Data protection audits: planning and implementation
In this seminar, you will learn in a practical way how to plan a data protection audit in detail, determine the objectives and ultimately carry out a data protection audit. Data protection audits are essential for ensuring and demonstrating compliance with data protection regulations. First, the scope of the audit is determined by selecting relevant departments, business processes and automated processing.
You will learn that an audit is basically used to verify compliance with legal requirements, standards and norms. Roles and responsibilities also play an important role in the audit process itself, as does communication between those involved. The implementation of an audit is explained during the seminar using the widely used approach set out in ISO 19011.
Documentation during a data protection audit is essential and enables comprehensive follow-up and evaluation. You will also receive valuable, practical tips for implementation. You will learn about the various audit methods for reviewing data protec-tion management systems (DSMS), checking processes, documentation and, of course, technical and organisational measures (TOMs). As part of an audit, workflows can be observed and documents and compliance with documentation requirements can be reviewed and checked. This can be done through random checks, statistical analyses, on-site inspections and interviews.
The core of a data protection audit is the assessment of the conformity or nonconformity of the individual items audited with data protection requirements laid down by law or other data protection-related specifications. Since it is important for continuous improvement to develop appropriate measures to remedy nonconformities so that corrections can be made, the relevant results of an audit are evaluated and suitable measures recommended.
Finally, you will learn how to create a data protection audit report that documents the steps taken during an audit, the tests performed and the evaluations made.
Important! Our training courses are offered in German only!