Course Features
- Lifetime access
- Mobile friendly
- Certificate of completion
- Downloadable resources
- Community access
- 24/7 support
Refresh your UK GDPR knowledge, strengthen workplace data protection awareness and review emerging privacy risks involving breaches, AI tools, monitoring and cloud systems.
The GDPR Refresher Training — Annual Update Course helps learners revisit essential UK data protection responsibilities and strengthen their understanding of responsible personal data handling in the workplace. Designed as an annual knowledge update, the course reviews the relationship between the UK GDPR, the Data Protection Act 2018 and the DUAA 2025 while reinforcing accountability, governance and individual staff responsibility.
Learners will refresh their knowledge of lawful bases, consent, legitimate interests, transparency, data minimisation, retention and records control. The course also examines how organisations should handle subject access requests, identity verification, redaction, erasure, rectification, objections and complaints.
In addition, the curriculum explores personal data breaches, phishing, social engineering, remote working, cloud platforms and secure information sharing. It also introduces important workplace privacy considerations involving artificial intelligence tools, automated decisions, employee monitoring, international transfers and cloud-based processing.
By revisiting both established responsibilities and developing digital privacy risks, this course helps employees maintain stronger awareness, recognise potential problems and handle personal data with greater care and confidence.
5 sections
•
0 lectures
UK GDPR, DPA 2018, and DUAA 2025
ICO Refresher Expectations and Training Evidence
Accountability, Governance, and Staff Responsibility
Personal Data, Sensitive Data, and Risk Levels
Lawful Bases and Fair Processing Duties
Consent, Legitimate Interests, and Transparency
Privacy Notices and Individual Trust
Data Minimisation, Retention, and Records Control
Subject Access Requests and Identity Verification
Redaction, Disclosure Checks, and Response Deadlines
Erasure, Rectification, Restriction, and Objection
Complaints Handling, ICO Escalation, and Evidence Logs
Personal Data Breaches and 72-Hour Reporting
Phishing, Social Engineering, and Misdirected Emails
Remote Work, Cloud Platforms, and Secure Sharing
Incident Records, Root Causes, and Control Improvements
AI Tools, Personal Data, and Safe Use Boundaries
Automated Decisions, Profiling, and Human Review
Workplace Monitoring, Employee Data, and Privacy Limits
International Transfers, Cloud Systems, and Secure Processing
This course is suitable for employees, managers, administrators and other professionals who handle personal data and need to refresh their understanding of UK data protection responsibilities.
The course is primarily designed as refresher training, but it can also support learners with limited previous knowledge who want a structured overview of workplace GDPR and data protection responsibilities.
Yes. The curriculum covers subject access requests, identity verification, redaction, disclosure checks, response deadlines and the importance of maintaining appropriate evidence logs.
Yes. The course explores personal data use within AI tools, safe-use boundaries, automated decisions, profiling, human review and related workplace privacy considerations.
No. This course provides general training and educational information only. Organisations and individuals should follow applicable laws, professional guidance and internal policies and consult qualified specialists when applying requirements to specific situations.