Data and Information Governance Programme

Data and Information Governance Programme

Compliance, Security, and Responsible Data Handling

|
Platform:
Online
In-class
Revised and Updated: 29 September 2026
Date Venue Duration
09 - 11 November 2026 Durban, KZN 3 Days

Course Introduction

Prospen Africa’s Data and Information Governance Programme provides a comprehensive overview of data and information governance and outlines the requirements for establishing and delivering an effective governance framework within your organisation. Data and information governance is crucial to managing information and establishing a robust framework through consistent policies and procedures that guide employees in handling data responsibly.

Understanding and implementing data and information governance is pivotal in today’s digital age, where the misuse of confidential data can have severe repercussions, including breaches of data-protection legislation such as South Africa’s Protection of Personal Information Act (POPIA) and the UAE’s Federal Decree-Law on the Protection of Personal Data. 

Mastering Data and Information Governance Programme frameworks enables enterprises to minimize legal compliance liabilities, making Data and Information Governance Programme a critical strategic course for executive leaders.

Course Objectives

Upon successfully completing this Data and Information Governance Programme, participants will be able to:

  • Understand why information governance is important, and be aware of the laws, best practices, and regulations that govern it
  • Be aware of the core principles of data and information security
  • Develop an effective information governance framework for stakeholders and staff
  • Design and implement a pragmatic framework for managing data and information assets
  • Identify the required roles and responsibilities for information governance throughout the organisation
  • Improve how information is captured, distributed, accessed, stored, and disposed of
  • Ensure legal and regulatory compliance
  • Reduce storage, retrieval, and legal costs
  • Save time and money through greater interoperability and standardised policies
  • Critically analyse real-world scenarios and case studies to understand the practical application of governance concepts

Who should attend?

Participants focused on Data and Information Governance Programme typically include:

  • IT Professionals
  • Governance Department Employees
  • Data and Information Auditors
  • Compliance Auditors
  • All Employees Who Work with Data and Information
  • Anyone Responsible for Keeping Personal Information Up-to-Date, Secure, and Confidential
Microsoft (365) Office Courses

Training Methodology

Our diverse instructional approaches ensure effective learning:

– Lectures & Presentations: Engage with expert-driven, stimulating content.
– Course Material: Access well-crafted supporting resources.
– Group Work: Collaborate on discussions and case studies for practical insights.
– Workshops & Role-Play: Participate in immersive, scenario-based activities.
– Practical Application: Focus on applying theoretical knowledge in real situations.
– Post-Training Support: Receive extensive support after training for skill implementation.

Training Outline

Day 1 — Foundations of Data and Information Governance
  • The role of data in today's organisations
  • Data governance: definition and basics
  • The principles of data governance
  • Data governance focus areas
  • Why it is important to identify sensitive and confidential information
  • When does an organisation need data governance?
  • Reasons for processing information; individual rights
  • Who owns the data, and why that matters
  • Roles within the data governance domain
  • Designing the data governance process

Day 2 — Legislative Framework and Regulatory Compliance
  • South Africa's Protection of Personal Information Act (POPIA)
  • South Africa's Promotion of Access to Information Act (PAIA)
  • Common law duty of confidentiality
  • The UAE Federal Decree-Law on the Protection of Personal Data
  • The General Data Protection Regulation (GDPR), for organisations handling international data flows
  • ISO/IEC 27001: Information Security and Cyber Security
  • ISO 8000: Information and Data Quality
  • Core principles for responsible information sharing and obtaining consent
  • Handling a refusal of permission to share information
  • Sharing confidential information with third parties
  • Data sharing under POPIA and GDPR; common data-sharing concerns

Day 3 — Record-Keeping, Data Processing, and Governance IT Solutions
  • General considerations for record keeping
  • Developing a record-keeping policy
  • Surveillance camera considerations
  • Conducting data privacy impact assessments
  • Data processing records and records management
  • Disposal of documents
  • Transporting information and mobile data
  • Enterprise Content Management (ECM) systems
  • Document and records management systems
  • Data dictionaries, data analysis, and data mining
  • Relational databases and indexing
  • Archiving and preservation

Day 4 — Policy Development and Programme Management
  • Developing data governance management policies
  • Developing data lifecycle management procedures
  • Creating a data governance management action plan
  • Managing and maintaining a data governance programme
  • Monitoring and measuring programme performance
  • The value of data governance to the organisation
  • Programme management factors: executive sponsorship and critical success components
  • A three-part framework for programme management
  • Identifying and managing Redundant, Obsolete, and Trivial (ROT) data
  • Current Issue Discussion: how organisations are using AI-assisted data classification and ROT-analysis tools to reduce the cost and risk of unmanaged data sprawl.

Day 5 — Risk Management, Incident Response, and Corporate Communication
  • Conducting a data governance risk assessment
  • Defensive deletion and strategic planning
  • Policy development for risk management
  • Handling complaints, grievances, and whistleblowing
  • Managing data breaches and regulatory notification obligations
  • Ongoing training, policies, procedures, and useful resources
  • Corporate communication policies governing email, social media, and mobile devices
  • Governance considerations for big data and cloud applications
  • Case Study: Facebook–Cambridge Analytica: how the personal data of millions of Facebook users was harvested without consent and used for political advertising, illustrating the consequences of weak data governance.
  • Case Study: Marriott International Data Breach: a breach affecting approximately 500 million customers, underscoring the need for stringent information governance and security measures.

Course Categories

Get a Quote Banner Outline

Request a Call Back

Your submission has been successful

Please check your email for confirmation

Success Stories

Discover how our courses enhance professionals’ effectiveness in their workplaces.

Tharisa Minerals

SQL Server Training

The course was very informative and interesting

Revenue Appeals Tribunal Eswatini

Basic Registry, Records and Archives

The facilitator is the best in the field and i personally learnt a lot on the subject matter.

Magalies Water

Document Control and Document Management Systems

The facilitator was knowledgeable, engaging, and presented the material clearly. The institution provided a well-organized learning environment with adequate resources and support throughout the training.

Central Bank of Lesotho

Data & Information Governance

The vast knowledge of Mr Selelepoo is really unmatched. I am totally happy and transformed from this training.

FAQs – Data and Information Governance Programme

Build data and information governance expertise covering data quality, governance frameworks, information management, privacy, security, compliance, and organisational data practices.

What is covered in the Data and Information Governance Programme?
The programme covers data governance principles, information ownership, data classification, privacy, data quality, governance roles, regulatory requirements, risk management, policies, controls, and information lifecycle management.
Who should attend the Data and Information Governance Programme?
It is suitable for data and information managers, records professionals, IT specialists, compliance and risk officers, governance practitioners, business managers, auditors, and professionals responsible for organisational information.
What are the key principles of data governance covered in the programme?
Participants explore data ownership, accountability, data quality, security, privacy, accessibility, classification, information lifecycle management, and clear governance responsibilities across an organisation.
Does the programme cover data privacy and regulatory compliance?
Yes. The programme addresses sensitive and confidential information, reasons for processing information, individual rights, privacy considerations, regulatory obligations, and governance controls for responsible information management.
Does the Data and Information Governance Programme cover data ownership and governance roles?
Yes. Participants examine who owns organisational data, why ownership matters, and the roles and responsibilities required to establish effective data governance and accountability.
Does the Data and Information Governance Programme include practical exercises?
Yes. The programme includes practical application, group work, workshops, case studies, role-play, and workplace scenarios to help participants apply data governance principles to organisational information challenges.

Related Courses