
Understanding the Importance of GDPR Audits
Learn why auditing GDPR is essential, the responsibilities of a Data Protection Officer (DPO), what an audit involves, how to schedule audit requirements, track progress, and what aspects can be audited within your organization related to data protection. Explore various resources and guidelines for effective compliance.
Download Presentation

Please find below an Image/Link to download the presentation.
The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author. If you encounter any issues during the download, it is possible that the publisher has removed the file from their server.
You are allowed to download the files provided on this website for personal or commercial use, subject to the condition that they are used lawfully. All files are the property of their respective owners.
The content on the website is provided AS IS for your information and personal use only. It may not be sold, licensed, or shared on other websites without obtaining consent from the author.
E N D
Presentation Transcript
Why Do We Need To Audit GDPRiS? What are the tasks of the DPO? To inform and advise the organisation and its employees about their obligations to comply with the GDPR and other data protection laws. To monitor compliance with the GDPR and other data protection laws, including managing internal data protection activities, advise on data protection impact assessments; train staff and conduct internal audits. To be the first point of contact for supervisory authorities and for individuals whose data is processed (employees, customers etc). Recommended by and available from:
What Does An Audit Involve? This is an opportunity to stop the clock For the school manager to periodically check data protection activities and to facilitate understanding For the DPO to check that all aspects of compliance requirements have been met To identify any gaps and enable schools to address those needs Recommended by and available from:
SCHEDULE AUDIT REQUIREMENTS- The school manager and DPO can set audit reminder dates Recommended by and available from:
SEE PROGRESS- The school manager and DPO can see the progress of audits Recommended by and available from:
WHAT CAN BE AUDITED? The supplier (Data processor) mapping Recommended by and available from:
WHAT CAN BE AUDITED? The supplier (Data processor) data sharing agreements and security questions Recommended by and available from:
WHAT CAN BE AUDITED? Departmental Questionnaires Including: Leadership School-Wide Support Reviews and Improvements Recommended by and available from:
WHAT CAN BE AUDITED? Privacy Impact Assessment Questionnaires Recommended by and available from:
WHAT CAN BE AUDITED? Staff Self Assessment Questionnaires (SAQ S) Recommended by and available from:
Identify Any System Gaps- The School Manager and DPO will ensure that all responses reflect GDPR compliance. The reports will also help school managers and DPOs identify any gaps in their compliance journey (if non compliant responses are made). Highlighting the gaps that exist and needs to be filled- enables the school to focus on work and resources required to achieve and maintain compliance. Recommended by and available from:
REPORTS will be available Internal Review List of staff Suppliers documentation/ SAQ replies uploads Suppliers/Services Breaches Data mapping query List of training documents Recommended by and available from: