IT Acceptable Use Policy

IT Acceptable Use

Table of Contents

1. Introduction and aims

The purpose of the policy is to ensure that within our Trust, each school network is operated safely and all users of ICT are safe. It refers to our schools ICT networks and to the use of mobile technologies, both within it and external to it, explains the behaviours which are acceptable and unacceptable within our Trust.

ICT is an integral part of the way our Trust works, and is a critical resource for pupils, staff, governors, volunteers and visitors. It supports teaching and learning, pastoral and administrative functions of the Trust.

However, the ICT resources and facilities our individual schools use also pose risks to data protection, online safety and safeguarding.

This policy aims to:

  • Set guidelines and rules on the use of each schools ICT resources for staff, pupils, parents and governors

  • Establish clear expectations for the way all members of the Trust community engage with each other and with stakeholders online

  • Support the Trusts policies on data protection, online safety and safeguarding

  • Prevent disruption to the Trust through the misuse, or attempted misuse, of ICT systems

  • Support the Trust in teaching pupils safe and effective internet and ICT use

This policy covers all users of our Trust’s ICT facilities, including governors, staff, pupils, volunteers, contractors and visitors.

All members of staff have a responsibility to use each school’s computer systems in a professional, lawful, and ethical manner. Our AUP must be fully complied with at all times. All users of the schools networks should note that it is monitored on a regular basis. Any person who is found to have misused any schools system or no

2. Legislation and guidance

3. Trust Governance and Responsibilities

The Trust has overall responsibility for establishing effective arrangements for the safe, secure and appropriate use of ICT systems across all schools within the Trust.

The Trust Board will:

  • Approve and periodically review the Acceptable Use Policy in conjunction with the DPO.

  • Seek assurance that appropriate arrangements for cyber security, data protection, filtering and monitoring are in place across all schools.

  • Ensure adequate resources are available to support secure and effective ICT provision.

The Chief Executive Officer and Executive Leadership Team will:

  • Ensure the implementation of this policy across all schools.

  • Monitor compliance with Trust-wide ICT, safeguarding and data protection requirements.

The Trust Data Protection Officer (DPO) will:

  • Provide advice regarding data protection compliance.

  • Support the investigation and management of data breaches.

  • Monitor compliance with UK GDPR and Data Protection legislation.

The schools individual ICT Teams will:

  • Maintain Trust-wide ICT infrastructure, security controls and cyber security standards.

  • Manage filtering and monitoring arrangements.

  • Support schools in responding to cyber incidents.

  • Implement Trust-approved technical standards.

Local Headteachers will:

  • Ensure staff and students comply with this policy.

  • Address breaches of the policy in line with Trust and academy procedures.

  • Escalate significant incidents in accordance with Trust procedures.

Local Governing Bodies will:

  • Provide local oversight and assurance.

  • Receive appropriate reports regarding ICT, safeguarding and cyber security matters.

4. Definitions

  • “ICT facilities”: includes all facilities, systems and services including but not limited to network infrastructure, desktop computers, laptops, tablets, phones, music players or hardware, software, websites, web applications or services, communication applications such as WhatsApp, Facebook messenger, SMS messaging and any device system or service which may become available in the future which is provided as part of the ICT service

  • “Users”: anyone authorised by the Trust to use the ICT facilities, including governors, staff, pupils, volunteers, contractors and visitors

  • “Personal use”: any use or activity not directly related to the users’ employment, study or purpose

  • “Authorised personnel”: employees authorised by the Trust to perform systems administration and/or monitoring of the ICT facilities

  • “Materials”: files and data created using the ICT facilities including but not limited to documents, photos, audio, video, printed output, web pages, social networking sites, and blogs

5. Unacceptable use

The following is considered unacceptable use of the Trust’s ICT facilities and online platforms by any member of the school community. Any breach of this policy may result in disciplinary or behaviour proceedings (see section 4.2 below).

Unacceptable use of the ICT facilities includes:

  • Using the ICT facilities to breach intellectual property rights or copyright

  • Using the ICT facilities to bully or harass someone else, or to promote unlawful discrimination

  • Breaching the Trust’s policies or procedures

  • Any illegal conduct, or statements which are deemed to be advocating illegal activity

  • Accessing, creating, storing, linking to or sending material that is pornographic, offensive, obscene or otherwise inappropriate

  • Consensual and non-consensual sharing of nude and semi-nude images and/or videos and/or livestreams

  • Activity which defames or disparages the school, or risks bringing the Trust into disrepute

  • Sharing confidential information about the Trust, individual school’s, its pupils, or other members of the Trust community

  • Connecting any device to individual schools ICT networks without approval from authorised personnel

  • Setting up any software, applications or web services on any school’s network without approval by authorised personnel, or creating or using any program, tool or item of software designed to interfere with the functioning of the ICT facilities, accounts or data

  • Gaining, or attempting to gain, access to restricted areas of the networks, or to any password-protected information, without approval from authorised personnel

  • Allowing, encouraging, or enabling others to gain (or attempt to gain) unauthorised access to any school’s ICT facilities

  • Causing intentional damage to ICT facilities

  • Removing, deleting or disposing of ICT equipment, systems, programs or information without permission by authorised personnel

  • Causing a data breach by accessing, modifying, or sharing data (including personal data) to which a user is not supposed to have access, or without authorisation

  • Using inappropriate or offensive language

  • Promoting a private business, unless that business is directly related to the Trust

  • Using websites or mechanisms to bypass school’s filtering mechanisms

This is not an exhaustive list. The Trust reserves the right to amend this list at any time. SLT will use professional judgement to determine whether any act or behaviour not on the list above is considered unacceptable use of our ICT facilities.

5.1 Exceptions from unacceptable use

Where the use of our schools ICT facilities is required (on the school premises and/or remotely) for a purpose that would otherwise be considered an unacceptable use, exemptions to the policy may be granted at SLT discretion.

In such circumstances, permission must be sought.

5.2 Sanctions

Staff or pupils who engage in any of the unacceptable activity listed above may face disciplinary action in line with our school’s policies including the Behaviour Policy (Pupils), Disciplinary Policy and Staff Code of Conduct (Staff).

In the case of adults who are not staff members other sanctions are available such as revoking permission to use our school’s systems.

Members of staff will have been provided access to the above policies as part of your induction. If you require access to a copy these are available from each school.

6. Staff (including governors, volunteers, supply teachers and contractors)