Overcoming hurdles to effective data protection training
Barriers to effective staff education in data protection include lack of sufficient time, attention and incentives, says Rowenna Fielding of Miss IG Geek.
The GDPR requires that organisations take “appropriate and effective measures” to comply with the Regulation, and be able to demonstrate their compliance and the effectiveness of their measures (Recital 74). Although there is no explicit statement addressing compulsory workforce education within the legislative text, it is axiomatic and widely accepted that “appropriate technical and organisational measures” must include providing staff with an understanding of their data protection responsibilities and how to carry them out. Inadequacies of workforce education have been cited in decisions and enforcement actions taken by Data Protection Authorities across the EU and in the UK.
Continue Reading
UK Report subscribers, please login to access the full article |
If you wish to subscribe, please see our subscription information. |