This course will introduce the regulations and help you become familiar with the basic components of a GDPR compliance program. We will also look at the Data Protection (Jersey) Law 2018, pointing out the differences with the GDPR. This course is focused on GDPR from both a Business and Technical context – it is NOT designed to provide authoritative legal advice.
The course will take around 6 hours to complete, with a 1-hour exam at the end.
Once the course is completed, you will:
- Understand the context of GDPR among EU law
- Understand the structure of GDPR to navigate the act
- Understand the consequences of non-compliance with the GDPR
- Understand what personal information is and why the GDPR protects it
- Determine the material scope of the GDPR
- Determine the geographical scope of the GDPR
- Determine the difference between data controllers and data processors
- Understand where GDPR is governed in the Member States and across the EU
- Understand the 7 principles outlined in the GDPR
- Understand measures that can be taken to comply with the accountability principle
- Understand the records that need to be kept to comply with the accountability principle
- Understand the 8 rights of the data subject outlined in the GDPR
- Understand any exceptions to the application of the rights of the data subject
- Understand how to demonstrate the security of data
- How to demonstrate data protection by design and by default
- Understand the purpose of a data protection impact assessment
- Understand the impacts of controllers and processors outside of the EU
- Understand how to manage data processors
- Understand the data processing records to keep
- Understand when to appoint a data protection officer and their role
- Understand the purpose of codes of conduct
- Understand certification and certification bodies
- Determine the nuances for data processor compliance
- Understand when and how a data breach can occur
- Understand what information must be provided to the supervisory authority
- Understand what information must be provided to the data subject
- Understand the conditions required to transfer data outside of the EU
- Understand the countries which the EU considers to have safeguards
- Determine the roles and responsibilities of supervisory authorities in GDPR
- Understand the powers a supervisory authority has
This course gives a great foundation for people wanting to understand data protection and consider a career in data privacy.
This is your first step in that journey, followed by a Data Protection Practitioners course.