Data Protection & Privacy Compliance
Foundation2 daysCompliance
Programme overview
Practical preparation for data protection obligations, covering the Eswatini data protection regime alongside South Africa's POPIA and the GDPR where cross border processing arises. Delegates build a personal information inventory, complete a readiness gap assessment and draft the core policy set.
Who should attend
Information officers and deputy information officers, compliance officers, IT and information security managers, HR managers, marketing managers, company secretaries, and legal advisors.
Sectors
All sectors handling customer or employee personal information. Particularly banks, insurers, medical schemes and healthcare, telecommunications, retail, and public enterprises.
Modules
- The regulatory picture: Eswatini's data protection framework, POPIA for cross border operations, GDPR where relevant
- Core concepts: personal information, special personal information, processing, responsible party, operator, data subject
- Lawful bases for processing and the conditions for lawful processing
- Consent: when it is required, what makes it valid, and why most consent forms fail
- Data subject rights and building a request handling process that meets deadlines
- Building the personal information inventory and data flow maps
- Third party processors and cross border transfers
- Security safeguards, and the intersection with information security
- Data breach identification, containment, and notification obligations
- Direct marketing, profiling and automated decision making
- The information officer role: appointment, registration, duties
- Readiness gap assessment and remediation planning
Learning outcomes
On completion delegates will be able to:
- Explain the obligations that apply to your organisation and to you personally
- Build a personal information inventory and data flow map
- Assess and document lawful bases for your processing activities
- Handle a data subject request within the statutory period
- Run a breach response
- Complete a readiness gap assessment and remediation plan
Tools and templates provided
- Personal information inventory template
- Data flow mapping worksheets
- Privacy policy and internal data protection policy templates
- Data subject request handling procedure
- Breach response plan and notification templates
- Readiness gap assessment tool
Assessment and certification
Inventory build, a data subject request simulation, and a breach scenario exercise.
Certificate of Completion.
