Open training, B6

GDPR in practice for IT and security teams

A day for IT teams: assessing a breach, notifying within 72 hours, handling data subject rights, and data retention in the systems.

Duration: 1 day

Programme

  1. 1.GDPR from the IT perspective: where the law ends and configuration begins
  2. 2.The record of processing activities: how to keep it truthful
  3. 3.Security of processing, Article 32: what it means technically
  4. 4.A personal data breach: assessing the risk to individuals, the 72 h notification to UODO, the Polish data protection authority
  5. 5.Handling data subject rights in the systems: access, erasure, portability
  6. 6.Retention and deletion of data, including from backups
  7. 7.Privacy by design in IT projects and procurement
  8. 8.Workshop: assessing a breach and deciding whether to notify

Who it is for

System administrators, IT teams, data protection officers working with IT, developers.

Outcome

The IT team can assess a breach, prepare the material for a notification, and fulfil a data subject request in the systems.

Materials

Breach assessment form, an Article 32 checklist, a template record of processing activities, certificate.

Format and group size

Live online or on site, group of 6 to 20 people.

Prerequisites

None.

Date to be announced

We run this course in the open format, but no date has been announced yet. Leave your e-mail address and we will write once a date is set.

Training sessions are not recorded.

Prices are net amounts, to which VAT at 23% is added. Buyers financing the training at least 70% from public funds are asked to notify us before the invoice is issued.

Back to the schedule