Open training, B6
GDPR in practice for IT and security teams
A day for IT teams: assessing a breach, notifying within 72 hours, handling data subject rights, and data retention in the systems.
Duration: 1 day
Programme
- 1.GDPR from the IT perspective: where the law ends and configuration begins
- 2.The record of processing activities: how to keep it truthful
- 3.Security of processing, Article 32: what it means technically
- 4.A personal data breach: assessing the risk to individuals, the 72 h notification to UODO, the Polish data protection authority
- 5.Handling data subject rights in the systems: access, erasure, portability
- 6.Retention and deletion of data, including from backups
- 7.Privacy by design in IT projects and procurement
- 8.Workshop: assessing a breach and deciding whether to notify
Who it is for
System administrators, IT teams, data protection officers working with IT, developers.
Outcome
The IT team can assess a breach, prepare the material for a notification, and fulfil a data subject request in the systems.
Materials
Breach assessment form, an Article 32 checklist, a template record of processing activities, certificate.
Format and group size
Live online or on site, group of 6 to 20 people.
Prerequisites
None.
Date to be announced
We run this course in the open format, but no date has been announced yet. Leave your e-mail address and we will write once a date is set.
Training sessions are not recorded.
Prices are net amounts, to which VAT at 23% is added. Buyers financing the training at least 70% from public funds are asked to notify us before the invoice is issued.
