Course Introduction
In the global information economy, personal data has become the driving force behind online activities, but with it come privacy and personal data protection issues. The EU General Data Protection Regulation (GDPR) and China's Personal Information Protection Law (PIPL) came into effect on 25 May 2018 and 1 November 2021 respectively, aiming to protect individuals' rights to personal data and regulate personal data processing activities.
The GDPR has a very broad scope of application: any organisation that collects, transmits, retains or processes personal data relating to individuals in all EU member states is subject to it, regardless of whether the organisation is located in the EU. Non‑compliance can result in administrative fines of up to 4% of global annual turnover or €20 million. This online course uses interactive scenarios, Q&A and other formats to introduce the background of the GDPR, interpret its key contents and share compliance examples in plain language, aiming to deepen participants' understanding of the latest EU regulations. By taking this GDPR online course, you will learn how to lead and enforce data protection across the entire organisation, while learning more about individuals' rights and measures to effectively respond to data breaches.
Training Benefits
- Understand the background and scope of application of the GDPR
- Master the key contents and basic principles of the GDPR
- Understand key topics such as data subject rights, DPIA, and DPO responsibilities
- Master measures to respond to data breaches and individual rights requests
- Enhance organisational awareness of data protection compliance
Target Participants
- Middle and senior managers, legal personnel, business operations staff, IT managers and other relevant personnel engaged in data protection compliance work; individuals who wish to have a certain level of data protection awareness.
Course Outline
- Background and scope of application of the GDPR
- Principles of the GDPR
- Interpretation of key definitions
- Rights of data subjects
- Privacy by design and by default
- Cross‑border data transfers
- Duties of the Data Protection Officer
- Data Protection Impact Assessment (DPIA)
- Remedial measures, liability and penalties
- GDPR compliance points