Get in Touch

Course Outline

Introduction to GDPR

  • Distinguishing personal data from sensitive data
  • Assembling your team
  • Gaining familiarity with GDPR terminology
  • Concepts of privacy by design and privacy by default

Establishing a team

  • Selecting key personnel to assist with GDPR (legal, marketing, IT, HR)
  • Defining the role of a DPO and assessing the necessity of one

Permissions

  • Identifying whether information qualifies as personal data
  • Determining who is authorized to access data
  • Managing data storage methods, whether electronic or paper-based
  • Ensuring data security

Rights and responsibilities

  • Empowering data subjects and outlining their rights
  • Responsibilities of the Controller
  • Responsibilities of the Processor
  • Responding to data requests
  • Handling international data transfers
  • Identifying what constitutes a data breach
  • Understanding fines and penalties
  • Managing third-party services
  • Navigating international data transfers

Formulating policies and procedures (legal considerations)

  • Drafting a data privacy policy for staff and customers
  • Documenting the legal rationale for retaining data
  • Setting codes of conduct for data collection and handling
  • Reviewing external third-party agreements with suppliers

Ongoing maintenance

  • Updating data – ensuring the information you retain remains current
  • Revising privacy notices and processes as GDPR evolves
  • Modifying contracts as necessary.

Requirements

No particular qualifications or requirements are necessary to enroll in this course.

 7 Hours

Testimonials (3)

Related Categories