GDPR training

Employee training and raising data protection awareness are mandatory elements of GDPR compliance. We provide this service through qualified experts in a verifiable and professional manner.

We deliver clear, practical awareness‑raising trainings on GDPR, data privacy/protection, and information security. Trainings can be tailored to specific functional areas, and their duration is always aligned with the selected topics.

We typically provide:

  • general data protection training for employees involved in data processing (e.g. HR, marketing), or
  • annual internal data privacy training sessions.

Training Topics

The goal of our general data protection training is to ensure that all participants understand key data protection concepts, core requirements, and the practical steps necessary for everyday operations.

We guide participants through GDPR principles, data processing obligations, and required documentation, with a strong focus on practical, organization‑ready solutions and the handling of data subject rights.

 Core concepts explained clearly

We clarify essential GDPR terminology, including what constitutes personal data, what qualifies as data processing, and who the relevant actors are.

Key questions:

  • What is the GDPR?
  • What qualifies as personal data?
  • What does data processing mean?
  • Who is the data controller and the data processor, and why does the distinction matter?

 Data protection principles – foundations of lawful processing

We present the GDPR principles governing all data processing activities and illustrate their application through practical examples.

Key questions:

  • What are the GDPR principles?
  • What does accountability mean in practice?

Legal bases – When is data processing lawful?

Participants learn about the lawful bases for processing and how to select the appropriate one for specific activities.

Key questions:

  • What legal bases does the GDPR recognize?
  • What are the conditions for valid consent?
  • Legal obligation or legitimate interest?

 Mandatory Data Protection Documentation

We provide an overview of mandatory GDPR documentation, including the structure and content requirements of a compliant privacy notice.

Key questions:

  • Privacy notice or data protection policy?
  • What is a data register?
  • What data subject rights must be ensured?

 Practical Compliance Tasks

We explain how to embed compliance into organizational processes, including DPIAs, handling data subject requests, and effective incident management.

Key questions:

  • Who is the DPO and when is appointment mandatory?
  • What is a Data Protection Impact Assessment (DPIA)?
  • What does effective incident management involve?
  • How should data subject requests be handled?

Your personal contact: