How we can help your school
Practically all schools are required by law to appoint a data protection officer. As education solicitors, HY Education can act as your school’s Data Protection Officer, as well as offering proactive compliance support.
What we do as DPOData Protection can be difficult to understand at first, but with our education sector expertise, we can give you the confidence to run your school feeling compliant and supported. We understand that a school’s top priority is education, so we’re here to advise on complex legal matters so you can get back to what matters most.
GDPR requirements
Under the GDPR, a data Protection Officer must:
- Have expertise in national and European data protection law and practices
- ✓
- Have an in-depth understanding of the GDPR
- ✓
- Have good knowledge of the sector of the organisation it is designated to
- ✓
- Operate with integrity and high professional ethics; and
- ✓
- Not have a conflict of interest i.e. be someone in a position of seniority that makes data processing decisions
- ✓
What we do as DPO
- Provide unlimited telephone and email advice from education and data protection specialist lawyers
- Act as the school's contact point with the ICO
- Help you manage subject access requests, providing advice on redaction and exclusions and drafting correspondence
- Record and advise your school on data breaches including assessing whether a breach has crossed the reporting threshold
- Provide regular video bulletins which can be shared with personnel as a means of continuous development
Our Compliance Programme
- We will conduct a comprehensive information audit to create the school's Article 30 record of processing activities
- Provide a full documentation suite including privacy notices, data protection policy, data breach procedure, information access procedures and more
- Provide training specifically tailored to your school's stakeholders including govenors, SLT and all staff members
- Conduct Data Protection Impact Assessments