Course Outline
Introduction to GDPR
- Definitions of personal and sensitive data
- Selecting the appropriate team members
- Interpreting GDPR terminology
- Implementing privacy by design and privacy by default
Assembling the Team
- Identifying key personnel for GDPR support (legal, marketing, IT, HR)
- Role of a Data Protection Officer (DPO) and necessity assessment
Access Control and Storage
- Identifying personal data assets
- Defining data access permissions
- Managing data storage methods (electronic or physical)
- Implementing data security measures
Legal Rights and Responsibilities
- Data subject rights and entitlements
- Obligations of data controllers
- Obligations of data processors
- Managing data access requests
- Regulations regarding international data transfers
- Defining and assessing data breaches
- Understanding fines and potential penalties
- Managing third-party service providers
- Protocols for international data movement
Establishing Policies and Procedures (Legal Compliance)
- Drafting data privacy policies for staff and clients
- Documenting the legal basis for data retention
- Setting standards for data collection and handling
- Reviewing contracts with external suppliers
Ongoing Maintenance
- Ensuring the accuracy and currency of held data
- Updating privacy notices and procedures in response to GDPR amendments
- Adjusting contracts as required.
Requirements
No specific prior knowledge or prerequisites are necessary to participate in this course.
Testimonials (3)
The variety of the information shared and the clarity to explain terms in plain English.
Arisbe Mendoza - Fairtrade International
Course - GDPR Workshop
The training was very informative and relevant to the realities of what we are dealing with. It was very eye-opening to understand how to deal with data of UE residents. The trainer was very informed and prepared on the subject.
Isaac Rewa - Fairtrade International
Course - GDPR Workshop
I generally enjoyed the knowledge of the trainer.