Course Overview

Learn what GDPR regulation is and what is needed in order to achieve GDPR compliance.

What You Will Learn

  • Learn about GDPR regulations and GDPR Compliance
  • Learn how to analyze a company's GDPR compliance program and to think properly through step-by-step examples
  • Learn about data privacy concepts

Program Curriculum

  • Why start learning GDPR Data Privacy with me?
  • What is included in this course?
  • $7 Million Cybersecurity Scholarship by EC-Council

  • Evolving compliance requirements
  • Major Risks to a Company's IT Framework
  • Application Related Risks
  • Network Related Risks
  • Storage Related Risks
  • Stakeholder’s expectations for privacy
  • Privacy vs Security
  • IT Governance vs Data Governance
  • The role of the IT professional & other stakeholders in preserving
  • Chapter 2 Quiz

  • Privacy Foundational elements - Organizational Privacy Notice
  • Privacy Foundational elements - Organizational Privacy Policy
  • Privacy Foundational elements - Organizational Security Policies
  • Incident Response - Security and Privacy Perspectives
  • System Development Lifecycle and Enterprise Architecture
  • Privacy Impact Assessments (PIA)
  • Common Privacy Principles
  • Chapter 3 Quiz

  • The Collection Process - Notice
  • The Collection Process - Choice, Control & Consent
  • Other topics related to collection
  • Use
  • Security Practices and Limitations on Use
  • Disclosure
  • Retention - Records, Limitations, Access
  • Retention - Security Considerations
  • Destruction
  • Chapter 4 Quiz

  • Identity and Access Management (IAM)
  • Limitations of Access Mgmt & Least Privilege principle
  • User Based Access Control & Role Based Access Control
  • Context of Authority
  • Cross Site Authentication & Authorization Models
  • Credit card information & Processing
  • PCI-DSS & PA-DSS
  • Remote Access & BYOD - Privacy & Security Considerations
  • Remote Access & BYOD - Access to Computers & Architecture controls
  • Data Encryption - Design Considerations
  • Application, Record and Field Encryption
  • File & Disk Encryption
  • Encryption Regulation & Crypto Standards
  • Other Privacy enhancing Technologies
  • Software Notifications and Agreements
  • Chapter 5 Quiz

  • GDPR short overview
  • Format and Definitions
  • Principles
  • Lawfulness
  • Gap Assessment Tool
  • Management Commitment
  • Preparation of a Project Plan
  • GDPR Roles
  • How to Capture Personal Data in a Form
  • GDPR Privacy Data Protection Policy
  • Data Subject Request Procedure
  • Data Protection Impact Assessment (DPIA)
  • How to treat international transfers
  • Data Breach and IRP
  • ISO and GDPR
  • Privacy by Design
  • Chapter 6 Quiz

  • Organizational Privacy Strategy for Social Media
  • Consumer Expectations
  • Children's Online Privacy
  • Social Media: personal information collected
  • Social media - personal information shared and ownership
  • E-commerce personalization
  • Online Advertising
  • Key considerations when posting ADs on your website
  • Understanding cookies, beacons and other tracking technologies
  • Cookies - Deep Dive
  • Web Browser Privacy and Security Features
  • Chapter 7 Quiz

  • Wireless Technology - RFID
  • Wireless Technology - NFC, Bluetooth & WiFi
  • Location Based Services (LBS) - generalities
  • Location Based Services (LBS) - GPS
  • Location Based Services (LBS) - GIS
  • Surveillance of Individuals
  • Data surveillance & Biometric recognition
  • Chapter 8 Quiz

  • Data Protection & Direct Marketing
  • The concept of Direct marketing
  • The right to opt-out
  • Marketing Requirements under e-Privacy Directive
  • Postal Marketing
  • Telephone Marketing
  • Electronic Marketing
  • Location Based Marketing
  • Online Behavioral Advertising (OBA) and GDPR
  • Chapter 9 Quiz

  • Where do privacy and HR meet?
  • More difficult to rely on Consent
  • Data Protection Principles from HR perspective
  • Consent_no_longer_an_option_for_HR
  • Legitimate interests
  • Pseudonymisation
  • Cross Border HR Data Transfers under GDPR
  • Changes to employee data management under GDPR
  • DPOs and DPIAs from HR perspective
  • Data Breaches & what to take away from that
  • Action Steps from HR perspective
  • HR related policies and procedures
  • Contracts of Employment - what to look for
  • Data Protection Policy
  • GDPR terms and how they relate to recruiting?
  • Map your recruiting data
  • Create a privacy policy for recruiting
  • Source candidates online with care
  • Ensure you job application process complies with GDPR
  • Ensure your software vendors are compliant
  • Chapter 10 Quiz

  • Cloud and GDPR Concerns
  • Looking at GDPR the right way
  • Controllers and Processors
  • CSP as a processor and GDPR
  • Technical and Organizational measures
  • Subcontracting
  • Clauses between a processor and a sub-processor
  • Changes to employee data management under GDPR
  • Codes of conduct, certifications and compliance
  • Important steps to compliance
  • Choosing a hosting provider
  • What businesses need to do
  • Software and CSPs to consider - part 1
  • Software and CSPs to consider - part 2
  • Software and CSPs to consider - part 3
  • Software and CSPs to consider - part 4
  • Advices for CSPs and Software providers
  • GDPR and IoT approach
  • There is far more in this space
  • GDPR requirements in an IoT context
  • Robots, AI, IoT and BigData
  • Chapter 11 Quiz

  • What is PSD 2 and main objectives
  • Benefits for consumers
  • Scope of PSD2 directive
  • New rules on authorization and supervision
  • Security of Payments
  • New types of service providers - TPPs
  • Impact of PSD2 to financial services industry
  • New risks associated with the TPPs
  • Banks are caught between GDPR and PSD2
  • Other challenges - GDPR and PSD2
  • What is Open Banking Consent Model
  • Consent Step
  • Authentication Step
  • Authorization Step
  • Redirection
  • Data Minimization & Permissions
  • Chapter 12 Quiz

  • What you will be learning in this section
  • Identity Protection demo (AAD IP)
  • Privileged Identity Management demo (PIM)
  • Mobile Productivity policies demo (Intune)
  • Classification, Labelling and Protection of Information demo (AIP)
  • Cloud application visibility and security demo (Cloud App Sec)
  • Security in cloud infrastructure environment demo
  • Defending and remediating endpoints from cloud demo
  • Chapter 13 Quiz
Load more modules

Instructor

Roland Costea

Trainer

Roland is a cybersecurity, privacy, and cloud leader and strategist with a demonstrated experience in running cybersecurity & cloud business units, practices, divisions from zero to maturity with year over year quality growth and quota over-achievement (projects of more >50 million euro/year). Roland has the following certifications: CISSP, CIPM, CIPT, CIPP/E, CRISC, CISM, CCSK v4, CCSP, LPT, CEH, ISO 27001LA, TOGAF.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $59.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 599.00
Billed annually or $69.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8