Internal Assessment Criteria and Weight
● IAC0601 Define the term internet
● IAC0602 Describe the term connectivity
● IAC0603 Discuss the components/constituents and the purpose of internet enabling
technologies and terms. ( Range: Internet addresses- Internet protocol (IP)
addresses and domain names)
● IAC0604 Discuss how data travels over the internet in relation to networking
concepts
● IAC0605 Explain the different components required to connect to the internet.
(Range: Internet Service Providers (ISPs), wired and wireless connections)
KM-04-KT07: Safety and security of ICT
KT0701 ICT risks and recommended security solutions
ICT risks and recommended security solutions
Taking responsibility for the use of ICT
ICT and the internet are powerful educational resources that are transforming the process of
learning and teaching in schools and across the community. With a computer and internet
connection – or even just a mobile phone – pupils and adults alike can gain access to a vast
amount of information and communicate and collaborate in a variety of ways.
Not all information available via the internet is accurate, or even legal, however, and schools
have a duty to teach pupils about safe and responsible behavior using technology. Governing
bodies have a duty to understand the implications of the uses of ICT within schools and the
need to provide suitable safeguards for pupils and the school.
The role of the governing body
There is no formal requirement on governing bodies to develop an ICT strategy or to consider
ICT safety and security issues. However, the safe and secure use of ICT has an impact on a
number of areas of statutory responsibility for governing bodies, including Health and Safety
Policy, Child Protection Policy and legal requirements for data protection and freedom of
information.
Good practice suggests that all schools should actively consider ICT safety and security and
that they should take the following steps:
• Governors should develop an awareness of the issues and risks of using ICT
in schools alongside the benefits. Schools could consider appointing an ‘e-
governor’ to lead on ICT including safety issues.
• Governors should expect the school to develop a clear strategy on ICT which
defines roles and responsibilities for management, implementation and safety,
including the school’s Acceptable Use Policy (AUP).
• Resources should be made available to provide a secure ICT system for the
school and to support internet proficiency training for children, parents, staff
and, wherever possible, for the wider community.
• Internet/ICT safety should be reviewed regularly as part of the review of the
school’s health and safety and child protection policies. It is suggested that the
annual report and school prospectus should contain a summary of the school’s
policies on ICT safety for the benefit of parents.
• The school’s risk management strategy should look at the risk of breaches of
ICT security and how these should be dealt with both for pupils and for staff.
• Staff disciplinary procedures should cite the serious misuse/abuse of ICT as a
basis for disciplinary action.
Creating a safe and secure environment for ICT
All schools want to create a safe and secure ICT learning environment but many are unsure
how to begin. There are three components that schools need to establish:
• An infrastructure of whole-school awareness, responsibilities, policies and
procedures
• A secure ICT system
• A comprehensive internet safety education programme for the whole school
community.
Whole-school awareness
There is a need to raise awareness of ICT safety throughout the school. It needs to be stressed
that this affects every member of the school community, including the governing body. All
schools should put in place overall policies for the reasonable uses of ICT, such as an AUP.
Sample policies are available, online and via LEAs, which schools can use as a basis for their
own policies. An effective internet safety policy needs to be tailored to the individual needs of
the school, and is as much about an understanding and consideration of the issues as having
a written policy document. The policy should be developed in consultation with all key
stakeholders, including parents and children, so that there is an understanding of the issues
and the safeguards across the school community.
Secure ICT system
All staff and pupils need to observe ‘simple, everyday’ security measures such as not sharing
password information, teachers logging out of MIS software and not leaving their computers
unattended, and regular backing up of vital assessment data. There are a range of tools that
schools can use to make their ICT system secure:
• Firewall and virus protection to prevent unauthorized access to the school’s
network. A firewall can prevent information about pupils and the school being
seen by unauthorized users and protect computer systems and files from
viruses that can corrupt or destroy important information. The governing body
should ensure that a suitable firewall is in place.
• Software filters: different types of filters are available to restrict access to
inappropriate websites and some schools go further by subscribing only to
collections of websites that have been vetted and approved for access by
children. Schools should monitor the use of ICT on a regular basis, by keeping
track of information accessed and/or downloaded from the internet to check its
suitability.
• A clear policy on using personal devices: as increasing numbers of pupils
and staff use laptops, memory sticks and other portable storage devices on the
school network, there needs to be a policy regarding their use, to protect the
school network from viruses and inappropriate access to sensitive data.
Identifying the risks
In most cases, the misuse of ICT is not serious and can be dealt with at classroom level. In
rare cases, however, the abuse of ICT can place individual children in serious danger and
threaten the integrity of the whole school community.
Risks to children
These can be summarized as communication with inappropriate people, or access to age
inappropriate material.
Exposure to the threat of physical danger and abuse
This is the most worrying risk associated with the use of the internet. A criminal minority makes
use of the internet and related services such as chat rooms to make contact with young
people. These techniques are known as ‘online enticement’, ‘grooming’ or ‘child procurement’.
There is a risk that, whilst online, a young person may provide information that can identify
them, or arrange to meet someone they have communicated with online. The governing body
needs to ensure that every effort is made to educate pupils regarding these issues. Often, of
course, pupils are at most risk outside the school environs, so where possible, advice should
be supplied to parents and the local community.
A new arena for intimidation and bullying
New methods of communication open up opportunities for intimidation and bullying, by text
message or instant messaging services, by email, or within chat rooms. Regrettably, there are
also abusive or discriminatory websites that target vulnerable children. Beta has produced
guidance on how schools can address these forms of bullying.
Misuse of resources
Electronic access to a wealth of information and imagery brings with it the danger of
assignments and projects being copied from the internet or from a CD-ROM; at best, this may
mean that children have no real grasp of the material they are appropriating, at worst it may
mean they are guilty of plagiarism and cheating.
Access to unsuitable and inappropriate materials
There is a risk that, when using the internet, email or chat services, young people may be
exposed to inappropriate material which encourages activities that are considered unhealthy,
dangerous or even illegal.
Risks to the school
Viruses
Viruses can cause disruption and damage, often incurring expense, to computer networks. It
is essential that schools put in place comprehensive security systems that can protect against
unauthorized access and accidental damage.
Unauthorized access
Schools generate information and store data, only some of which may be intended for a wider
audience. The governing body should check that suitable storage and back-up systems are in
place.
Internal Assessment Criteria and Weight
● IAC0701 Identify and explain ICT risks and recommended security solution