GPDR and Data Protection Training Course

This GDPR training course brings participants up to date on the very latest requirements of the GDPR and Data Protection Laws.

The course also provides an opportunity for participants to review their own organisations data protection policies and procedures, to raise question and receive answers, guidance and sign posting to further sources of support and help

Participants gain a better understanding of how to improve their organisation’s GDPR compliance, meet data protection regulations and data protection legislation.

Regular training on Data Protection and the GDPR (general data protection regulation) is essential for all managers, HR teams, Volunteers and ITC/data specialists and Staff. Firstly, because the number of data protection breaches and GDPR breaches remains worryingly high.

No organisation can afford to ignore or get data protection wrong. Data Protection covers every employer and every organisation. To maintain knowledge and awareness Concrew Training recommend high quality GDPR training at least every 2 years and annually for higher risk organisations and Data Protection officers.

For Whom
Concrew Training offer a range of courses to suit all needs. This one-day course is targeted at DPO and managers operating within higher environments. We can adapt content to for lower risk environments and for staff place greater emphasis on common risks and prevention.

CONTENT

  1. Data Protection Law, GDPR and General Principles
    The first part of the course explains the key principles and practice that underpin effective Data Protection. The rationale behind it and its links to other laws governing the employment of staff and provision of services in the context of handling and processing data are explained.
  • The Data Protection Act and Data Security
  • GDPR compliance, data protection compliance
  • The 6 principles of the GDPR, GDP R and links to other Legislation
  • Defining what is meant by protected data, personal data and sensitive data
  • Defining and exploring the roles of the: –
  • Data Controller and Processor
  • Data Subject and Users, including Secondary Data Subject and Third Parties
  • Information Commissioner
  • Role of an Internal Data Compliance Officer
  • Defining “processing” and “fair processing”
  • Considerations that need to be addressed for fair and legal processing
  • Sensitive data, sensitive personal date, the different considerations that need addressing
  • Data security issues – organisational & technical
  • Securing and Evidencing GDPR Consent
  • Individual rights and responsibilities
  • GDPR complaints
  • Current Sanctions, Fines and Penalties
  1. The General Data Protection Regulations (GDPR) – In Greater Detail
    The GDPR regulations are explored in more detail. Starting with the Definition of “Personal Data.”, participants work through the following menu of topics.
  • Privacy Management
  • Privacy by Design
  • Privacy Practice
  • Data Sharing Agreements with Cloud Service Providers
  • Record Keeping
  • Information Provided at Data Collection
  • Who needs to be told what and when
  • Profiling
  • Processing data and determining criteria about persons
  • Opting Out
  • Legitimate Interests & Direct Marketing
  • Destruction and alteration of data
  • Notifications – Breaches & Exceptions
  • Data Subject Access Requests
  • The Right to Data Portability
  • Retention & The Right to be Forgotten

Threaded into the course are the expected components of change arising from the new UK Data Protection and Digital Information Safety Bill. These new measures, subject to parliamentary amendment, include:-

  • Definition of a living identifiable person
  • Possible exemptions to the practice of “record keeping”
  • More flexibility around the practice of data protection risk assessments
  • Clarification about the need and/or scope of a Data Protection Officer
  • New definition of the term “legitimate interest” and the abolition of the “balancing test”
  • Introduction of a more robust definition about vexatious data subject access requests
  1. UK PECR, the Privacy and Electronic Communications Regulations
    Session 3 provides a headline overview of the PECR which works in conjunction with the GDPR to ensure data processing in respect of electronic communications, web site, social media, emails, phone calls and marketing are secure.

Concrew Training’s one day course on understanding the PECR for marketers is recommended for those needing a more in depth understanding on the related Privacy and Electronic Communication Regulations.

FEEDBACK – EXAMPLE COMMENTS FROM PREVIOUS DELEGATES

Please Note: We always respect client privacy and confidentiality. We do not collate any identifiable delegate information on our course feedback forms. We only publish comments where express permission for marketing and promotional use, has been given.  The majority of delegates do not give this permission. 

  • “Excellent and very informative”
  • “Very good and informative training”
  • “Very engaging – made quite a “dry” subject interesting”
  • “Informative – well paced”
  • “facilitator was very engaging – thank you”
  • “Very Good”
  • “Well presented”
  • “really useful information”

ASK FOR A NO OBLIGATION QUOTE - NOW

we won't chase you, we wont pester you, we won't add you to any mailing list

MORE - Data Protection Courses