16

2009 – Current:President, ProctorU Inc. 2007 – Current:Business Standards Evaluator, Accreditation Reviews, DETC site visit teams 2005-2010:President,

Embed Size (px)

Citation preview

E. Donald (Don) Kassner

2009 – Current: President, ProctorU Inc.

2007 – Current: Business Standards Evaluator, Accreditation Reviews, DETC site visit teams

2005-2010: President, Andrew Jackson University

2003-2009: Economics Faculty, San Jose State University

1984-2005: Finance & Operations, various silicon valley data, hosting, web & software firms

The CloudWhere is your data stored?

FERPA

The Family Educational Rights and Privacy Act (FERPA) (20 U.S.C. § 1232g; 34 CFR Part 99) is a Federal law that protects the privacy of student education records. The law applies to all schools that receive funds under an applicable program of the U.S. Department of Education.

Protects:

Education RecordsPersonally Identifiable Information (PII)

Storing Records

• Applicant Data

• Active Student Data

• Course Data

• Finance Data

• Graduate/Alumni Data

• Outcomes Data

Creating Records• Student Recruitment

• Enrollment Systems

• Learning Management Systems

• Student Information Systems

• Testing• Polling & Tutoring

• Housing

• Graduate & Alumni

• Donors

Distributing Records

• To Students and Family

• To Faculty and Administrators

• To Infrastructure Staff and Network Administrators

• To Vendors and Subcontractors

• To Government, Accreditors, Financial Institutions

FERPA Violations

• Intentional & Systematic

• Unintentional Data Breach

• Loss of Title IV Participation

• Loss of access

FERPA Violations

• Lawsuit

• Scandal

• Fines

• Accreditation Risk

(More Likely)

Risk Management

• Nothing is Cheat Proof

• Nothing is Hack Proof

• Nothing is Fail Safe

• Not if, but WHEN

Recent Incidents

Higher Education Incidents

• University of Nebraska

• University of Nevada

• UNCC

• BCIT

• Wealth Engine

• University of Florida

• University of North Florida

• University of Virginia

Understanding Why

• People Make Mistakes

• People Get Mad

• People Get Greedy

• People Fight for a Cause

What Can I Do?

• Legal Strategies

• Data Collection Strategies

• Data Protection Strategies

• Data Breach Strategies

• Data Breach Response Plan

• Risk Assessment

• Training Faculty, Staff, Administrators, Students, and Vendors

Questions?

www.ProctorU.com