Perform a search on the site.

Your currency

Fundamental principles of the General Data Protection Regulation (GDPR)

Personal data protection must be reflected in organisational practices. Clarify responsibilities, identify risks and connect GDPR requirements with actual processing activities. Develop a framework for supporting teams and structuring compliance actions.

Duration
1 day 7 hours
Code
GDPR06FR Code

Presentation

In the digital age, data has become the most valuable asset, but also the riskiest for businesses. With strict regulations and constant cyberattack threats, how can you ensure confidentiality while remaining competitive? Ignoring GDPR requirements exposes your organisation to substantial financial penalties and an irreparable loss of customer trust.

This one-day course provides a comprehensive introduction to the fundamental principles of the General Data Protection Regulation. You will explore legal obligations, data subject rights and best practices for turning regulatory constraints into a governance opportunity. Through practical workshops, you will learn to identify sensitive data and deploy tangible security measures such as encryption and pseudonymisation.

By the end of the course, you will have the tools to manage compliance within your department or company. You will be able to respond confidently to a data breach and structure an effective compliance action plan. This expertise will position you as a trusted professional in personal data handling within your business environment.

Objectives

By the end of this GDPR course, you will be able to:

  • place GDPR within its European and French legal context to understand its scope;
  • identify and precisely categorise personal data and sensitive data within your company;
  • distinguish the respective roles and responsibilities of controllers and processors;
  • master individual rights (access, erasure, portability) and procedures for responding effectively;
  • define technical measures (encryption, pseudonymisation) and organisational measures to protect data assets;
  • establish an incident response procedure to notify the CNIL of breaches within statutory deadlines.
Last update: 24/09/2026