5. The role of technological innovations in privacy protection

Technology has not only transformed the way we learn and teach, but it also provides advanced solutions for protecting the personal data of students, teachers, and other participants in the educational process. Innovations such as encryption, artificial intelligence (AI), automation, and security-by-design play a key role in strengthening digital security in educational environments.

1. Data Encryption

Data encryption allows information to be converted into an unreadable format for anyone except authorised users with the corresponding key. This ensures that even if data is stolen or leaked, attackers cannot read its content.

Application in educational institutions:

  • Educational institutions can use encryption to store students’ personal data (e.g., grades, medical information, etc.) in information systems (ISVU).
  • Data transmission between teachers and students via email should be secured using cryptographic protocols or through document classification implementation (Information Security Act), ensuring that all important documents are protected with multiple security elements (confidentiality, non-repudiation, integrity, completeness).

2. Artificial Intelligence Systems for Threat Detection

Advanced AI algorithms can analyse user behavior patterns and detect suspicious activities that indicate a potential security incident—such as unusual logins, attempts to access restricted areas of the system, or malware propagation.

Practical example:

  • Blackboard and Microsoft 365 Education integrate AI systems that automatically detect and block unauthorised login attempts in real time.
  • Universities in the United States use AI to monitor compromised user accounts and automatically reset passwords.

More information:
IBM – How AI is transforming cybersecurity

3. Secure Learning Platforms with Built-in Privacy Protection (Privacy by Design)

The “Privacy by Design” concept involves integrating personal data protection into the core of technology and processes, rather than adding it later. This means that platforms like LMSs (e.g., Moodle, Google Classroom) must have:

  • clear access controls,
  • pseudonymisation and anonymisation capabilities,
  • mechanisms for user consent management,
  • transparent display of who, when, and why data are being used.

Example: 

Moodle allows administrators detailed control over user privacy, and the system is designed in accordance with EU GDPR guidelines.

More on the concept: European Data Protection Supervisor (EDPS) – Privacy by Design 

4. Automated Tools for Access and Permission Management

Human errors—such as incorrectly assigned access rights or failure to deactivate accounts—are common causes of security incidents. Automated Identity and Access Management (IAM) tools can:

  • regularly check who has access to which data,
  • automatically revoke access for former employees or students,
  • notify administrators of unusual activities.

Example: 

The University of Zagreb implements an LDAP system with automated access control via the AAI@EduHr infrastructure.

Conclusion

Technological innovations form the foundation for privacy and security protection in education. However, their effectiveness depends on how institutions implement them and the extent to which organisational changes, policies, education, and oversight accompany them. By investing in advanced technologies and ensuring their proper use, educational institutions can significantly reduce the risk of incidents while simultaneously strengthening the trust of students, parents, and teachers.

Accessibility

Background Colour Background Colour

Font Face Font Face

Font Size Font Size

1

Text Colour Text Colour

Font Kerning Font Kerning

Image Visibility Image Visibility

Letter Spacing Letter Spacing

0

Line Height Line Height

1.2

Link Highlight Link Highlight