A controlled method for learner data privacy is set out through cause analysis, assigned responsibility, outcome measures and closure evidence.
In assessing learner data privacy, its relevance to corrective action should be assessed against the affected jurisdiction, learner population and form of provision.
Application to learner data privacy
For the effectiveness of learner data privacy, the public interest is not confined to institutional compliance.
In the context of learner data privacy, effectiveness is the demonstrated change in the condition the action was intended to address.
The principal risks in relation to learner data privacy are excessive access to learner information, secondary use without adequate authority, collection without a defined educational or legal purpose, and inaccurate data affecting decisions. For learner data privacy, a weakness in one part of the control environment may obscure a related failure elsewhere.
Controls for learner data privacy
Assurance of the effectiveness of learner data privacy should draw on more than one form of evidence. Useful records include role-based access and access reviews, a register of information assets and purposes, lawful authority and consent records where relevant, retention and secure disposal evidence, and supplier and transfer arrangements.
Across the defined scope, decisions concerning corrective action should remain traceable to the information available for the stated reference period. For learner data privacy, changes in condition, evidence, method and interpretation should be recorded separately when a conclusion is revised.
- Verify accuracy where information affects learners.
- Test incident and recovery arrangements.
- Limit and review access, identifying the accountable function and affected scope.
- Provide accessible correction and complaint routes, identifying the accountable function and affected scope.
- Control third-party processing.
Review of learner data privacy
Review of corrective action should set a baseline and success measure before intervention, define the review period, compare the result with the intended outcome and examine adverse or unequal effects. For decisions concerning learner data privacy, continue monitoring long enough to determine whether the improvement is sustained.
For learner data privacy, governing bodies should receive a concise account of the intended result, affected scope, principal risks, evidence limitations and unresolved exceptions. Across the defined scope, the action record should identify who is responsible and when implementation is due. For learner data privacy, closure requires evidence that the condition has changed; completion of planned activity is not sufficient.
Implications for learner data privacy
The analysis of the effectiveness of learner data privacy should remain within the limits of the evidence.