Standard

GDPR — Certification Hub

The General Data Protection Regulation (GDPR) is the EU’s data protection and privacy law. It sets requirements for how organizations collect, process, and protect personal data, and applies to any organization that handles the personal data of EU residents, regardless of where the organization itself is based.

Certification path

  1. Foundation — Introduces the regulation’s core principles and requirements.
  2. Certified Data Protection Officer — For professionals who take on or support the Data Protection Officer role, responsible for an organization’s ongoing GDPR compliance.

Not sure which course level fits your role, or what experience a designation requires? See the full course-level and certification-criteria reference →

Frequently asked questions

Who needs GDPR training?

Data protection officers, privacy managers, legal and compliance teams, and IT professionals responsible for handling personal data.

Does GDPR apply outside the EU?

Yes. It applies to any organization processing the personal data of individuals in the EU, regardless of where the organization is located.

Is GDPR a certifiable ISO standard?

GDPR is a legal regulation, not an ISO standard, but PECB offers certification training on it given how central it is to data protection practice.

Is an exam voucher included?

Yes — every course on MyISOCertification includes a PECB exam voucher.

Browse all related courses →