Overview
A strong grasp of data protection law is essential for professionals in every sector. This practical one‑day course provides a clear introduction to the UK GDPR, the DPA 2018 and PECR, including the significant changes introduced by the Data (Use and Access) Act 2025.
With expert guidance and hands‑on exercises, you will build a solid understanding of core principles, data subject rights, marketing rules, international transfers and enforcement risks. You’ll return to work with greater confidence, enhanced commercial awareness and the foundations needed to develop your specialism in data protection.
Learning outcomes
By the end of this one‑day course you will be able to:
- Explain key UK GDPR terminology and understand the core principles, obligations and rights
- Understand the accountability requirements placed on controllers
- Apply data subject rights in a commercially sound and compliant manner
- Explain the PECR rules relating to direct marketing activity
- Understand the rules governing international data transfers, including transfers from the EEA to the UK
- Compare the EU Standard Contractual Clauses with the UK International Data Transfer Agreement
- Comply with the UK GDPR’s data breach reporting requirements
- Understand the ICO’s enforcement powers, including Civil Monetary Penalty Notices and recent examples
- Describe the changes introduced by the Data (Use and Access) Act 2025 and their impact on existing legislation
Programme Structure
Topics include:
- UK GDPR overview: principles, rights and obligations
- Accountability and controller responsibilities
- Data subject rights: access, erasure, portability, objections and restrictions
- Direct marketing and PECR compliance
- International data transfers: UK and EU mechanisms
- EU SCCs vs. UK IDTA
- Data breach notification requirements
- ICO enforcement powers and recent penalty trends
- Civil Monetary Penalty Notices and increased fining powers
- Key amendments made by the Data (Use and Access) Act 2025
- Practical exercises with group feedback
Key information
Duration
- Part-time
- 1 days
Start dates & application deadlines
- StartingApply anytime.
- StartingApply anytime.
- StartingApply anytime.
Language
Delivered
Campus Location
- London, United Kingdom
Disciplines
Legal Studies View 63 other Short Courses in Legal Studies in United KingdomWhat students do after studying
Academic requirements
We are not aware of any specific GRE, GMAT or GPA grading score requirements for this programme.
English requirements
We are not aware of any English requirements for this programme.
Other requirements
General requirements
Who is the course for?
- This course is ideal for professionals who work with personal data and need a clear, structured grounding in UK GDPR compliance.
- It is suitable for paralegals, apprentices, trainee and qualified solicitors, legal executives, partners and those in HR, procurement, risk, compliance, IT, finance or senior management roles.
- It will also benefit Data Protection Officers and anyone responsible for advising on, implementing or overseeing data protection processes within their organisation.
Tuition Fees
-
International Applies to you
Applies to youNon-residents882 GBP / full≈ 882 GBP / full -
Domestic Applies to you
Applies to youCitizens or residents882 GBP / full≈ 882 GBP / full