GDPR Training for Barristers
Comprehensive data protection training built for the Bar. LOCS:23 approved — a critical step towards your chambers' certification.
Duration
1.5 Hours
CPD Hours
2
Approved
LOCS:23
Certificate
On Completion
WHAT YOU WILL LEARN
Six practical outcomes from this training
Understand how GDPR applies specifically to barristers and chambers, and why it matters to your practice
Master the seven data protection principles and how to apply them when handling personal data
Learn from real data breaches at the Bar, understand what went wrong, and how to prevent similar failures
Manage subject access requests correctly, from initial request through disclosure and response
Identify a data breach, report it immediately, and follow emergency procedures in compliance with GDPR
Meet your annual GDPR training requirement by completing this training
About this training
Data protection is no longer a marginal issue for barristers. The ICO has prosecuted barristers' chambers for breaches, issued enforcement notices, and made clear that the GDPR applies to how you handle personal data in your practice. The BSB expects chambers to have proper data protection governance in place.
This training covers what GDPR requires of you as a self-employed individual, what happens when things go wrong, and the practical steps to manage data protection risk in your chambers. It is designed for barristers and chambers staff who handle personal data as part of their work, and it forms a critical foundation for any chambers working towards LOCS:23 certification.
The course uses real examples of data breaches that have affected chambers and the Bar. It is built by in-house barristers at Briefed who advise chambers on data protection every day, not by external training developers. Content is updated whenever GDPR guidance or case law changes, so you can rely on it to reflect current practice.
Key topics
-
1
The importance of GDPR for barristers
-
2
ICO prosecutions and investigations of chambers
-
3
Real-life data breaches at the Bar
-
4
The seven data protection principles explained
-
5
Lawful bases for processing personal data
-
6
Data subject rights in practice
-
7
Managing subject access requests
-
8
Data sharing and international transfers
-
9
Data breach identification and response
-
10
Minimising data protection risks to your practice
What learners say
“The training course maintains the very high standard that I have observed in previous years. The information is clearly and logically presented and the case studies are well chosen and illuminating. The course is altogether an admirable educational tool.”
Frequently asked questions
Yes. The ICO, being the regulator for GDPR and data protection in the UK, expects sector specific GDPR training to be completed annually. The BSB does not specify mandatory annual GDPR training, but barristers have a Core Duty to comply with data protection law and to understand their obligations.
The training takes approximately two hours to complete and is available on-demand 24/7. You will receive a CPD certificate for two CPD hours, which counts towards your annual CPD requirement. Completion is recorded in your chambers' Briefed Academy portal, providing evidence of compliance training for audits and insurance renewals.
Typically, chambers will not need to appoint a DPO, but will need to have an individual who takes the role of data protection lead or manager. This individual cannot be a barrister member, as there could be a potential conflict of interest.
The ICO can conduct investigations and issue enforcement notices. For significant breaches, the ICO may issue fines, which can reach up to 4 per cent of annual turnover or €20 million, whichever is higher. More commonly, the ICO issues enforcement notices requiring remedial action. The ICO also publishes investigation outcomes, which can affect your chambers' reputation and client confidence. This training covers the ICO's expectations and real breaches that have resulted in enforcement action.
LOCS:23 is the ICO-approved certification standard for legal services, demonstrating proper data protection and information governance. Panel clients and professional indemnity insurers increasingly require it. To achieve LOCS:23, chambers must have trained staff and members, documented policies, breach response procedures, and a data protection audit. This training is an ICO-approved step towards certification and provides the knowledge foundation required.
Related training
Related services
Briefed offers advisory, audit, and policy services alongside training. If your chambers needs support beyond eLearning, we can help.