You must be logged in to take this course → LOGIN | REGISTER NOW
EU GDPR Data Protection Officer Course
This free, beginner-level course will help you learn how to perform the Data Protection Officer (DPO) role. After completing this course, you can receive a certificate of completion (for an additional fee of 649 EUR) that certifies that you know all of the requirements for performing the DPO role with regards to EU GDPR regulations.
The training is organized into 13 modules. Each module has a recap quiz to help you prepare for the certification exam. All content is pre-recorded and allows the user to run through the training at their own pace. We estimate it should take about 15 hours to complete, and there is no time limit to complete the course. Most customers complete the entire course within two weeks of starting.
The course includes:
- Video lectures, articles, and practice exams explaining the concepts of the DPO role.
- Links to additional materials that will help you pass the course.
- Bonus PDF of the scripts for all content in the training are available.
- Course instructor: Tudor Galos
- Course language: English
Course Curriculum
Introduction | |||
Introduction to the course | 00:00:00 | ||
Module 1: Privacy origins and GDPR basics | |||
Introduction and suggested reading | 00:00:00 | ||
Short history of privacy legislation | 00:00:00 | ||
The General Data Protection Regulation | 00:00:00 | ||
Related frameworks | 00:00:00 | ||
Key terms | 00:00:00 | ||
Key roles | 00:00:00 | ||
Top myths about GDPR | 00:00:00 | ||
Business activities that are most impacted by GDPR | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Certification FAQs | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 2: Legitimate purposes and principles | |||
Introduction and suggested reading | 00:00:00 | ||
Legitimate purposes of processing personal data | 00:00:00 | ||
GDPR principles | 00:00:00 | ||
Understanding the principles through an example | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 3: Transparency through Privacy Notice | |||
Introduction and suggested reading | 00:00:00 | ||
The basics of Privacy Notices | 00:00:00 | ||
Requirements and contents of a Privacy Notice | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 4: Inventory of processing activities and retention | |||
Introduction and suggested reading | 00:00:00 | ||
Inventory of Processing Activities – why and what? | 00:00:00 | ||
Retention of personal data – why and what? | 00:00:00 | ||
Fulfilling inventory and retention requirements – who and how? | 00:00:00 | ||
Specific information required for controllers | 00:00:00 | ||
Specific information required for processors | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 5: Consent and Data Subject Access Requests | |||
Introduction and suggested reading | 00:00:00 | ||
Consent – the basics | 00:00:00 | ||
How and when to ask for consent | 00:00:00 | ||
Data subject rights | 00:00:00 | ||
Basic rules for Data Subject Access Requests (DSAR) | 00:00:00 | ||
DSAR requests | 00:00:00 | ||
DSAR exemptions and rejections | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 6: Data Protection Impact Assessment and risk assessments | |||
Introduction and suggested reading | 00:00:00 | ||
What is Data Protection Impact Assessment (DPIA)? | 00:00:00 | ||
Step 1: Listing and grouping data processing activities | 00:00:00 | ||
Steps 2 and 3: The threshold questionnaire & determining if DPIA is needed | 00:00:00 | ||
Step 4: Answer the Data Protection Impact Assessment questionnaire | 00:00:00 | ||
Steps 5 and 6: Identify and list key security risks | 00:00:00 | ||
Step 7: Recording the implementation; maintenance | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 7: Security of personal data and privacy by design | |||
Introduction and suggested reading | 00:00:00 | ||
What is privacy by design? | 00:00:00 | ||
Policies to be implemented to ensure security of personal data | 00:00:00 | ||
Best practices to implement privacy by design policies | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 8: Data transfers and managing third parties | |||
Introduction and suggested reading | 00:00:00 | ||
Introduction to data transfers | 00:00:00 | ||
How can data transfers be enabled? | 00:00:00 | ||
Managing third parties | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 9: Data breaches | |||
Introduction and suggested reading | 00:00:00 | ||
The data breach basics | 00:00:00 | ||
Data breach response | 00:00:00 | ||
Data breach notifications | 00:00:00 | ||
After a data breach | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 10: DPO basics | |||
Introduction and suggested reading | 00:00:00 | ||
Why does a company need a DPO? | 00:00:00 | ||
The responsibilities of the DPO | 00:00:00 | ||
Responsibilities towards the DPO | 00:00:00 | ||
Hiring an external DPO | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 11: Defining the organisational approach to privacy | |||
Introduction and suggested reading | 00:00:00 | ||
The first thing to do as a DPO | 00:00:00 | ||
Getting the buy-in from top management | 00:00:00 | ||
Identifying the key stakeholders | 00:00:00 | ||
How do you get buy-in from your key stakeholders? | 00:00:00 | ||
Define a Personal Data Protection Policy | 00:00:00 | ||
Setting up privacy governance | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 12: Setting up a Privacy Program | |||
Introduction and suggested reading | 00:00:00 | ||
Making a choice about internal or external resources | 00:00:00 | ||
Choosing an external consultant | 00:00:00 | ||
Set up the project management | 00:00:00 | ||
Choosing the right project manager | 00:00:00 | ||
Key steps in your project | 00:00:00 | ||
Conducting a Gap Analysis | 00:00:00 | ||
Advanced risk management | 00:00:00 | ||
Treating the risks | 00:00:00 | ||
Communication | 00:00:00 | ||
Awareness and training | 00:00:00 | ||
Key deliverables for compliance with GDPR | 00:00:00 | ||
Monitor the implementation | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Module 13: Sustaining and improving compliance | |||
Introduction and suggested reading | 00:00:00 | ||
Methods for sustaining and improving compliance | 00:00:00 | ||
Internal audit | 00:00:00 | ||
Handling existing contracts with third parties | 00:00:00 | ||
Handling new contracts with third parties | 00:00:00 | ||
Regular reviews and improvement actions | 00:00:00 | ||
Keep looking forward | 00:00:00 | ||
Related documentation | 00:00:00 | ||
Recap quiz | 00:00:00 | ||
Instructions for taking the exam and obtaining the certificate | 00:00:00 |
Benefits of getting the certificate
A certificate of competence proves that you attended the eTraining course and that you passed the exam certified by ASIC. This ensures that you understand and can apply the knowledge you gained in each of the course's modules.
How to get certified?
It's simple:
1) Watch complete videos of all lectures, and answer all practice exams.
2) Pass the online certification exam.
Bonuses with the certificate
Once you purchase the certificate, you will receive the following bonuses:

DPIA Register (Excel document)
The Register is used to document the Data Protection Impact Analysis. The document consists of the Threshold Questionnaire that determines which data processing activities need to be analyzed, and the DPIA Questionnaire that assesses the risks and defines the security measures/safeguards.
The document includes five questions in the Threshold Questionnaire section that will help the company decide if a DPIA is needed or not, and 23 questions to help companies complete the Data Protection Impact Assessment. All the questions included in the DPIA Questionnaire are marked as mandatory or non/mandatory accordingly, in order to ensure that no mandatory question will be missed. The company can include additional questions to suit additional company needs.

Course Script (PDF)
If you decide to purchase the exam you will get the PDF script from the course completely free. The script includes everything said in the videos and all quizzes.
This way, you can access course materials any time you like, making it much easier to practice and prepare for the exam.

Free exam retake
Once you purchase the exam, you will be able to retake it.
This means, if you do not pass the exam on your first attempt, you can retake it one time, free of charge.
There is no mandatory waiting period between the two attempts.

Practice Exam
With the purchase of the exam, you get access to practice exams. You can use these exams to test your knowledge and familiarize yourself with the exam environment.
The results from the practice exam do not have any effect on the results of the final exam.
Course Reviews
Frequently Asked Questions
No, you can attend the course as long as you like; however, you should try to finish it in a couple of weeks because otherwise, you won’t get enough benefits out of it.
You can access it any time – the course is a combination of recorded video lectures, quizzes, reading, and other activities, and because all those materials are readily available, you can access them at a time that is convenient for you.
None. The course was made in such a way that a beginner in this topic can easily understand it.
Well, we have to make money somehow :). We have made most of the course freely available, but to access the exam and get the certificate you’ll have to pay a fee – by the way, this fee is by far smaller than the fee for attending the classroom-type course. Additionally, when you pay for the certificate, you will be able to download a PDF scripts from all of the video lectures, activity questions, practice exams, and links to additional reading. This way, you can access the content from the course and prepare for the exam much more easily.
The exam, as well as the whole course, is completely done online, from your office, your home, or any other place convenient for you. For the exam we use an online proctoring service – click here to learn more.
After you finish attending the course, you can go for the exam – if you finish this exam successfully, i.e., if your score is above the minimum, then you will receive the certificate. By the way, during the exam we use an online proctoring service that will ask for proof of your identity, and make sure that you have taken the exam with no external help. Click here to learn more about online proctoring.
The course is a combination of recorded video lectures, quizzes, reading, and other activities – the course takes you through all these materials in an optimal way.
You can access the course using your PC, Mac, or mobile device, using any major browser (i.e., Chrome, Mozilla, Internet Explorer, Safari); a broadband Internet connection will also be needed. And, of course, enough time to attend the course.
The materials provided in the course – recorded video lectures, quizzes, readings, practice exams, and other activities – are everything you need to successfully pass the exam and obtain the certificate. The best part is: they are completely free with unlimited access!
If you decide to purchase the exam, you will receive a bonus PDF containing scripts from all of the video lectures, quiz questions, links to additional reading, and access to the practice exams. This way, you can prepare for the exam much more easily.