Overview
Protection of Personal Information Act.
Description
The Protection of Personal Information Act (POPIA) is a comprehensive legal framework designed to safeguard individuals’ personal information and regulate how organisations collect, store, process, and share this data. The Act aims to ensure that personal information is handled with care, respecting privacy and confidentiality. It sets out principles for the lawful processing of personal data, including obtaining consent, ensuring data accuracy, and implementing adequate security measures. Organisations are required to establish and maintain policies and practices that comply with these principles, providing individuals with greater control over their personal information and holding organisations accountable for data protection. POPIA is crucial for promoting transparency, trust, and security in the handling of personal data.
Course Content
Unit 1: Introduction to Protection of Personal Information Act
- Overview of Protection of Personal Information Act
- Purpose and objectives of POPIA
Unit 2: Scope and appliction of Protection of Personal Information Act
- Entities and individuals covered by POPIA
- Types of personal information protected
- Exemptions and exclusions under POPI
Unit 3: Key Principles of Protection of Personal Information Act
- Lawfulness, fairness, and transparency
- Consent and purpose specification
- Disclosure and access rights
- Ensuring data accuracy, minimisation and correctness
- Accountability and responsible party obligations
Unit 4: Individual rights under Protection of Personal Information Act
- Right to be informed
- Right to access personal information
- Right to rectify and update personal information
- Right to erasure or destruction of personal information
- Right to object to processing of personal information
Unit 5: Consent and processing of personal information
- Understanding consent requirements under POPIA 2
- Processing of special personal information categories
Unit 6: Security measures and breach management
- Importance of data security and protection
- Technical, physical, and administrative controls
- Data breaches and incident management
Unit 7: Compliance and enforcement
- Responsibilities of the responsible party and operator
- Legal responsibilities and duties
- Ensuring ongoing compliance and data protection
Unit 8: Practical implementation of protection of personal information
- Developing POPIA compliance framework
- Employee training and awareness
Accreditation
- Non-accredited: Short course only
- Duration: 1h 30m
- Delivery: Classroom/Online/Blended
- Access Period: 12 Months
