09 Nov

Data Protection Contract Management

Practical guidelines on how to evaluate, negotiate and draft data protection agreements/clauses under the EU General Data Protection Regulation (GDPR).

Gijs van Dijck, Professor of Private Law, Maastricht University
Paolo Balboni, Professor of Privacy Law, Maastricht University

In this course data protection implications of the most common IT contracts are analysed, relevant parties' duties and obligations are identified, and guidance on how to correctly deal with them in the related data protection agreements/clauses is provided.

The following questions are addressed:

  • How is an IT contract commonly structured?
  • Which are the data protection implications of the IT services analysed?
  • Actors, roles and responsibilities: who is involved and who is responsible for what?
  • Should you conduct a preliminary Data Protection Impact Assessment?
  • How to determine the appropriate technical and organisational measures to ensure a level of security appropriate to the risk?
  • How to comply with the principles of Data Protection by Design and by Default?
  • Who should keep the record of processing activities and how?
  • How to deal with possible personal data breaches?
  • How to identify issues in IT contracts?
  • How to deal with limitation of liability, hold harmless, and indemnity clauses?
  • How to negotiate appropriate data processing agreements/data protection clauses?
  • How to draft robust data processing agreements/data protection clauses?
  • How to regulate contractual and data protection-related disputes?

Also read

  • 03 Oct 31 Dec
    11:00 - 15:30

    Globalization & Law Network Seminar Series 2023 - 2024

    The Globalization & Law Network is composed by a group of researchers of Maastricht University, coming from different backgrounds, who study the role that law plays in a globalizing society from a holistic perspective. Invited experts will give a presentation on a specific topic followed by a Q&A...

  • 21 Oct 25 Oct

    Master Class on Privacy Management and Data Governance

    Practical guidance on how to successfully implement a comprehensive data governance model and clearly define key roles and responsibilities of those involved in the personal data governance process in the organisation in line with the application of the principle of “accountability”. Serves as a...

  • 02 Dec 04 Dec

    Emerging Issues and Challenges in Privacy and Cybersecurity

    This 2,5 days training programme is a building block of the full Diploma Track on Privacy Management.