Course Features

Course Overview
As more aspects of our lives move online, cybersecurity incidents and personal data breaches are a harsh reality of modern life. The mere fact that personal data breaches are becoming increasingly commonplace does not imply that they are either acceptable or unavoidable. As we have seen in the media, the harm to individuals can be devastating, life-threatening, even. At the same time, the reputational damage to organisations caused by a personal data breach can undo years of hard work, leading to regulatory enforcement, potential fines and claims for compensation.
While Article 32(1) of the UK General Data Protection Regulation (GDPR) requires controllers to implement appropriate technical and organisational measures, it is impossible to prevent every personal data breach. Where a breach does occur, Article 33 of the GDPR requires organisations to determine the severity, report certain violations to the Information Commissioner's Office (ICO) within 72 hours of becoming aware of the breach, and notify affected individuals where there is a high risk that their rights and freedoms have been affected.
In this short course, we address how to detect, record, report and respond to information security incidents involving personal data. Understanding how to respond to and manage different types of security incidents effectively is a necessary skill for any organisation seeking to protect against reputational damage and the loss of consumer trust.
