Course Overview O v e r v i e w
- Course Overview
- Course Outline
- What’s Included
- What You’ll Learn
- Exam Details
Certified EU General Data Protection Regulation (EU GDPR) Foundation Overview
The Certified EU GDPR Foundation Course provides an essential understanding of the EU’s data protection framework. It helps learners grasp the fundamental concepts of data privacy, lawful processing, consent management, and accountability obligations under the GDPR.
Formal training enables professionals to recognise their responsibilities in handling personal data and maintaining compliance. It builds awareness of the rights of individuals and the measures required to safeguard data across business processes.
At Training Deals, we offer Certified EU GDPR Foundation training that is clear, practical, and focused on real-world compliance needs. Our expert trainers provide engaging sessions that simplify legal concepts. With affordable pricing and full learner support, we help you develop a strong foundation in GDPR compliance.
Certified EU General Data Protection Regulation (EU GDPR) Foundation Outline
Module 1: Introduction to the GDPR
GDPR in a Nutshell
Generate Customer Confidence
Focus of GDPR
What is Personal Information?
Who has PII?
Lawful Processing of Personal Data
Module 2: Binding Corporate Rules
Introduction
Scope
UK ICO’s View of the Scope
Processing GDPR Definition
Who Processes PII?
What is Special Data?
Legal Framework
Timeline and Derogations
Some Key Areas for Derogation
Data Breaches/Personal Data Breach
Consequences of Failure
Governance Framework
Module 3: GDPR Terminology and Techniques
Key Roles
Data Set
Subject Access Request (SAR)
Data Protection Impact Assessments (DPIA)
What Triggers a Data Protection Impact Assessment?
DPIA is Not Required
Processes to be Considered for a DPIA
Responsibilities
DPIA Decision Path
DPIA Content
How Do I Conduct a DPIA?
Signing Off the DPIA
Mitigating Risks Identified by the DPIA
Privacy by Design and Default
External Transfers
Profiling
Pseudonymisation
Principles, User Rights, and Obligations
One Stop Shop
Module 4: Structure of the Regulation
Parts of the GDPR
Format of the Articles
Articles
Module 5: Principles and Rights
Introduction
Legality Principle
How the Permissions Work Together ?
Lawfulness of Processing Conditions
Lawfulness for Special Categories of Data
Criminal Offence Data
Consent
Transparency Principle
Fairness Principle
Rights of Data Subjects
Purpose Limitation Principle
Minimisation Principle
Accuracy Principle
Storage Limitation Principle
Integrity and Confidentiality Principle
Accountability Principle
Module 6: Demonstrating Compliance
Demonstrating Compliance with the GDPR
Impact of Compliance Failure
Administrative Fines
What Influences the Size of an Administrative Fine?
Joint Controllers
Processor Liability Under GDPR
Demonstrating Compliance
Protecting PII is Only Half the Job
What must be Recorded?
Additional Ways of Demonstrating Compliance
Demonstrating a Robust Process
PIMS (Personal Information Management System)
Cyber Essentials
ISO 27017 Code of Practice for Information Security Controls
Risk Management
Module 7: Incident Response and Data Breaches
What is a Personal Data Breach?
Notification Obligations
What Breaches Do I Need to Notify the Relevant Supervisory Authority About?
What Information Must Be Provided to the SA?
How do I Report a Breach to the SA?
Notifying Data Subjects
What Should I do to Prepare for Breach Reporting?
Updating Policies and Procedures
Breach Reporting and Responses
Ways to Minimise the Breach Impact
Module 8: Understanding the Principle Roles
What does the GDPR Makes Businesses Responsible For?
Difference Between a Data Controller and a Data Processor
How the Roles Split?
Controllers and Processors
Main Obligations of Data Controllers
Demonstrate Compliance
Joint Controllers and EU Representative
Controller-Processor Contract
Maintain Records and Keeping Records for Small Businesses
Cooperation with Supervisory Authorities
Keeping PII Secure
Data Breach Transparency
Role of the Data Processor
Controller-Processor Contract
Main Obligations of the Processor
Perform Only the Data Processing Defined by the Data Controller
Update the Data Controller
Sub-Process or Appointment
Keep PII Confidential
Maintaining Records
Cooperate with Supervisory Authorities
Security
Appoint a DPO – If Necessary
Transferring Data Outside the EU
Module 9: Role of the DPO
Role of a Data Protection Officer
Involvement of the DPO
Main Responsibilities of the DPO
Working Environment for the DPO
Must We Have A DPO?
Public Body
What does Large Scale mean?
Systematic Monitoring
Who Can Perform the Role of DPO?
Skills Required
Monitoring Compliance
Training and Awareness
Data Protection Impact Assessments (DPIAs)
Risk-Based Approach
Business Support for the DPO
DPO Independence
DPO – Conflict of Interest
Module 10: UK Implementation
Key Differences Between the Data Protection Act and the GDPR
Highlights from the Data Protection Bill
Definition of Controller
Health, Social Work, Education, and Child Abuse
Age of Consent
Exemptions for Freedom of Expression
Research and Statistics
Archiving in the Public Interest
Module 11: Key Features
Specific Permission
Privacy by Design
Data Portability
Right to be Forgotten
Definitive Consent
Information in Clear Readable Language
Limits on the Use of Profiling
Everyone Follows the Same Law
Adopting Techniques
Module 12: Subject Access Requests and How to Deal with them?
Subject Access Requests (SAR)
Dealing with SAR
Recognise the Request
Understand the Time Limitations
Dealing with Fees and Excessive Requests
Identify, Search, and Gather the Requested Data
Learn about What Information to Withhold
Developing and Sending a Response
What’s included in this Certified EU General Data Protection Regulation (EU GDPR) Foundation?
- Expert-led Training Sessions by Certified Instructors
- Comprehensive Course Materials
- Certified EU General Data Protection Regulation (EU GDPR) Foundation Certificate Exam
- Post-training Learner Support
What You’ll Learn in this Course
This course takes you from understanding the fundamentals of GDPR to recognising its impact on data handling and compliance. Each stage enhances your ability to apply essential privacy and protection principles within your organisation.
Learn the core objectives and principles of the EU GDPR framework
Learn how to identify lawful bases for data collection and processing
Learn the rights of data subjects and responsibilities of data controllers
Learn how to manage consent, data transfers, and retention requirements
Learn the importance of transparency, accountability, and compliance in GDPR
Learn to support organisational adherence to data protection regulations
EU GDPR Foundation Exam Information
The BCS Foundation Certificate in Agile Exam assesses candidates’ understanding of Agile concepts, principles, and frameworks. The format of the exam is as follows:
Question Type: Multiple Choice
Total Questions: 45
Total Marks: 45 Marks
Pass Mark: 65%, or 29/45 Marks
Duration: 60 Minutes
Open Book/ Closed Book: Closed Book
Our Upcoming Batches
Request More Information
Corporate Training
Elevate your workforce with expert-led corporate training that enhances skills, boosts productivity, and aligns teams with your business goals.
Individuals Training
Unlock personal growth and sharpen professional skills with tailored training designed to build your confidence and career success.
Your Path to Professional Recognition
Our path is designed to guide you through each stage with clarity, support and practical learning, helping you achieve your goals with confidence.
Step Forward with Globally Recognised Certification
A recognised certification is more than a credential. It’s proof of your commitment to professional excellence, providing you with the credibility, confidence, and global reach to advance your career in exciting new directions.
Globally Certified Professionals Over Time
Career Growth
81%Certified professionals reported receiving a promotion after earning their certification.
Global Opportunities
89%Certified professionals experienced access to new career opportunities, including leadership roles and global positions.
Not able to find what you are looking for
Our experts will guide you to the right course from thousands worldwide: tailored to your goals.
Frequently Asked Questions
It is an introductory course that provides a clear understanding of the core principles, concepts, and legal requirements of the EU General Data Protection Regulation (GDPR).
It helps professionals understand data protection fundamentals, individual rights, and compliance measures required to manage personal data responsibly under EU law.
It is ideal for beginners, Compliance Officers, Data Handlers, and anyone seeking to understand the essentials of GDPR and its impact on organisations.
Yes, GDPR principles are relevant to all industries handling personal data, including IT, healthcare, finance, education, and marketing.
It equips learners with foundational knowledge to support data protection compliance and promote responsible data handling practices.
What Our Customers Say About Us
Our HR team registered for the Change Management Foundation & Practitioner Training Course, and it couldn’t have been more valuable. The team gained practical frameworks to guide employees smoothly through transitions with confidence.
Our operations staff completed the Lean Six Sigma Green Belt Training Course, and it has been transformative. We can now identify inefficiencies quickly, and the tools we learned are already improving performance across the team.
Our product team took part in the Agile Project Management Foundation & Practitioner (AgilePM®) Training Course, and the difference is remarkable. We’re now more adaptive, collaborative, and efficient in managing change.
Our IT support unit attended the ITIL® 4 Foundation Training Course, and the results have been impressive. Processes are smoother, collaboration has improved, and the team finally speaks a common language of service management.
We joined the PMP® Certification Training Course as a leadership group, and it was outstanding. The trainer made every concept practical, and the exam preparation resources helped the whole team feel ready to tackle complex projects.
Our project office completed the PRINCE2® Foundation & Practitioner Training Course, and it has brought real clarity to how we manage projects. The trainer’s examples were excellent, and the team now follows a structured approach with confidence.