Data Protection Compliance – Policy, Governance, and Risk Management

Online

Overview

In an era where data breaches and regulatory scrutiny are on the rise, ensuring robust data protection compliance is essential for any organisation. This full-day training course provides a practical and strategic approach to developing and managing a comprehensive data protection compliance programme. Attendees will gain a deep understanding of key requirements under UK data protection laws, including GDPR, the Data Protection Act, and upcoming legislative changes. With expert guidance, real-life case studies, and interactive discussions, this course will equip participants with the skills to strengthen their organisation’s data governance, accountability, and risk management practices.

Whether you are responsible for data protection, compliance, legal oversight, or IT security, this course will give you the tools, policies, and strategies needed to meet regulatory expectations and mitigate risks. From registering data processing activities and conducting internal audits to handling data breaches and managing third-party processors, attendees will leave with practical knowledge to enhance compliance and foster a culture of data protection within their organisation. If you want to stay ahead of evolving regulations and safeguard your organisation’s reputation, this is a must-attend course.

Learning Outcomes: 

  • Understand the history of UK data protection laws and upcoming legislative changes.
  • Develop and manage a data protection compliance programme within your organisation.
  • Demonstrate ‘accountability’ to internal and external stakeholders.
  • Identify key compliance tools, including Data Protection Impact Assessments (DPIAs) and Registers of Processing Activities.
  • Learn when and how to communicate with regulators such as the Information Commissioner’s Office (ICO).
  • Implement effective policies for consent management, data retention, and privacy notices.
  • Strengthen staff training and awareness programmes to promote a data protection culture.
  • Conduct internal audits and assess third-party data processing agreements.
  • Understand international data transfer risks and compliance requirements.
  • Build strong relationships with boards, senior management teams, and staff to embed data protection into organisational culture.

For more information or to make a booking please call 0330 0947 344

Agenda

  • Registration
  • Introduction & Housekeeping
  • Your Organisation
    • Identifying who should be represented within your GDPR team.
    • Defining the relationship with the board, senior management and staff.
    • Identifying the data protection risks faced by your organisation.
    • Promoting a data protection culture
  • Case Study & Breakout Session
  • Coffee Break
  • Your Compliance Tools (part 1)
    • Register of Processing Activities (may also be known as a data map)
    • Staff training and awareness programmes
    • Consent Management (including cookie consent)
    • Data protection policies (including retention, individual rights, data breaches and privacy notices).
  • Case Study & Breakout Session
  • Lunch
  • Your Compliance Tools (part 2)
    • Data Protection Impact Assessments
    • Conducting internal audits
    • Conducting data processor due diligence checks
    • International Transfer Risk Assessments.
  • Case Study & Breakout Session
  • Coffee Break
  • Keeping on top of Data Protection Legislation
    • When to communicate with regulators such as the Information Commissioner’s Office.
    • Approaches to adopt to ensure you keep abreast of data protection laws and regulations.
  • Trainer’s Summary and Q&A

    *Programme subject to change

Get in Touch

Book Now

  • Public Sector Rate: £550
  • Private Sector Rate: £620
  • Voluntary Sector Rate: £480

Please select your preferred course date:

Need to book for 6 or more people?

We are now taking bookings for our wide range of training packages in-house; we also offer bespoke packages tailored for your organisation.


For more information or to discuss the available option please call 0203 926 5674 or email info@gov-pd.co.uk 

Trainer

Trainer Bio: Kellie Peters

Kellie Peters is a seasoned GDPR and Data Protection Consultant with an extensive background in data governance, compliance, and security. As the co-founder of Databasix UK Ltd, she has spent nearly a decade providing strategic data protection consultancy to organisations across multiple industries, including healthcare, public sector, and corporate enterprises. Prior to this, Kellie held senior roles in Public Health England and Solutions for Public Health, where she played a pivotal role in data management, regulatory compliance, and stakeholder engagement. She successfully led national initiatives, including the design and rollout of England’s chemotherapy national patient-based database, ensuring compliance with data protection and governance frameworks.

With over 20 years of experience, Kellie has specialised in GDPR audits, internal compliance programmes, and regulatory risk assessments. As an Outsourced Data Protection Officer (DPO), she has provided guidance on data breach management, DPIAs, vendor due diligence, and policy development. Her expertise extends to conducting internal audits, reviewing data protection impact assessments, and advising on international data transfers. Having worked in both governmental and private sector environments, Kellie brings a wealth of knowledge in navigating complex data protection regulations and ensuring organisations remain compliant. Her deep understanding of data protection law, regulatory frameworks, and risk mitigation strategies makes her exceptionally well-placed to deliver expert-led training in data protection compliance.

Browse all our training courses