Description
Every company processes the personal data of its employees. However, Law 09-08 and the CNDP impose a certain number of obligations on the company which acts as data controller in the context of the management of the personal data of this category of natural persons.
Who is this training for ?
For whom ?
Information Systems (IS) Departments, CISO, Legal Departments, Project Managers, Human Resources Departments, Accounting Managers, Marketing Departments.
Prerequisites
Training objectives
Training program
- Definitions: personal data, processing of personal data, CNDP
- Examples of employees' personal data: CNI, postal address, marital status, banking data...
- Law 09-08: principles and obligations relating to the management of employee data
- Sanctions planned
- Deliberations and recommendations of the CNDP
- Example of employee information clause
- Example of employee consent
- Obligation to request CNDP authorization for the processing of employees’ personal data
- Analysis of the CNDP deliberation n-298-AU-2014 (of 04-11-2014)
- Analysis of the authorization form for the management of employees' personal data
- Management of employee rights requests by the company (employer):
- What are their rights?
- How to respond?
- What are the issues?
- Point of attention: use of legislation personal data in the context of disputes between employers and employees (in particular via a request for the right of access to personal data)
- Feedback
- Comparison with the GDPR (examples of sanctions )