All training courses are designed for delegates working within the Scottish legal and regulatory framework and incorporate relevant Scottish legislation, regulatory guidance, case studies and practical examples. Course content reflects the requirements of UK GDPR, the Data Protection Act 2018, Freedom of Information (Scotland) Act 2002, Environmental Information (Scotland) Regulations 2004, the Public Records (Scotland) Act 2011, Scottish cyber resilience expectations and sector-specific regulatory requirements where relevant.
Information Governance Essentials
Date
This practical course provides an introduction to information governance, covering data protection, records management, cyber security, transparency and information sharing, alongside the policies, governance structures, roles and training needed for an effective framework. It will enable delegates to understand their responsibilities and make informed decisions when establishing or improving information governance within their organisation.
Click here to read more and book your place.
Data Protection for Real-World Services
Date
This practical course focuses on applying data protection law in busy operational services, covering lawful bases, transparency, data minimisation, special category data, information sharing, DPIAs, breaches and rights requests. It will help delegates identify and manage everyday data protection risks, know when to seek advice or escalate issues, and build confidence in balancing compliance with practical service needs, particularly when handling sensitive, multi-agency or complex information.
Click here to read more and book your place.
FOISA in Practice
Date
This practical course provides a grounding in the Freedom of Information (Scotland) Act 2002, covering how requests should be recognised, logged, assessed and answered, as well as exemptions, public interest tests, timescales, vexatious or repeated requests and reviews. Delegates will also understand how FOISA interacts with the Environmental Information Regulations, data protection and records management, helping them provide lawful, consistent and defensible responses.
Click here to read more and book your place.
Subject Access Requests
Date
This practical course provides a clear process for managing and responding to subject access requests under UK GDPR and the Data Protection Act 2018, covering search planning, information retrieval, third-party information, redaction, exemptions and complex disclosures. It will help delegates manage SARs confidently and document decisions effectively, particularly where records are sensitive, dispersed across systems, or mixed with other people’s information.
Click here to read more and book your place.
Microsoft 365 Governance
Date
This practical course explores how governance, compliance, records management, security and information architecture controls can be applied within Microsoft 365 to meet legal and regulatory obligations. Delegates will gain a clearer understanding of ownership, permissions, Teams and SharePoint structures, retention, sensitivity, auditability, external sharing and user behaviour risks, helping organisations move from unmanaged use of Microsoft 365 towards a structured governance model with clear roles, policies and controls.
Click here to read more and book your place.
AI and Copilot Readiness (Awareness)
Date
This practical course provides an accessible overview of AI, generative AI and Microsoft Copilot, exploring their capabilities, opportunities and governance risks. Delegates will consider the information governance, security, records management, transparency, procurement and assurance issues that should be addressed before adoption, enabling senior leaders and governance teams to assess readiness, risk, policy, training needs and organisational controls with greater confidence.
Click here to read more and book your place.
Records Management That Works
Date
This practical course helps delegates design and maintain effective records management arrangements across paper, email, shared drives, line-of-business systems and Microsoft 365. It covers retention, classification, metadata, disposal, preservation, access and information lifecycle management, enabling organisations to move beyond policy statements to practical controls, clear responsibilities and defensible decisions about what to keep, where to keep it and when to dispose of it.
Click here to read more and book your place.
Please view the respective training pages for full agenda details.
Information Governance Essentials, Date Click here
Data Protection for Real-World Services, Date
FOISA in Practice, Date
Subject Access Requests, Date
Microsoft 365 Governance, Date
AI and Copilot Readiness (Awareness), Date
Records Management That Works, Date
In partnership with: RiSiO Solutions
RiSiO Solutions Ltd is a Scotland-based information governance consultancy specialising in records management, data protection, freedom of information, Microsoft 365 governance, and information and data strategy.
Working across the public, private and third sectors, RiSiO helps organisations develop practical, proportionate approaches to managing information, meeting compliance obligations, and supporting effective decision-making.
Known for its engaging and pragmatic training style, RiSiO delivers learning that translates governance principles into real-world practice.
All training sessions take place online.
Please view the respective training pages for fees.
Information Governance Essentials, Date Click here
Data Protection for Real-World Services, Date
FOISA in Practice, Date
Subject Access Requests, Date
Microsoft 365 Governance, Date
AI and Copilot Readiness (Awareness), Date
Records Management That Works, Date
Book delegate places or purchase video recording.
