GDPR Data Protection Combo (Officer + Leader)

Get to know GDPR practically

Requirements:
  • No experience required
  • Data Protection Officers

  • Statutory bodies, procurators and directors

  • Lawyers, corporate lawyers, HR professionals

  • Public administration employees, non-profit organizations

  • Employees in the sales department, but also in marketing

  • Administrators of data, databases, operators. Head of IT, security

What will you learn

More information
  • Know-how from 1,000+ large and small projects
  • 2 years of key experience in 2 interactive days
  • 140 decisions of European courts and data protection authorities
  • Tips for GDPR implementation, ISO 27701 certification and control by PDPO

Terms

Currency
Term
Place
Length
Language
Price without VAT

No results match the specified filters

Loading...

Do you want this course individually?

Let us know!

This course can be customized - either as an individual training 1:1 or for your team. Just leave us your contact and we will contact you with options tailored to your needs.

Successfully sent

We will contact you.

Timeline

1st Day

09:00 – 10:30 What is GDPR
  • GDPR basics
  • Rights and obligations
  • Scope and exceptions
Data protection legislation
10:30 – 10:45 Coffee Break
10:45 – 12:15 Personal dataData subjects' rights, changes and implications
12:15 – 13:15 Lunch Break
13:15 – 15:00 Security of personal data
  • Technical
  • Organizational
15:00 – 15:15 Coffee Break
15:15 – 17:00 DPO
  • Data Protection Officer
  • Penalties for failure to comply with obligations under the GDPR
Conclusion
  • Summary
  • Further questions

2nd Day

09:00 – 10:30 GDPR Compliance
  • Steps taken by the administrator to ensure compliance
  • Cross reference § 110/2019Sb. vs. GDPR
10:30 – 10:45 Coffee Break
10:45 – 12:15 DPO Practically
  • Data Protection Officer
  • Status of DPO and required knowledge
12:15 – 13:15 Lunch Break
13:15 – 15:00 Tasks of the DPO
  • Providing information
  • Processing of personal data in practice
  • How to be a DPO: audit, communication,  activities
15:00 – 15:15 Coffee Break
15:15 – 17:00 Conclusion
  • Practice tests
  • GDPR DPO Certification

3rd Day

09:00 – 10:30 Data flow mappingThe audit identifies areas covered by the GDPR.How to map correctly
  • Form, outputs
  • Consent is not always required
Mapping
  • Data streams
  • Separate processes
Mapping by topics
  • Roles, IS/IT
  • Processes, approvals
  • Documentation mapping
10:30 – 10:45 Coffee Break
10:45 – 12:15 GAP Analysis - procedure
Impact of Regulation 679/2016 EU on the organization
  • Definition of dataThe way they leadAssessment of the position of CommissionerNecessary interventions (IT, Law, HR..)
GAP Analysis - outputs
  • Appointment of DPO
  • ICT and necessary changes
  • Law and necessary changes
  • Controlled documentation and changes
  • Scope of the GDPR on the organization
12:15 – 13:15 Lunch Break
13:15 – 15:00 GDPR Risk Analysis
  • Characteristics of the incident
  • GDPR threats and vulnerabilities
  • Qualitative and quantitative estimates - Procedures in the analysis (determination) of risks
Reporting
  • List of risks by size and characteristicsEvaluation and reporting of the results found
Ways of treating risks
  • reducing
  • tolerance (acceptance)
  • risk avoidance and transfer
15:00 – 15:15 Coffee Break
15:15 – 17:00 GDPR Risk Management
  • Context of risk management according to GDPRPossibilities and benefits of comparison with other risks in the organization in order to make the necessary decisions.
DPIAData Protection Impact AssesmentPrinciples
  • When is risk acceptable?Legal requirements for DPIAGuidelines from regulatory authoritiesPersonal Data Protection Assessment Policy
DPIA Assesment
  • How to create DPIA procedures
  • Practical risk analysis models
  • Generic threats and vulnerabilities
  • Derivation of risk and its evaluation

4th Day

09:00 – 10:30 ISO certification
  • Principles, Processes
  • ISO 27001, ISO 27701
ISO 27702
  • IT security
  • Physical security
  • Personal security
  • Organizational security
10:30 – 10:45 Coffee Break
10:45 – 12:15 GDPR and ISO 27701
  • Regulation 679/2016
  • Auditor work rules according to ISO 27701
ISO 27701 Certifikace
  • Case study Microsoft
  • GDPR Compliance Procedure
12:15 – 13:15 Lunch Break
13:15 – 15:00 ÚOOÚ - control day
15:00 – 15:15 Coffee Break
15:15 – 17:00 Audit progress
  • Incidents
  • Inspection of ÚOOÚ
  • What, how and why to document
  • Block length 90
  • Teaching hours 32
  • Refreshments Yes
  • Exam Yes

Prestigious certification included

GDPR Data Protection Officer a Leader

Authorized according to the European e-Competence Framework. Accredited content according to the e-Competence Framework (e-CF) is a guarantee of appropriate expertise especially for the roles listed below.

Issuance of the certificate is in accordance with ISO/IEC 17024 General requirements for bodies operating certification of persons and The General Data Protection Regulation (GDPR Regulation EU 2016/679), or Personal data protection officer, according to Article 37 of the Regulation of the European Parliament and of the Council, including relevant other legal regulations and e-CF.

Certification instructions

Exam format

GDPR DPO

75 questions, 90 minutes, language: Czech, passing score: 45 marks

GDPR DPL

30 questions, 60 minutes, language: Czech, passing score: 20 marks

Frequently asked questions

All questions

What is GDPR?

The General Data Protection Regulation represents a revolution in personal data protection. The new EU General Data Protection Regulation (GDPR) changes the rules of personal data processing and introduces huge penalties. Up to 4% of worldwide turnover, or €20,000,000

Regulation GDPR 679/2016 is valid in the territory of the Union with higher legal force at the level of an international treaty. In the event of a conflict with No. 101/2000 Coll., the GDPR then has a higher legal force and therefore the GDPR will apply. The GDPR itself does not repeal the law, but in a certain sense it supercharges and supplements it where they are in conflict.

What is ePrivacy?

ePrivacy is the Regulation on the protection of privacy in electronic communications and the legal framework of the European Union, which concerns the protection of privacy and security of personal data in the field of electronic communications.

ePrivacy aims to strengthen consumer confidence in the online environment by regulating the way personal data is processed when using electronic communication services such as email, text messages, phone calls and internet browsers.

How does ePrivacy impact Data Protection Officers?

Although ePrivacy indirectly affects the protection of personal data, DPO may have an obligation to monitor compliance with the relevant provisions of ePrivacy, especially if the organization carries out electronic communications.

The DPO can play an important role in the implementation and compliance of privacy and personal data legislation within the organization, including ePrivacy compliance, which may include reviewing and updating electronic communications and privacy policies and procedures.