Modern privacy laws and regulations require organizations to implement privacy by design and by default in IT systems, networks, and applications. In addition to organizational measures, you are also required to protect personal data with appropriate technical measures. To comply with this, privacy professionals must collaborate with software developers, system and network engineers, application and database administrators, and project managers to integrate data privacy and protection measures into new and existing IT environments.
The CDPSE training is focused on validating the technical skills and knowledge necessary to assess, build, and implement comprehensive data privacy measures. CDPSE certified professionals help fill the gap in technical privacy skills, ensuring that your organization has competent technical privacy specialists capable of building and implementing solutions that mitigate risks and improve efficiency.
Our CDPSE training is classroom-based but can also be attended Live Online if desired. You will attend the training live remotely with our own instructor, follow along with the slides and notes on the whiteboard, and can ask questions whenever you wish. Essentially, it is just like a classroom training but from your own location. If the Live Online training does not meet your expectations, you may attend it again in person at a later date free of charge.
In preparation for the training, you will receive the official ISACA CDPSE study material including practice questions upon registration. This way, you will enter the classroom training better prepared and can ask more targeted questions to the experienced instructor based on the material covered. The result is a more interactive course with more depth on the heavier topics.
De CDPSE training en het examen bestaan uit onderstaande drie ‘job practice area’s’. ISACA toetst de invulling ervan continu aan de actualiteit zodat de training aan blijft sluiten op het hedendaagse profiel van de Data Privacy Solutions Engineer.
Privacygovernance omvat de privacygebieden management en risicomanagement. Privacy governance activiteiten zorgen ervoor dat alle persoonlijke informatie binnen de onderneming wordt geïdentificeerd en beheerd in overeenstemming met de wettelijke vereisten, beleid, procedures, richtlijnen en rechten van betrokkenen. Dit domein gaat ook in op privacyrollen en verantwoordelijkheden, leveranciers- en third-party management, het uitvoeren van een Privacy Impact Assessment (PIA) en het risicomanagementsproces waarmee privacybedreigingen, aanvallen en kwetsbaarheden kunnen worden geidentificeerd.
Governance
Personal data and information
Privacy laws and standards across jurisdictions
Privacy documentation (e.g., policies, guidelines)
Legal purposes, consent and legitimate interest
Data subject rights
Management
Roles and responsibilities related to data
Privacy training and awareness
Vendor and third-party management
Audit process
Privacy incident management
Risk Management
Risk management process
Data Privacy Impact Assessment (DPIA)
Threats, attacks, and vulnerabilities related to privacy
Met data privacy als belangrijk compliance focuspunt, dienen privacyarchitecten hun aandacht te verschuiven naar een bredere infrastructuurarchitectuur die de volgende onderdelen omvat:
Gegevensbescherming
Gegevensbeheer
Data Privacy
Het doel van dit domein is om te kunnen waarborgen dat de privacy engineer begrijpt hoe systemen, technologieën, protocollen en gegevensbescherming methodologieën holistisch bijdragen aan de data privacy architectuur, en de overwegingen die nodig zijn bij het maken van beslissingen op het gebied van technologie, infrastructuur, gegevensbescherming, risicobeheer en beslissingen over informatiebeveiliging.
Infrastructure
Technology stacks
Cloud-based services
Endpoints
Remote access
System hardening
Applications and software
Secure development lifecycle (e.g., Privacy by Design)
Applications and software hardening
API's and services
Tracking technologies
Technical privacy controls
Communication and transport protocols
Encryption, hashing, and de-identification
Key management
Monitoring and logging
Identity & Access Management (IAM)
Er zijn veel processen betrokken bij de creatie en verzameling van data. Dit domein schetst hoe gegevens worden beheerd in de gehele "aanmaken, lezen, bijwerken en verwijderen" data lifecycle. Verder wordt er getoetst op wetten en richtlijnen over de opslag en vernietiging van gevoelige gegevens zoals persoonlijk identificeerbare informatie en persoonlijke gezondheids informatie.
Data purpose
Data inventory and classification (e.g., tagging, tracking)
Data quality and accuracy
Dataflow and usage diagrams
Data use limitation
Data analytics (e.g., aggregation, Artificial Intelligence (AI), machine learning, big data)
Data persistence
Data minimization (e.g., de-identification, anonymization)
Data migration
Data storage
Data warehousing (e.g., data lake)
Data retention and archiving
Data destruction
Modern privacy laws and regulations require organizations to implement privacy by design and by default in IT systems, networks, and applications. In addition to organizational measures, you are also required to protect personal data with appropriate technical measures. To comply with this, privacy professionals must collaborate with software developers, system and network engineers, application and database administrators, and project managers to integrate data privacy and protection measures into new and existing IT environments.
The CDPSE training is focused on validating the technical skills and knowledge necessary to assess, build, and implement comprehensive data privacy measures. CDPSE certified professionals help fill the gap in technical privacy skills, ensuring that your organization has competent technical privacy specialists capable of building and implementing solutions that mitigate risks and improve efficiency.
Our CDPSE training is classroom-based but can also be attended Live Online if desired. You will attend the training live remotely with our own instructor, follow along with the slides and notes on the whiteboard, and can ask questions whenever you wish. Essentially, it is just like a classroom training but from your own location. If the Live Online training does not meet your expectations, you may attend it again in person at a later date free of charge.
In preparation for the training, you will receive the official ISACA CDPSE study material including practice questions upon registration. This way, you will enter the classroom training better prepared and can ask more targeted questions to the experienced instructor based on the material covered. The result is a more interactive course with more depth on the heavier topics.
De CDPSE training en het examen bestaan uit onderstaande drie ‘job practice area’s’. ISACA toetst de invulling ervan continu aan de actualiteit zodat de training aan blijft sluiten op het hedendaagse profiel van de Data Privacy Solutions Engineer.
Privacygovernance omvat de privacygebieden management en risicomanagement. Privacy governance activiteiten zorgen ervoor dat alle persoonlijke informatie binnen de onderneming wordt geïdentificeerd en beheerd in overeenstemming met de wettelijke vereisten, beleid, procedures, richtlijnen en rechten van betrokkenen. Dit domein gaat ook in op privacyrollen en verantwoordelijkheden, leveranciers- en third-party management, het uitvoeren van een Privacy Impact Assessment (PIA) en het risicomanagementsproces waarmee privacybedreigingen, aanvallen en kwetsbaarheden kunnen worden geidentificeerd.
Governance
Personal data and information
Privacy laws and standards across jurisdictions
Privacy documentation (e.g., policies, guidelines)
Legal purposes, consent and legitimate interest
Data subject rights
Management
Roles and responsibilities related to data
Privacy training and awareness
Vendor and third-party management
Audit process
Privacy incident management
Risk Management
Risk management process
Data Privacy Impact Assessment (DPIA)
Threats, attacks, and vulnerabilities related to privacy
Met data privacy als belangrijk compliance focuspunt, dienen privacyarchitecten hun aandacht te verschuiven naar een bredere infrastructuurarchitectuur die de volgende onderdelen omvat:
Gegevensbescherming
Gegevensbeheer
Data Privacy
Het doel van dit domein is om te kunnen waarborgen dat de privacy engineer begrijpt hoe systemen, technologieën, protocollen en gegevensbescherming methodologieën holistisch bijdragen aan de data privacy architectuur, en de overwegingen die nodig zijn bij het maken van beslissingen op het gebied van technologie, infrastructuur, gegevensbescherming, risicobeheer en beslissingen over informatiebeveiliging.
Infrastructure
Technology stacks
Cloud-based services
Endpoints
Remote access
System hardening
Applications and software
Secure development lifecycle (e.g., Privacy by Design)
Applications and software hardening
API's and services
Tracking technologies
Technical privacy controls
Communication and transport protocols
Encryption, hashing, and de-identification
Key management
Monitoring and logging
Identity & Access Management (IAM)
Er zijn veel processen betrokken bij de creatie en verzameling van data. Dit domein schetst hoe gegevens worden beheerd in de gehele "aanmaken, lezen, bijwerken en verwijderen" data lifecycle. Verder wordt er getoetst op wetten en richtlijnen over de opslag en vernietiging van gevoelige gegevens zoals persoonlijk identificeerbare informatie en persoonlijke gezondheids informatie.
Data purpose
Data inventory and classification (e.g., tagging, tracking)
Data quality and accuracy
Dataflow and usage diagrams
Data use limitation
Data analytics (e.g., aggregation, Artificial Intelligence (AI), machine learning, big data)
Data persistence
Data minimization (e.g., de-identification, anonymization)
Data migration
Data storage
Data warehousing (e.g., data lake)
Data retention and archiving
Data destruction
This training is scheduled as follows in the coming period. Missing a date? Feel free to contact us.
Train smarter, not harder. TSTC's unique approach guarantees the effective acquisition of skills and the greatest chance of success.
Learn more about TSTC