Learning Options

  • Online Video-Based Learning
  • Flexible Schedule
  • Expert Trainers with Industry Experience
  • High Pass Rates
  • 24/7 Personalised Support
  • Interactive Learning Materials
  • Live Online Classes
  • Expert Trainers with Industry Experience
  • Live Assessment and Feedback
  • Interactive Learning Materials
  • Networking Opportunities
  • High Pass Rates

Overview

The General Data Protection Regulation (GDPR) is essential for protecting personal data within the EU. This course provides learners with in-depth knowledge of GDPR principles, enabling them to ensure compliance and safeguard personal data in their organisation. It is vital for maintaining trust and avoiding costly penalties.

This course is aimed at professionals responsible for data protection, privacy officers, and anyone working with personal data. It will help them understand the complexities of GDPR, enabling them to implement effective data protection strategies and advance their careers in data privacy and compliance.

This 2 Day course provided by MPES is designed to equip learners with the practical skills and knowledge required to manage and implement GDPR compliance across various industries. It is an essential step for those looking to specialise in data protection and enhance their role within organisations focusing on privacy and compliance.
 

Course Objectives

  • Understand the key principles of GDPR.
  • Assess GDPR compliance within an organisation.
  • Implement effective data protection measures.
  • Conduct GDPR impact assessments.
  • Monitor GDPR compliance and respond to data breaches.
  • Advise on data subject rights.
  • Stay updated with GDPR changes and best practices.

Upon completion, learners will be able to effectively manage GDPR compliance, ensuring data protection within their organisations and mitigating legal risks. They will also be equipped to advise on privacy policies, conduct audits, and handle data breaches with confidence.

calender

Average completion time

2 Month
wifi

with unlimited support

100% online
clock

Start anytime

Study At Your Own Pace

Course Includes

Course Details

Develop your understanding of essential financial, business and management accounting techniques with ACCA Applied Knowledge. You'll learn basic business and management principles and the skills required of an accountant working in business.

Entry Requirements

    • Educational Background: There are no specific educational requirements for this course. 

    • Language Proficiency: Learners should have a good command of English, as all course materials, assessments, and discussions are conducted in English.  

    • Interest in EU GDPR: This course is ideal for individuals with a keen interest in building advanced knowledge of the EU GDPR 

Learning Outcomes

    • GDPR Compliance Management: Learners will gain the skills to assess, implement, and monitor GDPR compliance within an organisation, ensuring legal adherence. 

    • Data Protection Implementation: Learners will be able to implement effective data protection measures, safeguarding personal data and minimising risks of breaches. 

    • Privacy Impact Assessments: Learners will be proficient in conducting privacy impact assessments, identifying potential risks and ensuring GDPR compliance in various projects. 

    • Handling Data Breaches: Learners will acquire the expertise to respond to data breaches promptly, mitigate risks, and ensure proper reporting procedures are followed. 

Target Audience

    This course is ideal for professionals responsible for data protection and privacy compliance, helping them enhance their expertise in managing GDPR regulations and ensuring organisational compliance.

    • Data Protection Officers
    • Privacy Managers
    • Compliance Officers
    • Legal Advisors
    • IT Security Managers
    • Risk Managers
    • HR Managers

Course content

    Module 1: Data Subject Rights

    • Must I Always Obey a Right?
    • Rights and Third Parties
    • Requests Made on Behalf of Other Data Subjects
    • Guidelines for Children's Maturity
    • Responding to a Rights Request
    • What is a Month?
    • Rights Request Flow Chart
    • Right to be Informed
      • When Should Information Be Provided?
      • Best Practice Guidance
    • Right of Access
    • Right to Rectification
    • Right to Erasure
      • When can I Refuse to Comply with a Request for Erasure?
      • Erasing Children's Data
    • Right to Restrict Processing
      • When Processing Should be Restricted?
      • Protecting PII
      • Other Issues about Restricting Processing
    • Right to Data Portability
    • Right to Object
      • Complying with the Right to Object
      • Rejecting the Right to Object
      • Processing for Direct Marketing Purposes
      • Processing for Research Purposes
    • Rights Related to Automated Decision Making and Profiling
      • When does the Right not apply?
         

    Module 2: Subject Access Requests

    • Provenance
    • Overview: SARs
    • SAR is an Activity, Not a Title
    • How can a SAR be Submitted?
    • What Information Should the Response to a SAR Contain?
    • Additional Information
    • Replying to a SAR
    • Confirming a Data Subject’s Identity
    • Scope
    • Electronic Records
    • Non-Electronic Records
    • SARs Involving 3rd Party PII
    • Fees
    • Refusing a Subject Access Request
    • Access Requests from Employees
    • Credit Reference Agencies
    • Best Practice for SARs
       

    Module 3: Lawful Processing

    • Lawful Processing: A Reminder
    • User Rights Change Depending on the Justification
    • Lawfulness of Processing Conditions
    • Lawfulness for Special Categories of Data
    • UK ICO Tool
    • Consent
    • Key Points About Consent
    • Affirmative Action and Explicit Consent
    • Introduction of Affirmative Action
    • What is Not Affirmative Action?
    • Examples of Affirmative Action from the ICO
    • Introduction of Explicit Consent
    • Explicit Statement
    • Obtaining Explicit Consent
    • ICOs View of a Poor Form of Explicit Consent
    • Obtaining Consent for Scientific Research Purposes
    • Getting Consent
    • What Should Go into the Consent Request?
    • Consent Granularity
    • Right to Withdraw Consent
    • Children
    • Consent Records
    • ICOs Examples of Record Keeping
    • Key Points When Establishing Consent
    • Legitimate Interests
    • Getting the Balance Right
    • Consent or Legitimate Interest?
    • What Lawful Basis Can be Used for Processing Marketing PII?
       

    Module 4: Third Country Data

    • Cross Border Transfers
    • Transfer Mechanisms
    • Derogations
    • Adequacy
    • Adequate Ways to Safeguard Transfers of PII
    • Consent
    • One-Off or Infrequent Transfers
    • Who is Responsible?
    • Transferring PII Between EEA Members
    • Adequate Countries Outside of the EEA
    • Binding Corporate Rules (BCR)
    • What a BCR Must Cover?
    • Authorisation for BCRs
    • EU-US Privacy Shield
    • Privacy Shield Overview
    • Privacy Shield: Mechanics
    • Model Clauses
    • Public Authority Agreements
       

    Module 5: Introduction to Protecting Personal Data

    • Need to Secure
    • What is Appropriate?
    • Protecting PII – 3 Key Areas
    • Coverage
    • Defensive Design
    • Single Point of Failure (SPOF)
    • Incident Response
    • Data Breach Reporting Requirements
    • Incident Response Team
       

    Module 6: Data Protection Impact Assessments (DPIA)

    • Introduction
    • What Triggers a Data Protection Impact Assessment?
    • Cases Where DPIA is Not Required
    • Benefits of DPIA
    • Processes to be Considered for a DPIA
    • Responsibilities
    • DPIA Decision Path
    • DPIA Content
    • How Do I Conduct A DPIA?
    • Signing Off the DPIA
    • Mitigating Risks Identified by the DPIA
       

    Module 7: Need Want Drop

    • Overview
    • Need-Want-Drop: Concept Diagram
    • Need-Want-Drop: Categorising Data
    • Need/Want/Drop Methodology
       

    Module 8: Dealing with Third Parties and Data in the Cloud

    • What is Cloud Computing?
    • Myths of Cloud
    • Cloud Challenges
    • Controller-Processor Contract
    • Checklist
    • Data Controller - Summary
       

    Module 9: Practical Implications: GDPR

    • Brexit and its Impact on the GDPR
    • Adequacy
    • What does this Mean in Practice?
    • EU and UK Representatives
    • Exemption Rule
    • One-Stop Shop
       

    Module 10: Legal Requirements of the GDPR

    • Lawful, Fair, and Transparent Processing
    • Limitation of Purpose, Data and Storage
    • Data Subject Rights
    • Consent
    • Personal Data Breaches
    • Privacy by Design
    • Data Protection Impact Assessment
    • Data Transfers
    • Data Protection Officer
    • Awareness and Training
       

    Module 11: Privacy Principles in GDPR

    • Lawfulness, Fairness, and Transparency
    • Purpose Limitation
    • Data Minimisation
    • Accuracy
    • Storage Limitation
    • Integrity and Confidentiality
       

    Module 12: Common Data Security Failures, Consequences, and Lessons to be Learnt

    • Common Data Security Failures
    • Consequences
      • Fines Relating to Data Breaches
      • Litigation from Customers Relating to Data Breaches
      • Directors, Officers, and Professional Advisors
      • Reputational Damage
    • Lesson Learned
      • Knowing When and How to Communicate with Affected Individuals is Not Easy
      • GDPR is Important, as are Other Legal Frameworks

MPES Support That Helps You Succeed

At MPES, we offer comprehensive support to help you succeed in your studies. With expert guidance and valuable resources, we help you stay on track throughout your course.

  • MPES Learning offers dedicated support to help you succeed in Accounting and Finance courses.
  • Get expert guidance from tutors available online to assist with your studies.
  • Check your eligibility for exemptions with the relevant professional body before starting.
  • Our supportive team is here to offer study advice and support throughout your course.
  • Access a range of materials to help enhance your learning experience. These resources include practice exercises and additional reading to support your progress.

Career Growth Stories

MPES Learning offers globally recognised courses in accounting,

Need help with your ACCA course?

Our course advisors are here to help guide you and ensure that you choose the right course for you and your career journey.

Have Questions? We’ve Got You

If you have any questions, we’re here to help. Find the answers you need in the MPES detailed FAQ section.

Q. What are the key benefits of completing the Certified EU General Data Protection Regulation (EU GDPR) Practitioner Course?

This course helps learners develop a strong understanding of GDPR compliance, enabling them to implement data protection measures, conduct impact assessments, and handle data breaches effectively. It equips professionals with the skills to ensure compliance, mitigate risks, and protect personal data, advancing their careers in data privacy and compliance roles.

Q. How does this course help in GDPR compliance within an organisation?

The course provides learners with the knowledge and practical skills to assess, implement, and maintain GDPR compliance within an organisation. Learners will understand GDPR principles, be able to conduct audits, and advise teams on best practices, ensuring personal data is protected and legal obligations are met consistently.

Q. Can this course help professionals advance in data protection careers?

Yes, this course is ideal for those seeking to specialise in data protection and privacy compliance. Learners will acquire essential skills for handling GDPR regulations, allowing them to take on more senior roles, improve organisational data protection strategies, and stay ahead in the growing field of data privacy.

Q. Will this course help me respond to data breaches effectively?

Absolutely. The course covers how to manage and respond to data breaches in line with GDPR requirements. Learners will gain the knowledge to handle breaches swiftly, mitigate risks, report incidents, and ensure compliance with all necessary legal obligations, helping protect organisations from costly penalties.

Q. How will this course improve my understanding of data subject rights under GDPR?

The course provides detailed guidance on the rights of data subjects under GDPR, including access, rectification, and erasure. Learners will understand how to manage these rights effectively, ensuring organisations comply with data subject requests and maintaining strong privacy practices.

Related Course

Explore additional courses designed to complement your learning journey and enhance your professional skills. Expand your knowledge with these expertly curated options tailored to your career goals.

Certified EU General Data Protection Regulation (EU GDPR) Foundation and Practitioner Go To Course blue-arrow
Certified Data Protection Officer (CDPO) Go To Course blue-arrow
Certified EU General Data Protection Regulation (EU GDPR) Foundation Go To Course blue-arrow
Certified EU General Data Protection Regulation (EU GDPR) Practitioner Go To Course blue-arrow
Data Privacy Awareness Course Go To Course blue-arrow
View More

Resources

Access a wide range of free resources to support your learning journey. From blogs to news and podcasts, these valuable guides are available at no cost to help you succeed.

Course Schedule

£4995

Certified EU General Data Protection Regulation (EU GDPR) Practitioner

12th June 2024

13th June 2024

(2 days)

DELIVERY METHOD

Classroom

£4995

Certified EU General Data Protection Regulation (EU GDPR) Practitioner

6th November 2024

7th November 2024

(2 days)

DELIVERY METHOD

Classroom

Course Schedule

£1795

Certified EU General Data Protection Regulation (EU GDPR) Practitioner

Wed 17th Jan 2024

Thu 18th Jan 2024

Duration - 2 Days

DELIVERY METHOD

Virtual

£2295

Certified EU General Data Protection Regulation (EU GDPR) Practitioner

Sat 17th Feb 2024

Sun 18th Feb 2024

Duration - 2 Days

DELIVERY METHOD

Virtual

£1795

Certified EU General Data Protection Regulation (EU GDPR) Practitioner

Wed 13th Mar 2024

Thu 14th Mar 2024

Duration - 2 Days

DELIVERY METHOD

Virtual

£1795

Certified EU General Data Protection Regulation (EU GDPR) Practitioner

Thu 9th May 2024

Fri 10th May 2024

Duration - 2 Days

DELIVERY METHOD

Virtual