Citizen Portal
Sign In

Get Full Government Meeting Transcripts, Videos, & Alerts Forever!

Get email alerts on the Cybersecurity topic

No spam. Unsubscribe anytime.

District outlines stronger password and multifactor measures after thousands of login attempts reported

Marion County Board of Education · July 10, 2026
AI-Generated Content: All content on this page was generated by AI to highlight key points from the meeting. For complete details and context, we recommend watching the full video. so we can fix them.

Summary

The district’s annual data-security presentation highlighted phishing attempts, a 15-character password policy for staff, multifactor authentication for staff and students (pictogram for students), DMARC adoption and vendor data-sharing agreements; presenters cited more than 5,000 login attempts on KDE staff accounts in a short period.

A district presenter (speaker 4) delivered the annual data-security briefing to the Marion County Board of Education, emphasizing phishing as the leading cause of security incidents and outlining steps the district is taking to reduce risk.

The presenter said district staff must use 15-character passwords and multifactor authentication is in place for staff. The district will move student authentication to a pictogram-based multifactor system so students will use a chosen image as part of login; the presenter said the state funds that student authentication provider. He also described adoption of DMARC email protections statewide and said the district maintains data-sharing agreements with cloud vendors that handle student information, giving Infinite Campus as an example.

The presenter noted that more than 5,000 login attempts targeted KDE staff accounts during a short period and that financial accounts are often the most commonly attacked. Board members asked about how to respond to suspicious emails; the presenter and superintendent urged deletion of suspicious messages and contacting district technology staff for verification. The district said staff vigilance remains the primary defense and praised employees who identified a fraudulent payment request that had the appearance of coming from central office.

No formal policy vote was taken at the meeting; the presentation served as the district’s annual compliance and awareness report.