Get in Touch

Course Outline

Introduction to GDPR

  • Distinguishing between personal data and sensitive data
  • Assembling your GDPR team
  • Interpreting key GDPR terminology
  • Implementing privacy by design and privacy by default

Establishing Governance

  • Selecting key personnel from legal, marketing, IT, and HR to support GDPR efforts
  • Understanding the role of a DPO and determining if one is required

Data Permissions and Access

  • Identifying whether information constitutes personal data
  • Defining who has access to data
  • Determining data storage methods and locations, such as electronic or paper-based formats
  • Implementing data security measures

Legal Rights and Responsibilities

  • Data Subjects and their associated rights
  • Obligations of Controllers
  • Obligations of Processors
  • Managing data access requests
  • Handling international data transfers
  • Defining a data breach
  • Understanding fines and penalties
  • Managing third-party services
  • Compliance with international data transfer regulations

Policy Development and Legal Procedures

  • Drafting data privacy policies for employees and clients
  • Documenting the legal basis for retaining data
  • Establishing codes of conduct for data collection and handling
  • Reviewing external third-party contracts and supplier agreements

Ongoing Maintenance

  • Data accuracy – ensuring that held data remains current
  • Updating privacy notices and procedures in response to GDPR changes
  • Revising contracts as necessary.

Requirements

There are no specific prerequisites or prior requirements for attending this course.

 7 Hours

Number of participants


Price per participant

Testimonials (3)

Provisional Upcoming Courses (Require 5+ participants)

Related Categories