GDPR Workshop: hospital data attack

A hospital facing a hacker attack

Requirements:
  • No experience required

Cyber attacks are a daily reality even in the Czech Republic.

Government offices, hospitals, banks and other private companies were under attack. If personal data is affected by an attack, for example encrypted, downloaded or altered without authorization, the rules set out in the GDPR also come into play.

If an organization does not have sufficiently set up and documented security measures, including a process for managing cases of personal data security breaches, it cannot demonstrate its compliance with the GDPR.

  • IT Manager

  • Commissioner for the protection of personal data

  • Manager, Auditor, Cyber Security Architect

What will you learn

More information
  • How and by whom to handle security incidents
  • Correct and timely reporting to PDPO and data subjects
  • How to describe security measures in processing records
  • How to set severity criteria and prepare for a local PDPO investigation

Terms

Currency
Term
Place
Length
Language
Price without VAT

No results match the specified filters

Loading...

Do you want this course individually?

Let us know!

This course can be customized - either as an individual training 1:1 or for your team. Just leave us your contact and we will contact you with options tailored to your needs.

Successfully sent

We will contact you.

Timeline

1st Day

09:00 – 10:30 IntroductionRecap of GDPR rules
  • lawfulness of processing
  • transparency of processing
  • keeping records of the processing of personal data
Accountability / transparency
  • Principle of accountability of the controller for compliance with the GDPR
  • Current Czech and European cases concerning transparency of processing
The rights of the DPO
10:30 – 10:45 Coffee break
10:45 – 12:15 Attack scenario
  • Description of the organisation
  • Its processes and IT environment
  • The processing of personal data carried out
The problem begins
  • Questions from journalists
  • Dissatisfied users
  • Patient data on the website
ÚOOÚ
  • Check
  • Notification of the start of the inspection,
  • What documents to prepare for the ÚOOÚ
  • First local investigation of a GDPR breach
12:15 – 13:15 Lunch break
13:15 – 14:45 ÚOOÚ requires further documents
  • How to respond?
  • Second local investigation by the OOOÚ
  • Inspection findings of the ÚOOÚ investigation
  • Which audit conclusions to challenge, why and how?
14:45 – 15:00 Coffee break
15:00 – 17:00 Conclusion, summary
  • Summary of the audit process,
  • Errors before and during the audit
Effective defence - recap
  • How to proceed after the inspection
  • How to prevent non-compliance with GDPR
  • Discussion / conclusion
  • Block length 90
  • Teaching hours 8
  • Refreshments Yes
  • Exam No

An interactive workshop that simulates an attack and the procedural and legislative administrative procedures throughout the data protection lifecycle.

Frequently asked questions

All questions

What is GDPR?

The General Data Protection Regulation represents a revolution in personal data protection. The new EU General Data Protection Regulation (GDPR) changes the rules of personal data processing and introduces huge penalties. Up to 4% of worldwide turnover, or €20,000,000

Regulation GDPR 679/2016 is valid in the territory of the Union with higher legal force at the level of an international treaty. In the event of a conflict with No. 101/2000 Coll., the GDPR then has a higher legal force and therefore the GDPR will apply. The GDPR itself does not repeal the law, but in a certain sense it supercharges and supplements it where they are in conflict.

Can I get an ISO company certification from TAYLLORCOX?

Yes. At Taylorcox, we have developed a unique three-phase certification process that allows us to proceed with unrivaled speed and efficiency.

We will train your employees, prepare a package of complete documentation for you and conduct an internal audit, on the basis of which you will receive confirmation that your company processes comply with strict international standards.