Listen

Description

Episode Description

Following the Kido nursery breach where 8,000 children's photos were stolen and posted online, we sit down with education sector expert Tammy Buchanan. With 15 years working in UK schools and now consulting on data protection compliance, Tammy reveals the shocking reality of cybersecurity in British education. From nurseries using platforms like Famly and Tapestry to primary schools struggling with basic MFA implementation, this conversation exposes systematic failures that put every child's data at risk. If you're a parent, school governor, or education professional, this episode will change how you think about school security.

Currently ranked in the Top 100 Apple Business Podcasts (US)

What You'll Learn

Guest Contact Details

Tammy Buchanan
Senior Data Protection Consultant
Data Protection Education

Email: info@dataprotection.education
LinkedIn: Search for Tammy Buchanan or visit the Data Protection Education company page
Website: Data Protection Education

Tammy and her team (including a solicitor) work with schools across the UK on data protection compliance, information security, and cyber resilience. They provide free resources and news updates for schools on their LinkedIn page.

 


Resources Mentioned

Government and Regulatory:

Platforms Discussed:

Security Standards:

Additional Resources:

Key Statistics from This Episode

Questions Parents Should Ask Their School

  1. Do you have multi-factor authentication enabled on all systems?
  2. How often do staff receive cybersecurity training?
  3. Where is your incident response plan and when was it last tested?
  4. Who on the governing body is responsible for data protection and cyber resilience?
  5. Are you working towards the DFE digital standards?
  6. Which third-party platforms hold my child's data and photos?
  7. How do you monitor and configure security settings on these platforms?

Key Takeaways

For Parents:

For School Leaders:

For Governors:

The Big Picture

This episode exposes a systematic failure in UK education cybersecurity. Schools operate under considerable constraints, including volunteer governance, stretched budgets, and part-time IT support. Meanwhile, they hold treasure troves of children's data on platforms configured by people who lack security expertise. The Kido breach reveals what happens when one password unlocks 8,000 children's intimate moments. Most schools are one credential compromise away from the same fate. Until cybersecurity becomes statutory or linked to Ofsted inspections, progress will remain painfully slow.

Connect With The Show

Website: thesmallbusinesscybersecurityguy.co.uk
Subscribe: Available on all major podcast platforms
Social Media: Find us on LinkedIn

Help us grow: Leave a review, subscribe, and share this episode with parents, teachers, and school governors who need to hear this message.