
Explore the LGPD, Brazil's general data protection law, and its key requirements, presented by an instructor with privacy certifications CIPM, CIPP/E, and CIPP/US.
Discover how the LGPD defines data protection principles, processing bases, data subjects, data protection officer requirements, security requirements, DPIAs, international transfers, breach and sanctions, plus governance and best practice guidelines.
Explore the LGPD requirements, including scope, definitions, processing principles, lawful bases, records of processing activities, data protection officer requirements, security, impact assessments, rights, breaches, transfers, sanctions, governance, and best practices.
Explore why Brazil enacted the LGPD to unify scattered data protection laws, protect privacy, and foster economic development, innovation, and human rights with extraterritorial application.
Explore key lgpd definitions: consent, data processing, data subject, data controller, personal data, processing agents, processor, international data transfer, and sensitive personal data, noting similarities to the gdpr.
Explore the LGPD's material and territorial scope, its transversal, multi-sectoral application to public and private sectors online and offline, including processing by natural persons or legal entities, and extraterritorial reach.
Explore the LGPD data processing principles, including purpose, adequacy, necessity, free access, data quality, transparency, security, prevention, non-discrimination, and accountability, and compare them to GDPR.
Learn about records of processing activities under the LGPD. Data controllers and processors must maintain records for all organizations, including data type, collection methods, and security measures.
Learn how the LGPD defines sensitive personal data, its relation to special categories of personal data, and how territorial scope affects processing by international companies.
Learn the ten lawful bases for processing personal data under the LGPD, focusing on consent, its conditions, and bases like public policy, research, contracts, and safety.
Understand the eight lawful bases for processing sensitive data under LGPD, including consent, public policies, anonymization in studies, rights protection, life or safety, health procedures, fraud prevention, and legal compliance.
Discover LGPD data protection officer requirements for data controllers, including DPO duties, communication with data subjects and the ANPD, posting contact details, and qualification and appointment timing.
Understand LGPD security requirements for data controllers and processors, including privacy by design and principles: proactive, default, embedded, full functionality, end-to-end security, visibility and transparency, and respect for the user.
Explore LGPD data protection impact assessments and the risks they document. Learn about ANPD rules, data types, collection methods, safeguards, and DPIA triggers from legitimate interests.
Answer two LGPD questions: determine whether data controllers must appoint a data protection officer and whether the law requires technical, security, and administrative measures to prevent unauthorized access.
Explore data subject rights under the LGPD, including access with up to 15 days to comply, rectification, deletion, portability, and consent withdrawal, with obligations to inform processors and verify identity.
Examine when personal data can be transferred outside Brazil under the LGPD, including adequacy, standard contractual clauses, binding corporate rules, and conditions like consent or international cooperation.
The LGPD defines a personal data breach as a security incident with unauthorized access or destruction of data, requiring notices to the ANPD and affected subjects within a reasonable time.
Explore LGPD sanctions for data controllers and processors, including warnings, fines up to 2% of revenue (max 15 million reais), embargoes, suspensions, and bans.
Examine LGPD questions on incident notification: notify only if harm may occur, and recognize fines up to 15 million reais for non-compliance, plus other sanctions.
Learn governance and best practices for data protection under lgpd, including privacy governance programs, systematic evaluation of processing impact and privacy risks, data subject rights, incident response, and ongoing monitoring.
Learn key steps to LGPD compliance: determine extraterritorial scope, map data processing, identify gaps, update policies, meet lawful bases, appoint a data protection officer, and implement DPIAs and breach response.
Learn the LGPD fundamentals, including definitions, scope, data processing principles, lawful bases, DPO requirements, data protection impact assessment, data subject rights, consent, security, breaches, international data transfer mechanisms, and penalties.
Welcome to Lei Geral de Proteção de Dados(LGPD) 101, Brazil's General Data Protection Law-The Key Components
⇉ Watch the promo video to learn why you should enroll in this course
⇉ Sample question after every section
⇉ Questions after every section where I guide you to the correct answer
⇉ Quiz with 50 Questions to test your understanding of the LGPD
⇉ 2 Assignments to apply your knowledge
Why enroll in this course?
This course is designed to provide a high level introduction to the key requirements of the Lei Geral de Proteção de Dados (LGPD), the Brazilian Data Protection Law. By the end of the course, you will know the reasons for the enactment of the law, the scope of the law, the obligations of controllers and processors, and the fines for non-compliance.
Course Outline:
Introduction
Section 1: The Enactment of the LGPD
Section 2: Key Definitions in the LGPD
Section 3: Scope of the LGPD
Section 4: Data Protection Processing Principles
Section 5: Records of Processing Activities
Section 6: Lawful basis of Processing Personal and Sensitive Personal Data
Section 7: Data Protection Officer Requirements
Section 8: Security Requirements
Section 9: Data Protection Impact Assessments
Section 10: International Data Transfers
Section 11: Data Breach
Section 12: Enforcement
Section 13: Governance and Best Practices
Section 14: What steps can companies start taking to ensure compliance
Section 15: Conclusion
Who should Enroll in this Course:
Anyone who would like to know about the LGPD
Data Privacy Professionals interested in data privacy or data protection
Professionals interested in compliance with the privacy laws
Anyone interested in Privacy
Meet Your Instructor:
This Course is taught by Rita Mutyaba who has more than 5 years' experience working in the Privacy field including developing privacy processes, drafting privacy documentation, performing privacy impact assessments, identifying key performance indicators, and creating training materials. She has also earned the International Association of Privacy Professionals (IAPP) CIPP/E, CIPP/US, and CIPM Privacy Certifications. Please note that the contents of this course do not constitute legal advice. If you need legal advice, please contact your Data Protection Officer or data privacy counsels.
What is Included?
Course Outline
Questions after every section to test your knowledge
2 Assignments to test your knowledge
A Quiz comprising 50 questions to apply what you have learned at the end of the course