Get in Touch

Course Outline

Introduction to the GDPR

  • Distinguishing between personal and sensitive data
  • Assembling your GDPR team
  • Key terminology and concepts
  • Implementing privacy by design and by default

Establishing Governance

  • Selecting appropriate stakeholders (legal, marketing, IT, HR)
  • The role of the DPO and when one is required

Consent and Access

  • Identifying personal data
  • Defining who has access to information
  • Managing data storage methods, whether electronic or physical
  • Data security measures

Legal Rights and Responsibilities

  • Understanding Data Subjects' rights
  • Obligations of the Controller
  • Obligations of the Processor
  • Handling data subject requests
  • Managing cross-border data transfers
  • Defining a data breach
  • Consequences, fines, and penalties
  • Managing third-party service providers
  • International data transfer protocols

Policy Development and Legal Frameworks

  • Drafting privacy policies for staff and customers
  • Documenting the legal basis for data retention
  • Setting standards for data collection and handling
  • Reviewing external supplier contracts

Ongoing Maintenance

  • Ensuring data accuracy and currency
  • Updating privacy notices in response to regulatory changes
  • Revising contracts as necessary

Requirements

No prior experience or specific prerequisites are required to join this session.

 7 Hours

Testimonials (3)

Upcoming Courses

Related Categories