Stay updated on our activities
Refresher and Advanced Course for DPOs and Data Protection Experts
The data protection officer (DPO) is a key element of accountability as required by the General Data Protection Regulation (GDPR) and Regulation 2018/1725. The designation of a DPO is mandatory for public authorities, but also other organisations if their core activities require regular and systematic monitoring of data subjects on a large scale, or consist of processing special categories of data on a large scale.
As a DPO, you are expected to:
- inform and advise controllers/processors and employees;
- monitor compliance with the data protection law. and internal rules and regulations regarding data protection;
- provide advice on data protection impact assessment;
- cooperate with supervisory authorities.
This course is designed to help you to refresh and update your data protection knowledge. The most pressing data protection topics and most relevant guidelines, opinions and case laws in the field will be detailed by our speakers, who are practitioners at the forefront of data protection. Concrete examples, role playing, peer-to-peer discussions as well as relevant and realistic case studies will help you to refine your expertise and deepen your understanding of your duties and responsibilities. You will be able to benefit from the knowledge and the practical experience of the trainers to support the performance of your daily tasks, make it easier to deal with challenging and complex issues in a structured manner and take decisions in a pragmatic, but still compliant manner.
NB: The successful completion of the Refresher and Advanced Course for DPOs and Data Protection Experts will renew your DPO certification.
If you are interested in complementing your knowledge acquired on this course by interactive workshops where you can ‘learn by doing’ we advise you to book our complete course Data Protection: Refresher and Advanced Course for DPOs and Data Protection Experts + Hands-on Module
What will you learn
- How to deal with controllers’ expectations and manage diverging objectives in the business environment (stakeholder management);
- How to ensure data protection by design and by default in a fast-changing digital and legal environment;
- How to assess data protection compliance and how it is interlinked with IT security;
- Risk analysis and management;
- How to assess issues related to personal data transfers;
- What actions to take in case of personal data breaches;
- How to implement controls.
Course methodology/highlights
We believe that practical know-how is the key to effective learning. This course therefore includes:
- Individual preparation for the course – you are invited to bring along any information about the mission, vision, values and data protection (GDPR or EUDPR) framework and governance within your organisation for case study;
- Group and individual assignments;
- Practical exercises on DPO roles and responsibilities;
- An interactive approach: the module’s structure will give you the opportunity to ask questions and share experiences, knowledge, needs and challenges with the trainers and other participants;
There will be time for note-taking on what you learn, so you can apply it to your own situation.
You will be able to
- facilitate the development of an effective data protection strategy and plan;
- draft specific policies and procedures;
- manage data breaches;
- ensure data protection compliant transfers of personal data;
- define the pragmatic approaches to ensure GDPR or EUDPR compliance within your organisation;
- support your organisation in identifying gaps to be addressed in view of GDPR or EUDPR compliance;
- advise your organisation on how to manage personal data;
- support a data protection communication and training plan;
- develop your professional international network in the field of data protection.
After taking this course, you can join EIPA’s dedicated community of practice together with former participants. You will also have access to the course materials for three months after the course.
- DPOs and managers exposed to questions related to data protection and the management of the related risks, plans and solutions;
- Data protection experts and advisors;
- Certified DPOs;
- Anyone in the public or private sector who is responsible for their organisation’s compliance with the GDPR or EUDPR
Course venue
European Institute of Public Administration (EIPA)
O.L. Vrouweplein 22
6211 HE, Maastricht
the Netherlands
Programme Organiser
Ms Eveline Hermens
Tel: +31 43 3296259
e.hermens@eipa.eu
Fee
The fee includes documentation and refreshments. Lunches, a reception or dinner are included if mentioned in the programme. Accommodation and travel costs are at the expense of the participants or their administration.
Discounts
EIPA member fee
EIPA offers a discount to all civil servants working for one of EIPA’s supporting countries, and civil servants working for an EU institution, body or agency.
Who are the supporting countries?
Civil servants coming from the following EIPA supporting countries are entitled to get the reduced fee: Austria, Belgium, Bulgaria, Cyprus, Czech Republic, Denmark, Finland, France, Germany, Greece, Hungary, Ireland, Italy, Lithuania, Luxembourg, Malta, the Netherlands, Norway, Poland, Portugal, Spain, Sweden.
For all other participants, the regular fee applies.
Early bird discount
The early bird discount is not cumulative with other discounts or promo codes, except for the EIPA member fee.
Meals
Dietary preferences can be indicated on the registration form.
Hotel reservations
EIPA has special price arrangements with a number of hotels. All hotels are within 10 minutes walking distance from EIPA. Should you wish to make use of this possibility, please book directly via the links below. Payment is to be made directly and personally to the hotel upon checking out.
Confirmation
Confirmation of registration will be forwarded to participants on receipt of the completed online registration form.
Payment
Prior payment is a condition for participation.
Cancellation policy
For administrative reasons you will be charged €150 for cancellations received within 15 days before the activity begins. There is no charge for qualified substitute participants.
EIPA reserves the right to cancel the activity up to 2 weeks before the starting date. In that case, registration fees received will be fully reimbursed. EIPA accepts no responsibility for any costs incurred (travel, accommodation, etc.).
Download the brochure
I have a question
Our experts
Programme
Module 1 – Refresher and Advanced Course for DPOs and Data Protection Experts | |
08.45 | Registration of participants |
09.00 | Welcome: objectives of the course Florina Pop, Senior Lecturer/Data Protection Expert, EIPA, Maastricht (NL) |
09.15 | Recent Jurisprudence of the CJEU. Schrems I & II Updates Xavier Tracol, Senior Legal Officer, Data Protection Office, EUROJUST, The Hague (NL) |
10.00 | Break |
10.30 | Data Processing Agreements & Contracts Elisa Moro, Data Protection Specialist, Council of the European Union, Brussels (BE) |
11.15 | Q&A |
11.30 | Break |
11.45 | Transfers of Personal Data – New Challenges Elisa Moro |
12.45 | Lunch break at Hotel Derlon |
14.15 | Workshop on Data Processing Agreements & Contracts (with transfer of data) Elisa Moro |
15.15 | Q&A |
15.30 | End of day 1 |
09.00 | Recent Jurisprudence of the ECtHR and the CJEU (I) Xavier Tracol, Senior Legal Officer, Data Protection Office, EUROJUST, The Hague (NL) |
10.00 | Q&A |
10.15 | Break |
10.45 | Recent Jurisprudence of the ECtHR and the CJEU (II) Xavier Tracol |
11.30 | Q&A |
11.45 | Respond to Data Subject’s Rights: Practical Approaches Dr Barbara Eggl |
12:45 | Lunch break at EIPA |
14.30 | Workshop: Data Subject’s Rights Dr Barbara Eggl |
15.30 | End of day 2 |
19.00 | Dinner in restaurant Bouchon d’en Face, Wycker Brugstraat 54, 6221 ED Maastricht (Tel: +31 43 311 6438 |
09.00 | Data Breach Management: How to Respond to a Data Breach – DPO Perspective Florina Pop |
09.45 | Assignment: analyse data breach: case studies and examples Florina Pop |
10.30 | Break |
11.00 | Controller – Joint Controller – Processor Emma Rodríguez Montes, Data Protection Specialist in the Data Protection Office, EUIPO, Alicante (ES) |
11.45 | Q&A |
12.00 | Case study: Controller – Joint Controller – Processor Emma Rodríguez Montes |
13.00 | Lunch break at Hotel Derlon |
14.30 | Data Protection Safeguards Technical safeguards for digital and physical data Brian Honan, Director, BH Consulting, Dublin (IE) |
15.30 | Assignment: identify data protection safeguards for a particular use case Brian Honan |
16.15
| Opportunities and Challenges EU Data Protection Landscape – GDPR and EUDPR. Conclusions Dr Barbara Eggl |
17.15 | End of the day |