Home/Store/Online Events
GDPR - Practical Implementation for Businesses

GDPR - Practical Implementation for Businesses

€33.90
26 March 2026 | 14:00
The event qualifies for 3 hours Professional Development Competencies
1
Maximum purchase quantity: 1 items
Save this product for later
Have questions?
Share this product with your friends
ShareSharePin it
GDPR - Practical Implementation for Businesses
Event Description
Location: Online Live Session | Webinar
Session 01: Thursday, 26 March 2026 | 14:00 - 17:15

GDPR Fundamentals

  • Objective: Establish a solid understanding of the core regulation, its scope, and key terminology.
  • The Legal Framework: Introduction, Dates, and Direct Applicability.
  • Core Definitions: Personal Data, Special Categories of Data, and "Processing."
  • The Scope of GDPR: Who must comply? (Territoriality).
  • The 7 Key Principles of GDPR (Lawfulness, Accountability, etc.).
  • Core Roles and Responsibilities: Controller vs. Processor.
  • Introduction to the Supervisory Authority and Enforcement Powers.

Learning from Others – Real-World Data Breaches

  • Objective: Analyze enforcement cases to understand common pitfalls and the importance of security and transparency.
  • Data Security Essentials: The CIA Triad and Article 32.
  • What is a Data Breach? Notification Timelines (Article 33) and Communicating to Data Subjects (Article 34).
  • Case Studies

Data Subject Rights and Cross-Border Data Transfers in Action

  • Objective: Apply the rules for data subject requests and international data flows using real-world scenarios.
  • Part A: Data Subject Rights
    • Articles 13 & 15: The right to be informed and the right of access.
    • Case Study: Vinted (Lithuania) - Violations of the 'right to be forgotten' and access requests.
  • Part B: Cross-Border Data Transfers
    • Transfer Mechanisms: Adequacy Decisions, SCCs, and BCRs.
    • The Schrems II Ruling and its Impact.
    • Case Studies:
      • Lack of Transfer Tools: Uber (Netherlands) and Takeaway B.V. (Netherlands).
      • Inadequate Risk Assessment: Ferde AS (Norway/China) and Vodafone (Spain/Peru).
  • Practical Application: Steps for a compliant data transfer.

The Speaker

Matthew Demicoli is a seasoned internal auditor and compliance professional with over a decade of industry expertise. His primary focus lies in auditing management systems, particularly in information security and privacy.

Throughout his career, Matthew has contributed to a diverse range of sectors, including: Banking, iGaming, technology, manufacturing, and government.

Academically, Matthew has read for a Bachelor of Science degree followed by an MBA. He holds a range of certifications such as a DORA Lead Manager, ISO27001 Lead Auditor and Lead Implementor, Certified information Security Auditor (CISA), Certified Information Security Professional (CISSP) and Certified information Privacy Manager (CIPM).

In addition to his practical roles, Matthew is experienced as a tutor. He has delivered various accredited auditing and management courses provided from esteemed providers in their respective field.

Currently, Matthew serves as a consultant specializing in auditing, information security, and privacy services.

Show More
  • Search Products
  • My Account
  • Track Orders
  • Favorites
  • Shopping Bag
  • Gift Cards
Display prices in:EUR
Skip to main content
Society Education
Menu

Society Educational Services Ltd

Terms & ConditionsPrivacy PolicyAbout UsCookie settingsReport abuse
Powered by Lightspeed