There Is a Newer Version
of
this Section
2022 Georgia Code
Title 20 - Education
Chapter 2 - Elementary and Secondary Education
Article 15 - Student Data Privacy, Accessibility, and Transparency
§ 20-2-663. Designation and Role of Chief Privacy Officer
Universal Citation:
GA Code § 20-2-663 (2022)
Learn more
This media-neutral citation is based
on the American Association of Law Libraries Universal Citation Guide and is not
necessarily the official citation.
- The State School Superintendent shall designate a senior department employee to serve as the chief privacy officer of the department to assume primary responsibility for data privacy and security policy, including:
- Establishing department-wide policies necessary to assure that the use of technologies sustains, enhances, and does not erode privacy protections relating to the use, collection, and disclosure of student data;
- Ensuring that student data contained in the state data system is handled in full compliance with this article, the federal Family Educational Rights and Privacy Act, and other state and federal data privacy and security laws;
- Evaluating legislative and regulatory proposals involving use, collection, and disclosure of student data by the department;
- Conducting a privacy impact assessment on legislative proposals, regulations, and program initiatives of the department, including the type of personal information collected and the number of students affected;
- Coordinating with the Attorney General’s office and other legal entities as necessary to ensure that state programs, policies, and procedures involving civil rights, civil liberties, and privacy considerations are addressed in an integrated and comprehensive manner;
- Preparing an annual report to the General Assembly on activities of the department that affect privacy, including complaints of privacy violations, internal controls, and other matters;
- Working with the department general counsel and other officials in engaging with stakeholders about the quality, usefulness, openness, and privacy of data;
- Establishing and operating a department-wide Privacy Incident Response Program to ensure that incidents involving department data are properly reported, investigated, and mitigated, as appropriate;
- Establishing a model process and policy for any parent to file complaints of privacy violations or inability to access his or her child’s education records against the responsible local board of education pursuant to Code Section 20-2-667; and
- Providing training, guidance, technical assistance, and outreach to build a culture of privacy protection, data security, and data practice transparency to students, parents, and the public among all state and local governmental education entities that collect, maintain, use, or share student data.
- The chief privacy officer may investigate issues of compliance with this article and with other state data privacy and security laws by the department and local boards of education and may:
- Have access to all records, reports, audits, reviews, documents, papers, recommendations, and other materials available to the department that relate to programs and operations with respect to the responsibilities of the chief privacy officer under this Code section;
- Make such investigations and reports relating to the administration of the programs and operations of the department as are necessary or desirable; and
- In matters relating to compliance with federal laws, refer the matter to the appropriate federal agency and cooperate with any investigations by such federal agency.
History. Code 1981, § 20-2-663 , enacted by Ga. L. 2015, p. 1031, § 1-1/SB 89.
U.S. Code.
The Family Educational Rights and Privacy Act, referred to in this Code section, is codified at 20 U.S.C. § 1232 g.
Disclaimer: These codes may not be the most recent version. Georgia may have more current or accurate information. We make no warranties or guarantees about the accuracy, completeness, or adequacy of the information contained on this site or the information linked to on the state site. Please check official sources.
This site is protected by reCAPTCHA and the Google
Privacy Policy and
Terms of Service apply.