SlideShare a Scribd company logo
1 of 3
1
CONFIDENTIALITY AND
DATA SECURITY AND PRIVACY STANDARDS
ADDENDUM
This Addendum to [CS50.io](the “Agreement”) is made and entered into this 7th day of April
2020, by and between [CS50.io] (the “Vendor”), having its principal place of business at
[Harvard University
, Maxwell Dworkin Laboratory, 33 Oxford Street
, Cambridge, MA 02138 USA], and the Baldwin Union Free School District (the “School
District”), having its principal place of business at 960 Hastings Street, Baldwin, New York
11510.
WHEREAS, the School District and the Vendor have entered into the Agreement, as set forth
above, on [4/7/2020]; and
WHEREAS, the Vendor will receive “student data”” as that terms is defined in New York
Education Law section 2-d; and
WHEREAS, both the School District and Vendor are desirous of fulfilling their respective
obligations under federal and state data security and privacy laws, including, but not limited to,
New York Education Law section 2-d;
NOW THEREFORE, in consideration of the mutual promises and covenants contained in this
Addendum and the Agreement, the parties hereto mutually agree as follows:
1. Vendor, its employees, and/or agents agree that all information obtained in connection
with the services provided for in the Agreement is deemed confidential information. Vendor,
its employees, and/or agents shall not use, publish, discuss, disclose or communicate the
contents of such information, directly or indirectly with third parties, except as provided for
in the Agreement. Vendor further agrees that any information received by Vendor, its
employees, and/or agents during the course of the services provided pursuant to the
Agreement which concerns the personal, financial, or other affairs of School District, its
employees, agents, clients, and/or students will be treated by Vendor, its employees, and/or
agents in full confidence and will not be revealed to any other persons, firms, or
organizations.
2. Vendor acknowledges that it may receive and/or come into contact with personally
identifiable information, as defined by New York Education Law Section 2-d, from records
maintained by School District that directly relate to a student(s) (hereinafter referred to as
“education record”). Vendor understands and acknowledges that it shall have in place
sufficient protections and internal controls to ensure that information is safeguarded in
accordance with applicable federal and state laws and regulations, and the School District’s
policy on data security and privacy, as adopted. Vendor further understands and agrees that
it is responsible for complying with federal, state, and local data security and privacy
standards for all personally identifiable information from education records, and it shall:
a. limit internal access to education records to those individuals that are
determined to have legitimate educational interests;
2
b. not use the education records for any other purposes that those explicitly
authorized in the Agreement;
c. maintain reasonable administrative, technical and physical safeguards to protect
the security, confidentiality and integrity of education records in its custody; and
d. use encryption technology to protect data while in motion or in its custody from
unauthorized disclosure using a technology or methodology specified by the
secretary of the United States department of health and human services in
guidance issued under Section 13402(H)(2) of Public Law 111-5.
3. Vendor further understands and agrees that it is responsible for submitting a data
security and privacy plan to the School District prior to the start of the term of the Agreement.
Such plan shall outline how all state, federal and local data security and privacy contract
requirements will be implemented over the life of the contract consistent with School
District’s policy on data security and privacy, as adopted. Further, such plan shall include a
signed copy of School District’s Parents’ Bill of Rights and the training requirement
established By Vendor for all employees who will receive personally identifiable information
from student records (hereinafter referred to as “student data”).
4. Vendor understands that as part of School District’s obligations under New York
Education Law Section 2-d, Vendor is responsible for providing School District with
supplemental information to be included in School District’s Parents’ Bill of Rights. Such
supplemental information shall be provided to School District within ten (10) days of
execution of this Addendum and shall include:
a. the exclusive purposes for which the student data will be used;
b. how Vendor will ensure that subcontractors, persons or entities that Vendor will
share the student data with, if any, will abide by data protection and security
requirements;
c. that student data will be returned or destroyed upon expiration of the
Agreement;
d. if and how a parent, student, or eligible student may challenge the accuracy of
the student data that is collected; and
e. where the student data will be stored (described in such a manner as to protect
data security), and the security protections taken to ensure such data will be
protected, including whether such data will be encrypted.
5. In the event of a breach of this Addendum and unauthorized release of student data,
Vendor shall immediately notify School District and advise it as to the nature of the breach
and steps Vendor has taken to minimize said breach. In the case of required notification to a
parent or eligible student, Vendor shall promptly reimburse School District for the full cost of
such notification. Vendor shall indemnify and hold School District harmless from any claims
arising from its breach of the within confidentiality and data security and privacy standards
provision.
6. Upon termination of the Agreement, Vendor shall return or destroy all confidential
information obtained in connection with the services provided therein and/or student data.
Destruction of the confidential information and/or student data shall be accomplished
3
utilizing an approved method of confidential destruction, including, shredding, burning or
certified/witnessed destruction of physical materials and verified erasure of magnetic media
using approved methods of electronic file destruction. The parties further agree that the terms
and conditions set forth herein shall survive the expiration and/or termination of the
Agreement.
IN WITNESS WHEREOF, the parties hereto have executed this agreement the day and year
first above written.
BALDWIN UNION FREE SCHOOL DISTRICT
Date:_________________ By: _________________________________________
Name:
Title:
[NAME OF VENDOR]
Date:__________________ By: __________________________________________
Name:
Title:

More Related Content

Similar to CS50 Confidentiality And Data Security And Privacy Standards Addendum

Alaska FERPA Complaint [Redacted]
Alaska FERPA Complaint [Redacted]Alaska FERPA Complaint [Redacted]
Alaska FERPA Complaint [Redacted]EmilyCherkin
 
Ethics confidentiality-technology
Ethics confidentiality-technologyEthics confidentiality-technology
Ethics confidentiality-technologydelaneyl6238
 
Confidentiality Issues with Technology
Confidentiality Issues with TechnologyConfidentiality Issues with Technology
Confidentiality Issues with Technologymedinam0868
 
Lake Tns Nda Possible Final Copy
Lake Tns Nda Possible Final CopyLake Tns Nda Possible Final Copy
Lake Tns Nda Possible Final Copylakej
 
Adult & Pediatric Dermatology, Corrective Action Plan
Adult & Pediatric Dermatology, Corrective Action PlanAdult & Pediatric Dermatology, Corrective Action Plan
Adult & Pediatric Dermatology, Corrective Action Plandata brackets
 
Memorandum of agreement
Memorandum of agreementMemorandum of agreement
Memorandum of agreementruelcdogma
 
LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...
LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...
LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...Dr. Oliver Massmann
 
Student data privacy manifesto
Student data privacy manifestoStudent data privacy manifesto
Student data privacy manifestoCaitlin Sharp
 
Item # 10 Catto & Catto to HUB Insurance Broker Assignment
Item # 10  Catto & Catto to HUB Insurance Broker AssignmentItem # 10  Catto & Catto to HUB Insurance Broker Assignment
Item # 10 Catto & Catto to HUB Insurance Broker Assignmentahcitycouncil
 
Sample Business Associate Agreement
Sample Business Associate AgreementSample Business Associate Agreement
Sample Business Associate AgreementJorge M. Abril, P.A.
 
Health insurance claim | Health Care Domain
Health insurance claim | Health Care DomainHealth insurance claim | Health Care Domain
Health insurance claim | Health Care DomainH2kInfosys
 
Dillard University Contractual Services Agreement Form
Dillard University Contractual Services Agreement FormDillard University Contractual Services Agreement Form
Dillard University Contractual Services Agreement FormDillard University Library
 
Consumers Protection in Financial Sector.pdf
Consumers Protection in Financial Sector.pdfConsumers Protection in Financial Sector.pdf
Consumers Protection in Financial Sector.pdfAHRP Law Firm
 
BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18
BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18
BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18FortuneCMO, LLC
 
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...CanadaHelps / MyCharityConnects
 
Mou international -draft2010 (uin)-revision january 2011
Mou   international -draft2010 (uin)-revision january 2011Mou   international -draft2010 (uin)-revision january 2011
Mou international -draft2010 (uin)-revision january 2011agus salim
 

Similar to CS50 Confidentiality And Data Security And Privacy Standards Addendum (20)

Alaska FERPA Complaint [Redacted]
Alaska FERPA Complaint [Redacted]Alaska FERPA Complaint [Redacted]
Alaska FERPA Complaint [Redacted]
 
Ethics confidentiality-technology
Ethics confidentiality-technologyEthics confidentiality-technology
Ethics confidentiality-technology
 
Confidentiality Issues with Technology
Confidentiality Issues with TechnologyConfidentiality Issues with Technology
Confidentiality Issues with Technology
 
DATA PRIVACY, CLOUD & PURCHASING DEPARTMENT
DATA PRIVACY, CLOUD & PURCHASING DEPARTMENTDATA PRIVACY, CLOUD & PURCHASING DEPARTMENT
DATA PRIVACY, CLOUD & PURCHASING DEPARTMENT
 
Lake Tns Nda Possible Final Copy
Lake Tns Nda Possible Final CopyLake Tns Nda Possible Final Copy
Lake Tns Nda Possible Final Copy
 
Adult & Pediatric Dermatology, Corrective Action Plan
Adult & Pediatric Dermatology, Corrective Action PlanAdult & Pediatric Dermatology, Corrective Action Plan
Adult & Pediatric Dermatology, Corrective Action Plan
 
Memorandum of agreement
Memorandum of agreementMemorandum of agreement
Memorandum of agreement
 
Confidentiality Agreement
Confidentiality AgreementConfidentiality Agreement
Confidentiality Agreement
 
LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...
LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...
LAWYER IN VIETNAM DR OLIVER MASSMANN NEW DRAFT DECREE ON PERSONAL DATA PROTEC...
 
Student data privacy manifesto
Student data privacy manifestoStudent data privacy manifesto
Student data privacy manifesto
 
Item # 10 Catto & Catto to HUB Insurance Broker Assignment
Item # 10  Catto & Catto to HUB Insurance Broker AssignmentItem # 10  Catto & Catto to HUB Insurance Broker Assignment
Item # 10 Catto & Catto to HUB Insurance Broker Assignment
 
Sample Business Associate Agreement
Sample Business Associate AgreementSample Business Associate Agreement
Sample Business Associate Agreement
 
Health insurance claim | Health Care Domain
Health insurance claim | Health Care DomainHealth insurance claim | Health Care Domain
Health insurance claim | Health Care Domain
 
Dillard University Contractual Services Agreement Form
Dillard University Contractual Services Agreement FormDillard University Contractual Services Agreement Form
Dillard University Contractual Services Agreement Form
 
MOA.pptx
MOA.pptxMOA.pptx
MOA.pptx
 
Consumers Protection in Financial Sector.pdf
Consumers Protection in Financial Sector.pdfConsumers Protection in Financial Sector.pdf
Consumers Protection in Financial Sector.pdf
 
BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18
BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18
BARNES & THORNBURG LLP - Data Processing Agreement 4-6-18
 
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
James Harrison - Legal Loopholes And Internet Black Holes The Terms And Condi...
 
FERPA for Parents
FERPA for ParentsFERPA for Parents
FERPA for Parents
 
Mou international -draft2010 (uin)-revision january 2011
Mou   international -draft2010 (uin)-revision january 2011Mou   international -draft2010 (uin)-revision january 2011
Mou international -draft2010 (uin)-revision january 2011
 

More from A Jorge Garcia

MAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAY
MAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAYMAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAY
MAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAYA Jorge Garcia
 
MAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAY
MAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAYMAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAY
MAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAYA Jorge Garcia
 
MAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAY
MAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAYMAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAY
MAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAYA Jorge Garcia
 
MAT122 DAY308 Lesson 26 of 45
MAT122 DAY308 Lesson 26 of 45MAT122 DAY308 Lesson 26 of 45
MAT122 DAY308 Lesson 26 of 45A Jorge Garcia
 
MAT122 DAY307 Lesson 25 of 45
MAT122 DAY307 Lesson 25 of 45MAT122 DAY307 Lesson 25 of 45
MAT122 DAY307 Lesson 25 of 45A Jorge Garcia
 
MAT122 DAY306 Lesson 24 of 45
MAT122 DAY306 Lesson 24 of 45MAT122 DAY306 Lesson 24 of 45
MAT122 DAY306 Lesson 24 of 45A Jorge Garcia
 
MAT122 DAY305 Lesson 23 of 45
MAT122 DAY305 Lesson 23 of 45MAT122 DAY305 Lesson 23 of 45
MAT122 DAY305 Lesson 23 of 45A Jorge Garcia
 
MAT122 DAY304 Lesson 22 of 45
MAT122 DAY304 Lesson 22 of 45MAT122 DAY304 Lesson 22 of 45
MAT122 DAY304 Lesson 22 of 45A Jorge Garcia
 
MAT122 DAY303 Lesson 21 of 45
MAT122 DAY303 Lesson 21 of 45MAT122 DAY303 Lesson 21 of 45
MAT122 DAY303 Lesson 21 of 45A Jorge Garcia
 
MAT122 DAY302 Lesson 20 of 45
MAT122 DAY302 Lesson 20 of 45MAT122 DAY302 Lesson 20 of 45
MAT122 DAY302 Lesson 20 of 45A Jorge Garcia
 
MAT122 DAY301 Lesson 19 of 45
MAT122 DAY301 Lesson 19 of 45MAT122 DAY301 Lesson 19 of 45
MAT122 DAY301 Lesson 19 of 45A Jorge Garcia
 

More from A Jorge Garcia (20)

LIMACON 2023 Brochure
LIMACON 2023 BrochureLIMACON 2023 Brochure
LIMACON 2023 Brochure
 
2022-RESUME-NEW
2022-RESUME-NEW2022-RESUME-NEW
2022-RESUME-NEW
 
MAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAY
MAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAYMAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAY
MAT122 DAY508 MEETING 44 of 45 2021.1217 FRIDAY
 
MAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAY
MAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAYMAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAY
MAT122 DAY507 MEETING 43 of 45 2021.1216 THURSDAY
 
MAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAY
MAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAYMAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAY
MAT122 DAY506 MEETING 42 of 45 2021.1215 WEDNESDAY
 
MAT122 DAY308 Lesson 26 of 45
MAT122 DAY308 Lesson 26 of 45MAT122 DAY308 Lesson 26 of 45
MAT122 DAY308 Lesson 26 of 45
 
MAT122 DAY307 Lesson 25 of 45
MAT122 DAY307 Lesson 25 of 45MAT122 DAY307 Lesson 25 of 45
MAT122 DAY307 Lesson 25 of 45
 
MAT122 DAY306 Lesson 24 of 45
MAT122 DAY306 Lesson 24 of 45MAT122 DAY306 Lesson 24 of 45
MAT122 DAY306 Lesson 24 of 45
 
MAT122 DAY305 Lesson 23 of 45
MAT122 DAY305 Lesson 23 of 45MAT122 DAY305 Lesson 23 of 45
MAT122 DAY305 Lesson 23 of 45
 
MAT122 DAY304 Lesson 22 of 45
MAT122 DAY304 Lesson 22 of 45MAT122 DAY304 Lesson 22 of 45
MAT122 DAY304 Lesson 22 of 45
 
MAT122 DAY303 Lesson 21 of 45
MAT122 DAY303 Lesson 21 of 45MAT122 DAY303 Lesson 21 of 45
MAT122 DAY303 Lesson 21 of 45
 
MAT122 DAY302 Lesson 20 of 45
MAT122 DAY302 Lesson 20 of 45MAT122 DAY302 Lesson 20 of 45
MAT122 DAY302 Lesson 20 of 45
 
MAT122 DAY301 Lesson 19 of 45
MAT122 DAY301 Lesson 19 of 45MAT122 DAY301 Lesson 19 of 45
MAT122 DAY301 Lesson 19 of 45
 
MAT122 DAY205
MAT122 DAY205MAT122 DAY205
MAT122 DAY205
 
MAT122 DAY204
MAT122 DAY204MAT122 DAY204
MAT122 DAY204
 
MAT122 DAY203
MAT122 DAY203MAT122 DAY203
MAT122 DAY203
 
MAT122 DAY202
MAT122 DAY202MAT122 DAY202
MAT122 DAY202
 
MAT122 DAY201
MAT122 DAY201MAT122 DAY201
MAT122 DAY201
 
MAT122 DAY06
MAT122 DAY06MAT122 DAY06
MAT122 DAY06
 
MAT122 DAY05
MAT122 DAY05MAT122 DAY05
MAT122 DAY05
 

Recently uploaded

18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdfssuser54595a
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Celine George
 
Hierarchy of management that covers different levels of management
Hierarchy of management that covers different levels of managementHierarchy of management that covers different levels of management
Hierarchy of management that covers different levels of managementmkooblal
 
AmericanHighSchoolsprezentacijaoskolama.
AmericanHighSchoolsprezentacijaoskolama.AmericanHighSchoolsprezentacijaoskolama.
AmericanHighSchoolsprezentacijaoskolama.arsicmarija21
 
What is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPWhat is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPCeline George
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxSayali Powar
 
Gas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxGas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxDr.Ibrahim Hassaan
 
Procuring digital preservation CAN be quick and painless with our new dynamic...
Procuring digital preservation CAN be quick and painless with our new dynamic...Procuring digital preservation CAN be quick and painless with our new dynamic...
Procuring digital preservation CAN be quick and painless with our new dynamic...Jisc
 
Full Stack Web Development Course for Beginners
Full Stack Web Development Course  for BeginnersFull Stack Web Development Course  for Beginners
Full Stack Web Development Course for BeginnersSabitha Banu
 
Proudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptxProudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptxthorishapillay1
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptxVS Mahajan Coaching Centre
 
Final demo Grade 9 for demo Plan dessert.pptx
Final demo Grade 9 for demo Plan dessert.pptxFinal demo Grade 9 for demo Plan dessert.pptx
Final demo Grade 9 for demo Plan dessert.pptxAvyJaneVismanos
 
Types of Journalistic Writing Grade 8.pptx
Types of Journalistic Writing Grade 8.pptxTypes of Journalistic Writing Grade 8.pptx
Types of Journalistic Writing Grade 8.pptxEyham Joco
 
EPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptxEPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptxRaymartEstabillo3
 
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptxECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptxiammrhaywood
 
Blooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxBlooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxUnboundStockton
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersSabitha Banu
 
How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17Celine George
 

Recently uploaded (20)

18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
 
Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17
 
Hierarchy of management that covers different levels of management
Hierarchy of management that covers different levels of managementHierarchy of management that covers different levels of management
Hierarchy of management that covers different levels of management
 
AmericanHighSchoolsprezentacijaoskolama.
AmericanHighSchoolsprezentacijaoskolama.AmericanHighSchoolsprezentacijaoskolama.
AmericanHighSchoolsprezentacijaoskolama.
 
What is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERPWhat is Model Inheritance in Odoo 17 ERP
What is Model Inheritance in Odoo 17 ERP
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
 
Gas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxGas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptx
 
Procuring digital preservation CAN be quick and painless with our new dynamic...
Procuring digital preservation CAN be quick and painless with our new dynamic...Procuring digital preservation CAN be quick and painless with our new dynamic...
Procuring digital preservation CAN be quick and painless with our new dynamic...
 
Full Stack Web Development Course for Beginners
Full Stack Web Development Course  for BeginnersFull Stack Web Development Course  for Beginners
Full Stack Web Development Course for Beginners
 
Proudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptxProudly South Africa powerpoint Thorisha.pptx
Proudly South Africa powerpoint Thorisha.pptx
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
 
Final demo Grade 9 for demo Plan dessert.pptx
Final demo Grade 9 for demo Plan dessert.pptxFinal demo Grade 9 for demo Plan dessert.pptx
Final demo Grade 9 for demo Plan dessert.pptx
 
Types of Journalistic Writing Grade 8.pptx
Types of Journalistic Writing Grade 8.pptxTypes of Journalistic Writing Grade 8.pptx
Types of Journalistic Writing Grade 8.pptx
 
EPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptxEPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptx
 
ESSENTIAL of (CS/IT/IS) class 06 (database)
ESSENTIAL of (CS/IT/IS) class 06 (database)ESSENTIAL of (CS/IT/IS) class 06 (database)
ESSENTIAL of (CS/IT/IS) class 06 (database)
 
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptxECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
ECONOMIC CONTEXT - PAPER 1 Q3: NEWSPAPERS.pptx
 
Blooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxBlooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docx
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginners
 
How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17
 

CS50 Confidentiality And Data Security And Privacy Standards Addendum

  • 1. 1 CONFIDENTIALITY AND DATA SECURITY AND PRIVACY STANDARDS ADDENDUM This Addendum to [CS50.io](the “Agreement”) is made and entered into this 7th day of April 2020, by and between [CS50.io] (the “Vendor”), having its principal place of business at [Harvard University , Maxwell Dworkin Laboratory, 33 Oxford Street , Cambridge, MA 02138 USA], and the Baldwin Union Free School District (the “School District”), having its principal place of business at 960 Hastings Street, Baldwin, New York 11510. WHEREAS, the School District and the Vendor have entered into the Agreement, as set forth above, on [4/7/2020]; and WHEREAS, the Vendor will receive “student data”” as that terms is defined in New York Education Law section 2-d; and WHEREAS, both the School District and Vendor are desirous of fulfilling their respective obligations under federal and state data security and privacy laws, including, but not limited to, New York Education Law section 2-d; NOW THEREFORE, in consideration of the mutual promises and covenants contained in this Addendum and the Agreement, the parties hereto mutually agree as follows: 1. Vendor, its employees, and/or agents agree that all information obtained in connection with the services provided for in the Agreement is deemed confidential information. Vendor, its employees, and/or agents shall not use, publish, discuss, disclose or communicate the contents of such information, directly or indirectly with third parties, except as provided for in the Agreement. Vendor further agrees that any information received by Vendor, its employees, and/or agents during the course of the services provided pursuant to the Agreement which concerns the personal, financial, or other affairs of School District, its employees, agents, clients, and/or students will be treated by Vendor, its employees, and/or agents in full confidence and will not be revealed to any other persons, firms, or organizations. 2. Vendor acknowledges that it may receive and/or come into contact with personally identifiable information, as defined by New York Education Law Section 2-d, from records maintained by School District that directly relate to a student(s) (hereinafter referred to as “education record”). Vendor understands and acknowledges that it shall have in place sufficient protections and internal controls to ensure that information is safeguarded in accordance with applicable federal and state laws and regulations, and the School District’s policy on data security and privacy, as adopted. Vendor further understands and agrees that it is responsible for complying with federal, state, and local data security and privacy standards for all personally identifiable information from education records, and it shall: a. limit internal access to education records to those individuals that are determined to have legitimate educational interests;
  • 2. 2 b. not use the education records for any other purposes that those explicitly authorized in the Agreement; c. maintain reasonable administrative, technical and physical safeguards to protect the security, confidentiality and integrity of education records in its custody; and d. use encryption technology to protect data while in motion or in its custody from unauthorized disclosure using a technology or methodology specified by the secretary of the United States department of health and human services in guidance issued under Section 13402(H)(2) of Public Law 111-5. 3. Vendor further understands and agrees that it is responsible for submitting a data security and privacy plan to the School District prior to the start of the term of the Agreement. Such plan shall outline how all state, federal and local data security and privacy contract requirements will be implemented over the life of the contract consistent with School District’s policy on data security and privacy, as adopted. Further, such plan shall include a signed copy of School District’s Parents’ Bill of Rights and the training requirement established By Vendor for all employees who will receive personally identifiable information from student records (hereinafter referred to as “student data”). 4. Vendor understands that as part of School District’s obligations under New York Education Law Section 2-d, Vendor is responsible for providing School District with supplemental information to be included in School District’s Parents’ Bill of Rights. Such supplemental information shall be provided to School District within ten (10) days of execution of this Addendum and shall include: a. the exclusive purposes for which the student data will be used; b. how Vendor will ensure that subcontractors, persons or entities that Vendor will share the student data with, if any, will abide by data protection and security requirements; c. that student data will be returned or destroyed upon expiration of the Agreement; d. if and how a parent, student, or eligible student may challenge the accuracy of the student data that is collected; and e. where the student data will be stored (described in such a manner as to protect data security), and the security protections taken to ensure such data will be protected, including whether such data will be encrypted. 5. In the event of a breach of this Addendum and unauthorized release of student data, Vendor shall immediately notify School District and advise it as to the nature of the breach and steps Vendor has taken to minimize said breach. In the case of required notification to a parent or eligible student, Vendor shall promptly reimburse School District for the full cost of such notification. Vendor shall indemnify and hold School District harmless from any claims arising from its breach of the within confidentiality and data security and privacy standards provision. 6. Upon termination of the Agreement, Vendor shall return or destroy all confidential information obtained in connection with the services provided therein and/or student data. Destruction of the confidential information and/or student data shall be accomplished
  • 3. 3 utilizing an approved method of confidential destruction, including, shredding, burning or certified/witnessed destruction of physical materials and verified erasure of magnetic media using approved methods of electronic file destruction. The parties further agree that the terms and conditions set forth herein shall survive the expiration and/or termination of the Agreement. IN WITNESS WHEREOF, the parties hereto have executed this agreement the day and year first above written. BALDWIN UNION FREE SCHOOL DISTRICT Date:_________________ By: _________________________________________ Name: Title: [NAME OF VENDOR] Date:__________________ By: __________________________________________ Name: Title: