederal Register – Effective January 3, 2012  The new regulations serve to: – Strengthen enforcement – Help ensure student privacy – Improve program effectiveness 11

New Definitions for Audits and Evaluations  Authorized Representative – Any entity or individual designated by a State or local educational authority or an agency headed by an official… to conduct—with respect to Federal- or State-supported education programs—any audit or evaluation, or any compliance or enforcement activity in connection with Federal legal requirements that relate to these programs (FERPA regulations, § 99.3).  Education Program – Any program principally engaged in the provision of education, including, but not limited to, early childhood education, elementary and secondary education, postsecondary education, special education, job training, career and technical education, and adult education, and any program that is administered by an educational agency or institution (FERPA regulations § 99.3). 12

FERPA Regulatory Changes – Audit and Evaluation  Authorized Representative  Written Agreements  Reasonable Methods  “Guidance on Reasonable Methods and Written Agreements” 13

FERPA Regulatory Changes – Studies Exception  State educational authorities acting on behalf of their constituent schools  Requirement for written agreements 14

POLL – Directory Information  Does your institution currently have a directory information policy? A.Yes, we have a directory information policy B.Sort-of. We have a policy, but it could use improvement C.No, we don’t have a directory information policy D.Directory information? What’s that? 15

FERPA Regulatory Changes – Directory Information  ID badges  Limited directory information 16

POLL – FERPA and Directory Information  In light of the recent FERPA reg changes, do you think your institution will change its directory information policy? A.Yes B.Maybe C.No D.We don’t have a policy 17

FERPA Regulatory Changes - Enforcement  Enforcement against entities without students  5 year ban 18

Priorities for 2012  Guidance and Best Practices  Inter-Agency Collaboration  Publishing Data While Protecting PII 19

Guidance! PTAC Initiatives – Move to CPO Office – Expansion to LEAs – Coordination with FPCO – Site visits and regional meetings – Helping organizations come into compliance Guidance Documents and Training Resources Case studies 20

Best Practices and Guidance Resources  Guidance on Reasonable Methods and Written Agreements Guidance on Reasonable Methods and Written Agreements  Data Stewardship: Managing Personally Identifiable Information in Electronic Student Education Records Data Stewardship: Managing Personally Identifiable Information in Electronic Student Education Records  Basic Concepts and Definitions for Privacy and Confidentiality in Student Education Records Basic Concepts and Definitions for Privacy and Confidentiality in Student Education Records  Responding to IT Security Audits: Improving Data Security Practices Responding to IT Security Audits: Improving Data Security Practices  Data Security: Top Threats to Data Protection Data Security: Top Threats to Data Protection  Data Security Checklist Data Security Checklist  Data Governance and Stewardship Data Governance and Stewardship  Data Governance Checklist Data Governance Checklist  Data Security and Management Training: Best Practice Considerations Data Security and Management Training: Best Practice Considerations 21

Inter-Agency Collaboration  Agriculture: Free and reduced price lunch data  Federal Trade Commission: Child ID theft  Health and Human Services: Early Childhood programs  Department of Justice: Patriot Act amendments to FERPA 22

Data Release Policy  Utility vs. privacy in data tables  Disclosure avoidance in an information-rich world  A need for more uniformity and rigor  Strong public interest  Data Release Working Group 23

Unsettled Questions  Cloud Computing  Video Recordings  24

Privacy AND Transparency  Culture of confidentiality  Maintaining transparency 25

Have Questions? 26 Family Policy Compliance Office Telephone:(202) FAX:(202) Website: Privacy Technical Assistance Center Telephone:(855) FAX:(855) Website:

Contact Information Kathleen Styles Chief Privacy Officer U.S. Department of Education (202) Michael Hawes Statistical Privacy Advisor U.S. Department of Education (202)

Poll - Feedback Question: How helpful did you find today’s webinar? A.Very helpful! B.Somewhat helpful. C.Not at all helpful. 28