Skip to main content

SDLA Compliance Resource

Assign 2026–27 TOMS Roles by Function and Site

A least-privilege provisioning process for coordinators, administrators, examiners, educators, and interim-assessment users.

  • CAASPP
  • Assessment
Date(s)Before each user needs access—and only after current authorization, security, and training requirements are met
Applies toPersonnel requiring a TOMS-connected role for CAASPP, ELPAC, CERS, or interim assessments

In Plain Language: Match each person’s duties to the narrowest current role, correct LEA/site, and required training. Verify the account works before—not during—the testing session.

Why this matters

Role names that sound similar can expose different students, systems, or secure materials. Incorrect assignment creates privacy risk or prevents lawful administration.

Primary ownership

Primary owner: LEA coordinator; site coordinators manage authorized site-level users within current rules. Partners: supervisors, HR, privacy/security, technology, and training leads.

Operational workflow

  1. 1. Inventory duties, sites, pupil scope, assessments, and systems required.
  2. 2. Map each user to the least-privilege role and obtain approval.
  3. 3. Confirm security forms and role-specific training/certification.
  4. 4. Provision and test access; correct organization, email, or identity mismatches.
  5. 5. Review during the year and remove access immediately when duties end.

Implementation pathway

Job need
Role mapping
Approval
Forms/training
Provision/test
Review/remove

Evidence to retain

  • Role request/approval
  • Current user-role roster
  • Security forms
  • Training/certification
  • Access and removal log

Official guidance and help

Source review completed August 30, 2026. Verify current California requirements, CAASPP and ELPAC manuals, live system status, local policy, pupil records, and final system state before acting.