Skip To Main Content

Dothan City Schools Data Governance Policy

Overview


The Data Governance policy defines how Dothan City Schools (DCS) ensures its data remains accurate, accessible, consistent, and secure during operations and instruction. The document establishes who is responsible for information under various circumstances and specifies the procedures to be used to manage and protect it.

The Superintendent is authorized to establish procedures governing the storage, use, and sharing of data maintained electronically by the school system. Such procedures shall comply with applicable state and federal law and shall include provisions for data security (including physical security measures), access controls, quality control, and data exchange and reporting (including external data requests, and third-party data use). Nothing in this policy or in any procedures authorized hereunder creates or expands any entitlement to confidentiality of records beyond that which is established by law or specific Board policy.

Any unauthorized access, use, transfer, or distribution of Board data by any employee, student, or any other individual may result in disciplinary action (up to and including termination for employees) and other legal action.

Supplemental documents referenced in this policy are administrative implementation documents maintained by the Superintendent or designee and may be revised as needed to address operational, legal, security, or regulatory changes without separate Board approval, provided such revisions do not materially alter the intent of this policy.

View the Dothan City Schools Data Governance Policy

View the Dothan City Schools Data Governance Procedures

Supplemental Documents

View A. Definitions and Responsibilities

View B. Laws, Statutory, Regulatory, and Contractual Security

View C. Risk Management Practices

View D. Data Classification Levels

View E. Physical and Security Controls

View F. Software Acquisition Procedures

View G. Artificial Intelligence (AI) Guidelines

View H. Virus, Malware, Spyware, Phishing, Ransomware,  and Spam Protection

View I. Password and Authentication Control Standards

View J. Data Access Roles and Permissions

View K. National Data Privacy Agreement (NDPA)

View L. Purchasing and Disposal Procedures