Citizen Portal
Sign In

Get Full Government Meeting Transcripts, Videos, & Alerts Forever!

Get email alerts on the Cybersecurity topic

No spam. Unsubscribe anytime.

District reports PowerSchool data breach; CrowdStrike finds no additional compromise

2532674 · March 11, 2025
AI-Generated Content: All content on this page was generated by AI to highlight key points from the meeting. For complete details and context, we recommend watching the full video. so we can fix them.

Summary

Superintendent reported a December 2024 PowerSchool cybersecurity incident; a CrowdStrike investigation confirmed no additional compromises and PowerSchool is offering credit monitoring to affected individuals through July 31, 2025.

Doctor Vincent told the board that the district’s PowerSchool cybersecurity incident originated on Dec. 22, 2024 and the district became aware of the issue in January.

Vincent said the vendor PowerSchool has been working with regulatory agencies in the U.S. and Canada, contracted CrowdStrike to investigate, and provided identity and credit-monitoring services to impacted individuals. “CrowdStrike’s investigation confirmed that no additional concerns existed beyond the ones identified in January,” Vincent said.

District staff said parents impacted by the breach will receive an email to the address associated with their PowerSchool account and that those affected have until July 31, 2025 to enroll in the credit-monitoring service offered by the vendor. Staff said some district cybersecurity protections — including multifactor authentication and system audits — have been strengthened since the incident.

Board members asked whether the incident affected the district’s insurance claim; staff said PowerSchool has borne the costs and it had not impacted the district’s insurance claim at the time of the meeting.