GDPR in Practice: From Articles to an Operating Program
GDPR has 99 articles, but running a program comes down to a handful of decisions. Make them, and leave with a working plan for the next 12 months.
Prepares you for: CIPP/E · ISO/IEC 27701 Lead Implementer
What you'll be able to do
- Choose and document the lawful basis for each processing activity
- Decide whether you need a DPO and what the role involves
- Set up records of processing that stay accurate
- Put the right terms in place with processors
A 12-month GDPR program plan
What's in it. A 12-month privacy program plan with lawful-basis decisions, DPO determination, Article 30 approach and processor terms.
You build it lesson by lesson, using your own organization, and submit it for your certificate. It's yours to keep and adapt.
Who it's for
Privacy managers, DPOs and compliance leads at organizations that handle EU personal data.
What's inside
- Part 1Where the requirement comes from 16 min
- Part 2How small teams and enterprises meet it 14 min
- Part 3The method, step by step 20 min
- Part 4Hands-on lab: small team choose one 120 min
- Part 5Hands-on lab: enterprise choose one 150 min
- Part 6Finish and submit your deliverable 20 min
Built for your size
The requirement is the same everywhere. How you meet it depends on who you have. You pick the lab that matches your organization.
How you earn the certificate
Submit your finished deliverable, which is scored against a published rubric, and pass a short scenario quiz. Your certificate goes to your wallet and can be checked by anyone on the public register.