FERPA
What is FERPA?
FERPAA U.S. federal law that protects the privacy of student education records and gives parents and eligible students rights over those records.
The Family Educational Rights and Privacy Act (FERPA), enacted in 1974 and administered by the U.S. Department of Education, applies to all schools and post-secondary institutions that receive federal funding. It grants parents (and students aged 18 or older) the right to inspect, request corrections to, and control disclosure of personally identifiable information in education records. Schools generally must obtain written consent before releasing records, except for defined exceptions such as school officials with a legitimate educational interest, transfers, or directory information. Non-compliance can lead to loss of federal funding. FERPA shapes how universities handle SIS data, LMS access, ed-tech vendor contracts, and breach response.
● Examples
- 01
A university requiring written consent before sharing a student's transcript with a prospective employer.
- 02
An ed-tech vendor signing a data-protection addendum to act as a 'school official' under FERPA.
● Frequently asked questions
What is FERPA?
A U.S. federal law that protects the privacy of student education records and gives parents and eligible students rights over those records. It belongs to the Compliance & Frameworks category of cybersecurity.
What does FERPA mean?
A U.S. federal law that protects the privacy of student education records and gives parents and eligible students rights over those records.
How do you defend against FERPA?
Defences for FERPA typically combine technical controls and operational practices, as detailed in the full definition above.
What are other names for FERPA?
Common alternative names include: Family Educational Rights and Privacy Act, Buckley Amendment.