The Diploma in Data Protection and GDPR is one of the most comprehensive GDPR courses Ireland, offering a 10-week structure that blends practical insights with legal and regulatory foundations.
Week 1
Introduction
- Course and assessment outline
- Sources of law
- Right to privacy under international and domestic law
- The need for GDPR
- Overview of the current legislative context
- GDPR terminology
Week 2
The General Data Protection Regulation: Who, What and How
- The 7 data protection principles
- The conditions and challenges for the lawful processing of data
- Issues with data subject consent
- Retention and disposal of data
- Data security
Week 3
My Data, My Rights: Rights of Data Subjects
- Provision of information and right of access
- Rights to rectify and erase data
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Rights over automated decision making
- Responding to data subject requests
- Breaches and fines
Week 4
Who’s in charge: Obligations on Controllers and Processors
- The 7 principles of data protection by design and default
- Data protection impact assessments
- The role of the data protection officer and data controller
- The role of the data processor
- Record-keeping
- Co-operation with the supervisory authority
- Security of data and notification of breaches
Week 5
Free movement of data and transfers of personal data to third countries or international organisations
- The right to data portability
- Transfer of data outside the EU/EEA
- Adequacy decisions
- Standard contractual clauses
- Binding corporate rules
- Derogations
- UK GDPR legislation
- US data protection legislation
- International cooperation
- Data protection around the world
Week 6
Keeping a close eye: The Supervisory Authorities and the Data Protection Commissioner
- The role and function of the data protection commission
- The European data protection board
- The European data protection supervisor
- International Data Protection Authorities
Week 7
Falling foul of the rules: remedies, liability and penalties
- Right to lodge a complaint
- Right to an effective remedy
- Judicial review
- Representation
- Right to compensation and liability
- Administrative fines
- Damages and penalties
- Privacy v data protection
- The emergence of data protection in tort claims
Week 8
Specific Processing Situations Part 1: Employers and Employees
- Potential data security risks for an organisation
- Employee training
- Garda vetting of prospective employees
- Staff surveillance
- Biometrics in the workplace
- Transfer of ownership of business
- Employee access requests
Week 9
Specific Processing Situations Part 2: Marketing and Work Devices
- Direct marketing
- National directory database
- Publicly available information
- Unsolicited marketing
- E-receipts
- Devices, apps and social media at work
Week 10
Current Issues in Data Protection
- The law enforcement directive
- State surveillance
- The internet of things
- The public sector
- The use of algorithms and privacy
- The future of data privacy
- Creating a compliance plan for your organisation
*Course content is subject to review after each intake and may be updated in line with industry standards.