Signal · North Carolina Live
What does North Carolina require
right now?
The current bills, deadlines, enforcement patterns, and what your district should actually be doing about it.
curated by Loop + Ledger
Laws tracked
1
In this state
Enacted
1
On the books
In motion
0
None active
Most recently enacted
What just became law?
Enacted
NC DPI Policy (Effective Jan 1, 2024)Third Party Integration Requirements — NIST Alignment for Vendors
State-level policy requirement functioning as regulatory standard for K-12 vendors in North Carolina. Districts must publish a list of all third parties receiving student data. Vendors must complete a Third Party Data Collection Reporting Worksheet covering data practices, security controls, and justification for requested data. Vendors undergo state security assessments including vulnerability scanning and must align with NIST Cybersecurity Frameworks. Most operationally detailed K-12 vendor cybersecurity requirement in any state.
Watch list
What's coming up?
No upcoming deadlines on the tracker.
Book a working session
A 20-minute working session on North Carolina compliance.
See clearly.
Act strategically.
Protect what matters.