{"schema_version":"ICEQC_NEWS_ARTICLE_V1","id":"iceqc-news-1e5dbf2bb92a9c62","slug":"2023-01-20-quality-evidence-for-learner-data-privacy","language":"en","publication_status":"READY_FOR_IMPORT","publication_date":"2023-01-20","last_modified_date":"2023-01-20","title":"Quality evidence for learner data privacy","summary":"Sets out the scope, decision criteria and evidential basis relevant to quality evidence for learner data privacy, including the treatment of material limitations.","category":{"code":"STANDARDS_INTERPRETATION","label":"Standards Interpretation"},"article_type":"Standards interpretation","publisher":"International Council for Education Quality Certification (ICEQC)","jurisdictional_scope":"International","historical_reference_basis":"Expansion of AI-enabled education services","reference_authority":"Relevant public authorities and official international sources","sections":[{"heading":null,"paragraphs":["In 2023, consideration of learner data privacy must take account of the expansion of AI-enabled education services and the responsibilities it places before education systems. Oversight of the assurance question should reflect the principle that a standard is effective only when its terms lead to consistent decisions without displacing professional judgement or applicable law. Different administrative structures may support the same public-interest outcome.","The historical reference basis is the expansion of AI-enabled education services. Its relevance to the control should be assessed against the affected jurisdiction, learner population and form of provision. In relation to quality evidence for learner data privacy, any consequential application should rest on evidence suited to the affected scope, not on the existence of an international development alone.","The quality significance of the relevant requirement follows from a basic distinction between availability and effective provision. A decision concerning the issue under review should recognise that education information should be collected for a defined purpose, protected in proportion to its sensitivity and retained only for an authorised period."]},{"heading":"Meaning in practice","paragraphs":["In practical terms, learner data privacy should be reviewed against a stated method rather than general assurance. Oversight of the control should reflect the principle that the subject should be examined as a connected system of policy, people, resources, decisions and evidence. Individually sound controls may not operate effectively when decisions, records or responsibility pass between functions. Those required to act should be able to understand the method and its material limitations.","The governing expectation for the control should be capable of consistent application. In reviewing the relevant requirement, evidence is sufficient when it is current, attributable, representative of the relevant scope and capable of being reconciled with other available records. Operational definitions should be precise enough to support consistent consequential decisions and explain justified variation."]},{"heading":"Responsibilities and material risks","paragraphs":["The principal risks in relation to learner data privacy are uncontrolled supplier access or transfer, excessive access to learner information, inaccurate data affecting decisions, and collection without a defined educational or legal purpose. In relation to quality evidence for learner data privacy, the relationship between the risks is material: one failed safeguard may remove the evidence needed to activate another."],"bullets":["Limit and review access.","Minimise collection.","Provide accessible correction and complaint routes, with responsibility, scope and timing recorded.","Control third-party processing.","Verify accuracy where information affects learners."]},{"heading":"Basis for a reliable conclusion","paragraphs":["The evidential record should be limited to material that can answer the question under review. For learner data privacy, the most relevant material is likely to include a register of information assets and purposes, retention and secure disposal evidence, supplier and transfer arrangements, and lawful authority and consent records where relevant. Independent records should be reconciled, with disagreement and uncertainty reported alongside the finding.","Implementation of the issue under review can be tested without imposing unnecessary reporting. For the control, the reviewer should map the complete process, identify the intended result and responsible authority at each stage, and test normal cases together with exceptions. The finding should state whether the condition is isolated, recurring or potentially systemic. Information should not be treated as sufficient merely because it is already available; its relevance to the present question must be established.","Interpretation of the control should produce a test that another competent reviewer can apply to comparable evidence."]},{"heading":"Maintaining effective oversight","paragraphs":["Care is required in drawing conclusions about learner data privacy. A decision concerning the stated expectation should recognise that security, privacy and data quality are related but distinct. A secure record may still be inaccurate or used without adequate authority, and a lawful use may still be poorly governed. The analysis of the relevant requirement proceeds on the basis that a prescribed method should not be treated as the only acceptable method where another approach establishes the same outcome with equivalent evidence. Decision-makers and affected users should receive the conclusion together with its material evidential limits.","Decisions concerning the issue under review should remain traceable to the information available for the stated reference period. Changes in condition, evidence, method and interpretation should be recorded separately when a conclusion is revised.","Where the relevant requirement involves partners, suppliers or several public bodies, responsibility should be mapped across the complete service. Agreements should allocate information exchange, incident escalation, learner communication, record custody and corrective authority. Division of delivery responsibilities must not create gaps in learner protection.","The appropriate response to the issue under review is therefore one of controlled implementation and review. The decision record should connect the stated objective to suitable evidence and the position of those affected. Assurance should be withheld for the affected scope until the limitation is resolved."]}],"word_count":760,"content_hash":"sha256-5b1337034011efa712e7e6ffe62a2ca496eb9d5e74dd2c36d43e59168eb8092e","seo_keywords":["quality evidence for learner data privacy","education quality standards","education quality","ICEQC"],"schema_type":"TechArticle"}
