GDPR IT & Security

IT security and privacy are not the same. These are 2 sides of one coin, one threatening the other. In this workshop, we will focus on how to solve the paradox of personal data protection in IT systems against the legislative requirements of GDPR. For graduates, we also recommend GDPR sample documentation, which will facilitate the implementation of measures.

Would you like to compare to other courses?

Virtual Training or e-Learning?

We offer flexibility. You can choose from our selection of in-class courses as well as online courses.

Try a live virtual course

Target audience

All IT managers and security specialists

We will show you how to avoid the most common mistakes and misinterpretations of GDPR that can get your IT to a dead end.

Come to this workshop before you start buying new software for encrypting or anonymizing data. What you need first and foremost is to know the principles on which to configure systems to comply with the General Privacy Policy.

  • IT, CIO, Chief Security Officer
  • Consultants implementing the GDPR Regulation
  • Representatives of personal data administrators (companies operating IS)
  • Representatives of personal data processors (development, hosting, data centers, web
Target audience

Agenda

09:00 - 10:30

IT & Security

  • Impacts of GDPR on IT
  • How to get approvals in IS
  • Treatment of the rights of subjects in the application
  • Ensuring anonymization of personal data
  • Transparent information (case study)

Personal data

  • Ensuring access
  • How to enable repairs
  • Pseudonymization of data
  • Central management of personal data
  • Deletion and context treatment techniques

10:30 - 10:45

Coffee Break

10:45 - 12:15

Objection processing

  • Processing restrictions
  • Technical aspects of portability
  • Automated decision making in GDPR applications

Processing of applications

  • Process description
  • Patterns and forms

Technical - organizational measures before

  • Unauthorized use
  • Unlawful processing
  • Loss, destruction or damage

12:15 - 13:15

Lunch

13:15 - 14:45

Security incidents

  • Treatment of security incidents
  • Samples and forms (case study)

GDPR vs. application

  • Requirements for editing existing apps
  • Necessary changes in the development of new applications

Practical demonstration + patterns

  • Risk assessment of personal data processing
  • Privacy Impact Assessment (DPIA)

Company guidelines: sample forms + documentation

  • OU processing
  • Processing of applications
  • Processing records + patterns
  • Records of security incidents

14:45 - 15:00

Coffee Break

15:00 - 16:45

IT contracts

  • Contracts in IT according to GDPR
  • Analysis and demonstration of a model contract

Implementation

  • Action plan for 90 days
  • Process description and documentation
  • How to put implementation into practice
  • Success factors of GDPR Compliance
  • Differences in large-scale implementations
  • Risk management - description of the process and documentation

Nowadays, a vast majority of personal data is processed with the help of IT systems. And paper archives are increasingly being digitized. However, we will look at both ways of handling data.

The GDPR Workshop contains a number of examples that relate to your position and job responsibilities. We will discuss with you all questions regarding the obligations of the Administrator or the Processor of Personal Data.

  • Block duration 90 minutes
  • Hours 8 hours
  • Refreshments Yes
  • Exam No
  • Prerequisites

    The Data Protection Officer is a compulsory course. The practical workshop is directly related to the knowledge and experience gained from this course.

Aims of the course

  • Learn to build proactive security that comes out cheaper
  • Apply GDPR requirements in IT and Security environments
  • Set up risk management and be able to deal with security incidents
  • To prepare systems for the fulfilled requirements of data subjects, as well as the control of the Office for Personal Data Protection

Lucie Balýová

Problematice ochrany osobních osobních údajů se věnuje již více než 10 let, a to zejména s ohledem denní užívání v praktické aplikaci, provádění auditů ochrany osobních údajů, lektorské a poradenské činnosti. V advokátní praxi se zaměřuje nejen na ochranu osobních údajů, ale také na IT právo a kybernetickou bezpečnost, kdy se jednotlivé specializace zásadně doplňují pro řešení konkrétních případů. 

Lucie hojně publikuje v odborných periodikách, je členkou odborného spolku gdpr.cz a autorkou několika odborných knih, a často se vyjadřuje k dotazům problematiky osobních údajů, IT práva či kybernetické bezpečnosti a vyučuje i na několika vysokých školách.

František Nonnemann

Frantisk has been dealing with the issue of law and practice of processing and protection of personal data for more than ten years. After graduating from the Faculty of Law of Charles University in Prague, he worked for many years in leading positions at the Office for Personal Data Protection, including as the head of the legal department.

He also participated in the preparation of the accredited course Commissioner for Personal Data Protection, is the author of the Handbook for Commissioners, is also involved in the development of other GDPR services, sample documents, methodologies, created an online free tool for GDPR Audit and now collaborates in the working group for GDPR certification Compliance.

Active activities in European working groups for personal data protection as well as in international control activities cannot be neglected either. He is a co-author of a commentary on Act No. 101/2000 Coll., On the protection of personal data, as well as a commentary on the GDPR, as well as a number of professional articles.

  • 2016 - present| TAYLLORCOX: GDPR Auditor
  • 2016 - present| Moneta
  • 2006 - 2016     | ÚOOÚ
  • 2000 - 2006     | Law faculty, Charles Univerisity 

Graduate ratings

Excellent review from 1409 reviewers

What makes our references exceptional? They are not one-off events. Clients come back to us regularly.

  • Veronika H.
  • 13.11.20
  • Všeobecná zdravotní pojišťovna

Přestože byl kurz online formou, k čemuž jsem byla skeptická, jsem spokojená. Kurz byl hodně aktivní, žádné pouhé poslouchání. Sdíleli jsme zkušenosti a znalosti z praxe s dalšími účastníky. Zaměřili jsme se na předem dohodnutá témata, která měla přínos pro všechny.

  • GDPR Anonymizováno
  • 13.11.20

Školení pro mě bylo přínosné, dozvěděla jsem se nové informace z oblasti ISO a ZKB.

  • GDPR Anonymizováno
  • 01.11.20

Ověřila jsem si, že pro jednodenní kurzy je online meeting docela fajn platforma. Fungovalo to dobře a ani mi pak tolik nevadilo, že nás bylo tak málo. Půjdu v této podobě určitě i do dalších školení.

  • GDPR Anonymizováno
  • 04.03.19
  • Komerční banka
Výborný.

  • GDPR Anonymizováno
  • 04.03.19
  • Freelancer
Výborný.

  • Juraj S.
  • 22.06.18
  • Freelancer

Super!

  • GDPR Anonymizováno
  • 22.06.18
  • Freelancer

Druhý workshop - hodně přínosné diskuze. 

  • GDPR Anonymizováno
  • 22.06.18
  • 1st International school of Ostrava

Věcné, s ukázky z produkce rozsáhlé znalosti školitele.

  • GDPR Anonymizováno
  • 22.06.18
  • Freelancer

Výborný. 

  • Milan H.
  • 14.05.18
  • Freelancer

Vynikajuce.

View the next 10 reviews of our graduates

View the full list of reference clients.

Your rating
*****

Not sure if this is the right courese for you? Get in touch!

For assistance please give us a call.

We are available at +420 222 553 101 Always Monday to Friday: 9am - 5pm.

*items marked with an asterisk are mandatory

Would you like a gift for your birtday?