Security & Trust

How We Protect Your Data

Strong security is foundational to serving K‑12 education. As a provider of cloud-based software for schools and districts around the world, SchoolsResearch emphasizes safeguarding student, family, and educator data through a comprehensive security strategy.

Secure by design: privacy and security embedded from inception.
Annual third‑party audits and ISO 27001:2022 certification.
Security commitment
Culture
Shared accountability
Validation
3rd‑party audits
Posture
Invest + monitor
Collaboration
Partners + orgs
SchoolsResearch frames its approach across four pillars: Culture, Validation, Posture, and Collaboration.

Culture: Security is everyone’s responsibility

SchoolsResearch describes a culture of shared accountability for protecting communities they serve.

Data protection regulations
Adheres to applicable privacy regulations including FERPA, COPPA, and other student data protection regulations.
Employee requirements
Annual background checks and ongoing security awareness training for employees and contractors.
Embedded secure by design
Security and privacy embedded from inception rather than added later.
Ownership and accountability
Takes responsibility for security and maintenance of customer data as the cloud provider.
Security across K‑12
The Trust Center outlines how SchoolsResearch’s cybersecurity approach compares to industry standards and communicates expectations across the K‑12 ecosystem.

Validation: Certified data protection

SchoolsResearch states it undertakes annual third‑party audits and has achieved ISO 27001:2022 certification for its security management system.

Annual third‑party audits
Audits validate controls and confirm measures meet or exceed industry-defined standards.
ISO 27001:2022
Internationally recognized certification; audited annually as part of the security management system.
Compliance and verification
Accredited firms provide unbiased validation to support customer trust.
What to ask your vendor
Useful questions: What third-party audits are performed annually? What certifications are held (e.g., ISO 27001:2022)? How is security validated over time?
Buyer checklist

Posture: Investing for the long‑term

SchoolsResearch describes investing in security technologies and practices, including infrastructure/system security, monitoring/threat detection, and access/credentialing.

Infrastructure and system security+
Focus on hardening infrastructure and systems to reduce risk and stay resilient as threats evolve.
Monitoring and threat detection+
Emphasizes monitoring and threat detection to identify risks earlier and respond faster.
Accessing and credentialing+
Controls around identity, access, and credentialing to limit exposure and protect sensitive data.
Secure by design
The Trust Center highlights embedding security and privacy from inception rather than as an afterthought.

Collaboration: Advancing security in K‑12 together

SchoolsResearch describes alliances with Microsoft, AWS, and Snowflake, work with organizations like CoSN and 1EdTech, signing CISA’s voluntary pledge, and partnering with cybersecurity companies including KnowBe4, Abnormal Security, and NopalCyber.

Industry alliances
Alliances with Microsoft, AWS, and Snowflake to integrate industry-leading security infrastructure.
Standards & best practices
Collaboration with CoSN and 1EdTech to align to best practices and district needs.
Secure-by-design pledge
One of the first to sign CISA’s voluntary pledge to design products with greater security built in.
Customer Security Advisory Council
Forum for in-depth security reviews, industry collaboration, and best-practice sharing.