GDPR & Data Protection course
What this course covers
Most people think GDPR is about cookie banners and privacy policies. In practice, it touches almost every role in an organization, from HR to sales to customer service, and most employees have no idea how much personal data they handle every day or what the rules are around it.
This course gives your team a clear, practical understanding of what GDPR actually requires. It covers what personal data is and why the definition is broader than most people assume, the seven data protection principles including lawfulness, purpose limitation, data minimisation, and accountability, the six lawful bases for processing and when each applies, individual rights including Subject Access Requests and how to handle them, what constitutes a data breach, and what your organization is required to do within 72 hours of discovering one.
The course is written in plain language with real workplace scenarios throughout. No legal background required.
Who it's for
Any organization that handles personal data, which in practice means almost every organization. Particularly relevant to HR, finance, marketing, customer service, and anyone in a management or data-handling role. Equally useful for new starters and existing employees who completed training years ago and have not revisited it since.
Why it matters
Under UK GDPR, EU GDPR, and equivalent legislation, staff training is not optional. The ICO treats inadequate employee training as an aggravating factor in enforcement decisions, and it directly affects the size of fines. The maximum penalty under UK GDPR is £17.5 million or 4% of annual global turnover. Getting training documented and in place is one of the most straightforward ways to demonstrate compliance and reduce your exposure.
Available versions
UK GDPR, EU GDPR, and CCPA (California Consumer Privacy Act). The CCPA version is available as an add-on for organizations operating in or selling to California.
Delivered as a zipped file in your chosen format. Available as SCORM 1.2, SCORM 2004, xAPI (Tin Can), AICC, or cmi5. Upload directly to your existing LMS. One flat fee, unlimited learners, no platform or login required.
An optional annual update plan is available to keep content current as legislation changes.
This course is available as a standalone course or as part of our Compliance Essentials bundle.