
Description
In public administration, data protection is a legal duty, not an optional extra. Fines, citizen complaints and security incidents show that many authorities are still not fully prepared for GDPR. This workshop gives practical data protection knowledge for daily work.
What you will learn
- GDPR basics for public administration: legal bases and data subject rights
- Data minimisation and purpose limitation
- Technical and organisational measures (TOMs)
- Data breaches: reporting duties, documentation and response
- Data protection when using AI tools and cloud services
- How GDPR, the EU AI Act and internal agency rules fit together
Format: case studies from local authorities, checklists, and discussion of participants' own questions
Who it's for: data protection officers, IT officers, department heads and anyone who handles personal data. No legal background needed.
Agenda (2 hours)
- Welcome and opening case: "What if…?"
- GDPR basics: legal bases and data subject rights
- TOMs, data breaches and reporting duties (practical cases)
- GDPR and AI: rules for digital tools
- Q&A, checklist and personal action points