________________________________________________________________
Do you want to take this course remotely or in person?
Contact us by email: info@nanforiberica.com , phone: +34 91 031 66 78, WhatsApp: +34 685 60 05 91 , or contact Our Offices
________________________________________________________________
DATA PROTECTION DELEGATE COURSE
Data Protection Officer (DPO) and SC-200 Microsoft Security Analysis Associate
What does certification as a DPO entail? The Spanish Data Protection Agency (AEPD) has established a certification scheme for DPOs, allowing data controllers to select professionals whose skills have been certified by entities accredited by ENAC.
The DPO certification scheme ensures that these professionals have the necessary qualifications and knowledge to perform their duties. Certifications are awarded by certifying entities accredited by ENAC.
Although certification is not mandatory to work as a DPO, the AEPD has considered it important to provide a reference standard to the market, ensuring the qualification and professional capacity of DPO candidates.
Certification process as a DPO To start the evaluation process, you must meet one of the following prerequisites:
-
Have at least 5 years of professional experience in projects or activities related to the functions of the DPO, without the need to justify training hours.
-
Have at least 3 years of professional experience in projects or activities related to the functions of the DPO, in addition to having completed recognized training of at least 60 hours in the subjects included in the Certification Scheme program.
-
Possess at least 2 years of professional experience in projects or activities related to the functions of the DPO, together with recognized training of at least 100 hours in the subjects included in the Certification Scheme program.
-
In the absence of previous professional experience, have recognised training of at least 180 hours in the subjects included in the Certification Scheme programme.
All training, whether in-person or online, will be considered as long as the established requirements are met.
Both prior and subsequent experience prior to the publication of the GDPR (General Data Protection Regulation) will be taken into account, both at national and European Union level.
Application and development of the process Those interested in obtaining certification as DPD must submit the following documentation to the accredited Certification Entities:
-
Application form.
-
Detailed resume.
-
Documentation justifying compliance with the prerequisites.
-
Proof of payment of the corresponding fee.
Once the application has been received, the Certification Authority will verify the documentation. If any document is missing, the candidate will be informed for correction within 10 working days.
Applicants must present documentation verifying their identity to access the exam.
DPO Certification Exam The candidate must demonstrate his/her competence through an exam that will assess theoretical knowledge, professional capacity and personal skills required for the role of DPO. The characteristics of the exam are as follows:
-
It consists of 150 multiple choice questions, 20% of which describe practical scenarios.
-
A minimum of 75% correct answers is required to pass.
-
The questions have four answer options, with only one being valid.
-
Incorrect or blank answers are not penalized.
-
The duration of the exam is four hours.
Certification as a DPO is valid for three years, unless a sanction of suspension or withdrawal of certification is applied.
Data Protection Officer Certification Entities Only entities accredited by ENAC in accordance with the UNE-EN ISO/IEC 17024:2012 standard and the Data Protection Officer Certification Scheme can certify DPOs. You can consult these entities on the AEPD website.
Introduction:
The introduction of the General Data Protection Regulation has given rise to the emergence of the Data Protection Officer, who is recognised as the person responsible for managing data protection. Our 60-hour DPO Course prepares you to practice this profession and qualifies you to take the certification exam.
Goals:
This course aims to help participants:
-
Understand general regulations, such as the GDPR and the LOPDGDD, including their application and the European Regulation.
-
Familiarize yourself with the concept of active responsibility and ensure compliance.
-
Master the techniques and procedures necessary to ensure compliance with data protection regulations.
Addressed to:
The 60-hour DPO Course is designed for professionals in the fields of Information Security, Technology or Law, as well as for any professional with at least 3 years of experience in tasks related to data protection who seeks to obtain official certification as a Data Protection Officer (DPO).
Content:
Topic 1: Regulatory Context of Data Protection
-
Study of the general regulations on data protection.
-
Privacy and data protection at international level.
-
Evolution of data protection in Europe, including background and proposals for reform.
-
Legal framework for data protection in Spain and standards and good practices.
Topic 2: European General Data Protection Regulation (GDPR) and Organic Law 3/2018, on the Protection of Personal Data and Guarantee of Digital Rights (LOPDGDD): Fundamentals
-
Analysis of Regulation EU 2016/679 and its scope.
-
Key definitions and obligated subjects.
-
Practical exercise on the scope of the GDPR.
Topic 3: Data Protection Principles
-
Study of the right/duty binomial in data protection.
-
Aspects of legality, loyalty, transparency and limitation in data processing.
-
Minimization, accuracy and retention of personal data.
Topic 4: Legitimacy for the Processing of Personal Data in the GDPR and the LOPDGDD
-
Analysis of the interested party's consent and its granting and revocation.
-
Informed consent and special categories of data.
-
Legal bases other than consent.
Topic 5: Citizens' Rights in the Protection of their Personal Data
-
Study of the rights of individuals over their personal data, including access, rectification, deletion, opposition, among others.
-
Solved exercise on the exercise of rights by citizens.
Topic 6: Protection of Personal Data: Compliance Measures in the GDPR and the LOPDGDD
-
Implementation of data protection policies.
-
Relations between the parties involved and formalization of contracts.
-
Record of processing activities and their identification and classification.
Topic 7: Proactive Responsibility
-
Principle of proactive responsibility and privacy by design.
-
Data protection and personal data security impact assessment.
-
Role of the Data Protection Officer (DPO) and codes of conduct and certifications.
Topic 8: The Data Protection Officer (DPD) in the GDPR and the LOPDGDD
-
Appointment and functions of the DPO, including analysis of conflicts of interest.
-
Procedures, collaboration and communication with the data protection authority.
-
Professional competence and training of the DPO.
Topic 9: International Data Transfers in the GDPR and LOPDGDD
-
Analysis of international data movement and appropriate safeguards.
-
Authorization of the supervisory authority and contractual clauses.
Topic 10: Control Authorities in the GDPR and the LOPDGDD
-
Study of supervisory authorities and their cooperation and coherence.
-
Powers and sanctioning regime.
-
Procedures followed by the AEPD and jurisdictional protection.
Topic 11: GDPR Interpretation Guidelines
Analysis of opinions and criteria for interpreting the GDPR.
Topic 12: Sectoral Regulations Affected by Data Protection
Study of sectoral regulations on data protection in different areas such as healthcare, pharmaceuticals, research, among others.
Topic 13: Spanish Regulations with Implications for Data Protection
Approach to state regulations with implications for data protection, including the LSSI, LGT, Firma-e Law, among others.
Topic 14: European Regulations with Implications for Data Protection
Study of EU regulations related to data protection, including the e-Privacy Directive and other relevant regulations.
Topic 15:
-
Exploration and Control of Risks in the Management of Personal Data
-
Approaches to Analyze and Manage Risks Methodically
-
Development of Compliance Programs in Data Protection and Organizational Security
-
Safeguarding Sensitive Information
-
Data Protection Impact Assessment (DPIA)
Topic 16:
-
Data Protection Audit
-
Information Systems Audit
-
Security Management in Data Processing Processes
-
Other relevant aspects
Unit 17: Practical application of Cybersecurity management with Microsoft technologies course SC-200