Overview
Whether you know the basics of Data Protection Impact Assessments (DPIAs) or you’re completely new to the process, this course provides you with the necessary skills to carry out DPIAs to comply with data protection legislation.
Through practical and interactive workshop sessions, understand the role of DPIAs in ensuring compliance with data protection legislation; identify when a DPIA is required; successfully describe information flows; mitigate and control privacy risks and create a DPIA to use back at your organisation.
Leave our Creating Data Protection Impact Assessments course with the skills to embed a privacy by design approach and methods to reduce or eliminate privacy risks to your organisation.

Lynn is the Information Governance Manager at Leicester City Council. Having previously worked as an MP and MEP’s political assistant, Lynn moved to her local council where she now oversees the Council’s Information Governance agenda including data protection, FOI, information sharing, RIPA and CCTV.
She has also helped health organisations with their information governance procedures.
Lynn is the author of two books, A Practical Guide to Handling Freedom of Information Requests and Data Protection: Compliance in Practice.
Agenda
Registration
Trainer’s Welcome and Clarification of Learning Objectives
Data Protection Impact Assessments and Data Protection Legislation
- Case studies of effective use of DPIAs
- Ensure effective compliance with the GDPR
- Understand the role of DPIAs in ensuring compliance with GDPR
- How DPIAs can help you to develop more effective information governance strategies
Identifying the Need for a DPIA
- Discuss privacy issues with key stakeholders
- Understand how project management activity can address privacy issues
- Learn how to answer screening questions to identify a proposal’s potential impact on privacy
Describing Information Flows
- Identify potential future uses of information
- Consult colleagues on the practical implications of using data
- Engender an appreciation and awareness of DPIA within your organisation
- Gain the confidence to explain how information will be obtained, used and retained
Lunch
Reflection Session
- Trainer will review the day’s learning and the next stages of the course
- Delegates will have time to ask questions and share views with one another
Privacy and Related Risks
- Maintain a record of the identified risks
- Conduct a compliance check against the GDPR and other relevant legislation
- Record the risks to individuals, including possible intrusions on privacy where appropriate
- Assess the corporate risks including regulatory action, reputational damage and loss of public trust
Afternoon Break
Workshop: Creating a Successful DPIA
In this interactive session, you will work with the trainer to create your own DPIA, to use within your organisation.
- Take back a comprehensive DPIA toolkit
- Learn how to work with all key stakeholders
- Consider privacy security issues when writing a DPIA
- Learn what key information needs to be included in a DPIA
- Ensure your DPIA avoids reputational damage and potential fines