GDPR Implementation

A case study that guides you through the entire project

Requirements:
  • GDPR DPO certification

We bring experience from 1000+ large and small GDPR implementation projects to this workshop

We bring homologated best practice to the Czech legislative environment. Everything is in line with what the European Personal Data Protection Board (formerly the WP29 Working Group) defines for EU states.

This includes Mapping datasets, GAP analysis, Risk analysis, but also Assessment of the impact on personal data protection. And also the know-how of how to integrate these outputs into the organization's management system. At first glance, a difficult task, but nothing is as difficult as it seems at first glance...

Join our graduates from a wide range of positions including:

  • Statutory bodies, procurators and directors

  • Lawyers, corporate lawyers, HR professionals

  • Public administration employees, non-profit organizations

  • Employees in the sales department, but also in marketing

  • Administrators of data, databases, operators. Head of IT, security

  • Privacy Officers | Data Protection Officer's (DPO)

What will you learn

More information
  • You will use real audit checklists
  • This will tell us what you actually have to solve and how
  • We will show you what to actually check and how to do it
  • You will prepare a final report with the auditor (what data you have, why you have it, how you fulfill it).

Terms

Currency
Term
Place
Length
Language
Price without VAT

No results match the specified filters

Loading...

Do you want this course individually?

Let us know!

This course can be customized - either as an individual training 1:1 or for your team. Just leave us your contact and we will contact you with options tailored to your needs.

Successfully sent

We will contact you.

Timeline

1st Day

09:00 – 10:30 Data flow mapping
  • The initial information audit identifies the areas covered by the GDPR.
How to map correctly
  • Form requirements
  • Output requirements
  • Consent is not always required
  • Developing an analysis of purposes and titles
10:30 – 10:45 Coffee break
10:45 – 12:15 Mapping at the level of
  • Data flows
  • Separate processes
Mapping by topic
  • Role mapping
  • IS/IT mapping
  • Process mapping
  • Consent mapping
  • Documentation mapping
12:15 – 13:15 Lunch break
13:15 – 14:45 GAP Analysis - Procedure
  • Assessment of the impact of EU Regulation 679/2016 on the organisation.
Data definition
  • Assessment of the position of the Trustee
  • Scope of necessary interventions (IT, Legal, HR...)
14:45 – 15:00 Coffee break
15:00 – 16:30 GAP Analysis - OutputsYou will learn to identify discrepancies between the requirements set out in the GPDR and the processes in your organisation.
  • Appointing a DPO
  • ICT and necessary changes
  • Law and necessary changes
  • Controlled documentation and changes
  • GDPR's impact on the organisation
16:30 – 17:00 Conclusion
  • Summary of Implementation Day I

2nd Day

09:00 – 10:30 GDPR Risk Analysis
  • Incident characteristics
  • GDPR Threats and Vulnerabilities
  • Asset identification and valuation
  • Qualitative and quantitative risk estimates
  • How to proceed with risk analysis (identification)
Reporting
  • How to compile a management report
  • List of risks by size and characteristics
  • Evaluating and reporting the results
Ways of treating risks
  • Mitigation
  • Tolerance (acceptance)
  • Avoidance and risk transfer
10:30 – 10:45 Coffee break
10:45 – 12:15 GDPR Risk Management
  • Context with the GDPR risk management system
  • The opportunities and benefits of comparing with other risks in the organisation to make the necessary decisions.
  • DPIA Data Protection Impact Assessment
Principles
  • When a risk is acceptable
  • Legal requirements for DPIA
  • Guidance from regulatory authorities
Data Protection Assessment Principles
  • DPIA Assessment
  • How to develop DPIA procedures
  • Practical risk analysis models
  • Generic threats and vulnerabilities
  • Risk derivation and assessment
12:15 – 13:15 Lunch break
13:15 – 14:45 ÚOOÚ - inspection day
  • Incidents
14:45 – 15:00 Coffee break
15:00 – 16:30 ÚOOÚ - inspection day
  • What, how and why to document
16:30 – 17:00 Conclusion
  • Summary of Implementation Day II
  • Block length 90
  • Teaching hours 16
  • Refreshments Yes
  • Exam No

You face offers like "buy this GDPR product", "order our GDPR audit", "we have software that will solve GDPR for you".

But what do you really need? It's not another bureaucratic burden...

Do you want to be prepared for the risks that actually affect you? That's what this workshop is all about.

Frequently asked questions

All questions

What is GDPR?

The General Data Protection Regulation represents a revolution in personal data protection. The new EU General Data Protection Regulation (GDPR) changes the rules of personal data processing and introduces huge penalties. Up to 4% of worldwide turnover, or €20,000,000

Regulation GDPR 679/2016 is valid in the territory of the Union with higher legal force at the level of an international treaty. In the event of a conflict with No. 101/2000 Coll., the GDPR then has a higher legal force and therefore the GDPR will apply. The GDPR itself does not repeal the law, but in a certain sense it supercharges and supplements it where they are in conflict.

Can I get an ISO company certification from TAYLLORCOX?

Yes. At Taylorcox, we have developed a unique three-phase certification process that allows us to proceed with unrivaled speed and efficiency.

We will train your employees, prepare a package of complete documentation for you and conduct an internal audit, on the basis of which you will receive confirmation that your company processes comply with strict international standards.