AGIDAT – Datenschutz | Informationssicherheit

Data Protection Training

GDPR basics for every employee — practical, engaging, and documentable.

Why employee training matters

The majority of data protection incidents are caused by human error — misdirected emails, weak passwords, improper disposal of documents, or failure to recognize social engineering. Article 39(1)(b) GDPR explicitly requires the Data Protection Officer to raise awareness and train staff involved in processing operations.

Beyond legal obligation, trained employees are your first line of defense. A team that understands basic data protection principles dramatically reduces the risk of incidents and supervisory authority complaints.

Training content

  • GDPR fundamentals — what it is, who it applies to, what the consequences of violations are
  • Legal bases for data processing — consent, legitimate interest, contract, legal obligation
  • Data subject rights — access, rectification, erasure, objection
  • Practical rules: email, cloud storage, printing, disposal of documents
  • Reporting obligations — when and how to report a suspected data breach
  • Special categories of data — health data, political opinions, biometric data
  • Remote work and mobile device use

Training formats

We offer training in multiple formats to suit your team and budget:

  • Online training sessions — live via video conference (60–90 min), suitable for remote and hybrid teams
  • In-house workshops — on-site at your premises, interactive, with Q&A
  • Role-specific training — customized sessions for HR, IT, management, or sales teams
  • Written training materials — handouts, quick reference cards, and policy summaries

Documentation and certificates

Every training includes a participation list and certificate of completion — essential documentation in the event of a supervisory authority inquiry. We can also provide a written summary of training content for your records.