
Personal Data Protection Training
Personal data protection is no longer optional — it's a core business obligation with serious legal and financial consequences. This training gives compliance professionals, privacy officers, and data-responsible managers the practical knowledge to build and run a defensible data protection programme. From GDPR fundamentals to breach response and vendor governance, every module is built for real-world application.
What you will learn:
You will master the foundational principles of personal data protection, including lawful bases for processing, data subject rights, and the roles of controllers and processors. You will learn how to map data flows, conduct privacy impact assessments, and apply privacy by design to new and existing systems. The course covers technical and organisational security safeguards, breach detection and regulatory notification procedures, and cross-border data transfer mechanisms. You will also develop skills in vendor due diligence, policy framework design, and executive-level privacy risk communication. By the end, you will have the tools to assess your organisation's compliance posture and drive measurable improvements.
How you study in practice Personal Data Protection Training
How you practise Personal Data Protection Training
For companies looking to train their teams
With Dedika for businesses, the course includes exercises and examples tailored to your company and its specific needs.
Course content
8 Chapters • 40 LessonsDuration between 4 and 360 hours (you decide)
Chapter 1HideHide detailsSee detailsFoundations of Personal Data Protection
Foundations of Personal Data Protection
Lesson 1 • Core Data Protection Principles
Introduces the foundational principles governing lawful data handling. Learners connect each principle to real organisational behaviours.
Lesson 2 • Roles and Responsibilities in Data Processing
Distinguishes controllers, processors, and joint controllers. Learners identify their own role and its legal implications.
Lesson 3 • Rights of Data Subjects
Covers the rights individuals hold over their personal data. Learners map each right to corresponding organisational obligations.
Lesson 4 • Legal Bases for Processing Personal Data
Explains the six lawful bases for processing and when each applies. Learners select appropriate bases for common business scenarios.
Lesson 5 • What Personal Data Actually Means
Defines personal data, sensitive data, and anonymised data with concrete examples. Grounds all subsequent chapters in precise, shared terminology.
Chapter 2HideHide detailsSee detailsRegulatory Landscape and Compliance Obligations
Regulatory Landscape and Compliance Obligations
Lesson 1 • Global Data Protection Regulatory Frameworks
Surveys major regional and national data protection regimes and their shared principles. Learners recognise how frameworks overlap and diverge.
Lesson 2 • Compulsory Organisational Compliance Measures
Identifies required policies, records, and accountability structures. Learners build a compliance checklist tailored to their organisation.
Lesson 3 • Determining Territorial Scope
Explains how regulations apply based on establishment, targeting, and data location. Learners determine which rules govern their specific operations.
Lesson 4 • Penalties, Fines, and Reputational Risk
Quantifies the financial and reputational consequences of non-compliance. Learners prioritise compliance investments based on risk exposure.
Lesson 5 • Supervisory Authorities and Enforcement
Describes the role of data protection authorities and their enforcement powers. Learners anticipate regulatory scrutiny and prepare accordingly.
Chapter 3HideHide detailsSee detailsData Mapping and Inventory Management
Data Mapping and Inventory Management
Lesson 1 • Conducting a Data Discovery Exercise
Provides structured methods for locating personal data across systems and departments. Learners apply discovery techniques to uncover hidden data stores.
Lesson 2 • Building and Maintaining a Data Inventory
Guides creation of a living register of all personal data assets. Learners design inventory fields that satisfy regulatory record-keeping requirements.
Lesson 3 • Understanding Data Flows Across the Organisation
Traces how personal data enters, moves through, and exits organisational systems. Learners visualise end-to-end data journeys before documenting them.
Lesson 4 • Data Flow Mapping Techniques
Introduces diagramming methods to represent data flows visually. Learners produce flow maps that support impact assessments and audits.
Lesson 5 • Using Inventory Data for Compliance Decisions
Shows how inventory outputs feed into legal basis selection, retention scheduling, and risk assessment. Learners connect mapping outputs to concrete compliance actions.
Chapter 4HideHide detailsSee detailsPrivacy by Design and Default
Privacy by Design and Default
Lesson 1 • Privacy-Enhancing Technologies
Surveys technical tools that reduce privacy risk while preserving utility. Learners select appropriate technologies for specific data protection challenges.
Lesson 2 • Conducting a Data Protection Impact Assessment
Provides a step-by-step methodology for assessing and mitigating privacy risks in new projects. Learners complete a full impact assessment on a realistic scenario.
Lesson 3 • Data Minimisation and Purpose Binding in Systems
Applies minimisation and purpose limitation at the technical architecture level. Learners redesign data collection forms and APIs to collect only necessary data.
Lesson 4 • Privacy by Design Core Principles
Introduces the seven foundational principles of privacy by design. Learners translate abstract principles into engineering and business requirements.
Lesson 5 • Integrating Privacy into Product Development
Embeds privacy checkpoints into agile and waterfall development cycles. Learners modify existing workflows to include privacy gates.
Chapter 5HideHide detailsSee detailsData Security and Technical Safeguards
Data Security and Technical Safeguards
Lesson 1 • Security Risk Assessment for Personal Data
Applies risk assessment methodology specifically to personal data assets. Learners prioritise security controls based on data sensitivity and threat likelihood.
Lesson 2 • Monitoring, Logging, and Audit Trails
Implements logging strategies that detect unauthorised access and support forensic investigation. Learners configure audit trail requirements for personal data systems.
Lesson 3 • Access Control and Identity Management
Establishes principles for limiting data access to authorised personnel only. Learners design role-based access models aligned with data minimisation.
Lesson 4 • Organisational Security Measures
Addresses non-technical controls including policies, physical security, and staff practices. Learners integrate organisational measures with technical controls.
Lesson 5 • Encryption and Key Management
Explains encryption standards and key lifecycle management for data at rest and in transit. Learners specify encryption requirements for common data storage scenarios.
Chapter 6HideHide detailsSee detailsData Breach Management and Incident Response
Data Breach Management and Incident Response
Lesson 1 • Regulatory Notification Requirements
Details compulsory timelines and content for notifying supervisory authorities. Learners draft compliant authority notifications for realistic breach scenarios.
Lesson 2 • Classifying and Detecting Data Breaches
Defines what constitutes a personal data breach and how to detect one early. Learners distinguish reportable breaches from minor security incidents.
Lesson 3 • Containment and Forensic Investigation
Guides immediate containment actions and evidence preservation. Learners apply a structured investigation process to determine breach scope and cause.
Lesson 4 • Notifying Affected Data Subjects
Covers when and how to communicate breaches directly to individuals. Learners craft clear, legally compliant subject notifications.
Lesson 5 • Post-Breach Review and Remediation
Structures the lessons-learned process to prevent recurrence and strengthen controls. Learners produce a remediation action plan from a breach case study.
Chapter 7HideHide detailsSee detailsThird-Party and Vendor Data Management
Third-Party and Vendor Data Management
Lesson 1 • Mapping Third-Party Data Relationships
Identifies all external parties that receive or process personal data on the organisation's behalf. Learners categorise vendors by processing role and risk level.
Lesson 2 • Vendor Due Diligence and Assessment
Establishes a structured process for evaluating vendor privacy and security practices before engagement. Learners conduct a due diligence assessment using a standardised questionnaire.
Lesson 3 • Data Processing Agreement Requirements
Specifies compulsory contractual clauses governing processor relationships. Learners review and negotiate data processing agreements for compliance gaps.
Lesson 4 • Managing Vendor Incidents and Offboarding
Addresses how to respond when a vendor suffers a breach and how to safely terminate vendor relationships. Learners draft vendor offboarding data return and deletion procedures.
Lesson 5 • Cross-Border Data Transfer Mechanisms
Explains lawful mechanisms for transferring personal data to countries without equivalent protections. Learners select and implement appropriate transfer safeguards.
Chapter 8HideHide detailsSee detailsBuilding a Sustainable Data Protection Programme
Building a Sustainable Data Protection Programme
Lesson 1 • Metrics, Reporting, and Continuous Improvement
Defines key performance indicators for data protection and structures executive reporting. Learners build a dashboard that tracks programme health and drives improvement.
Lesson 2 • Data Protection Governance Structures
Establishes accountability frameworks, steering committees, and ownership models. Learners design a governance structure appropriate for their organisation's size and risk profile.
Lesson 3 • Policies, Standards, and Procedures Framework
Designs a hierarchical policy architecture that operationalises data protection principles. Learners draft a policy document using a standardised template.
Lesson 4 • Privacy Programme Maturity Assessment
Applies a maturity model to benchmark current programme capabilities and identify gaps. Learners score their organisation and prioritise improvement initiatives.
Lesson 5 • Training, Awareness, and Culture Change
Builds a sustained awareness programme that embeds privacy into organisational culture. Learners design a role-based training curriculum with measurable outcomes.
Your valid completion certificate
This course is for you:
Compliance analyst stepping into a dedicated privacy role for the first time.
HR manager handling sensitive employee records without formal privacy training.
IT security professional expanding responsibilities to include data governance work.
Legal counsel advising clients on regulatory obligations across multiple jurisdictions.
Product manager whose team collects and processes significant volumes of user data.
Operations manager responsible for vendor contracts involving personal data transfers.
What our students say
Your lessons are perfect. I purchased the one-year package and finally have the opportunity to follow various topics of interest without needing to change platforms... I'm grateful for everything you do, I've already recommended you to other people...

I like how the lessons are straight to the point and how I can change chapters and skip content I don't need.

I like the content and the way videos are presented and transcribed, which speeds up the process!

The platform is fast, simple to use. The diversity of content and complementary videos really help with learning.

Top qualifications
FAQ
Who is Dedika?
Is the certificate valid in South Africa?
Are the courses free?
What is the course workload?
What are the courses like?
How do the courses work?
What is the duration of the courses?
What is the cost or price of the courses?
What is an EAD or online course and how does it work?
PDF Course




















