Skip to main content

Data Protection & Privacy · KEN

Kenya Data Protection Act, 2019

Three clocks start the moment a breach happens. Know which one is yours, what section 43 requires, and what the ODPC can already do to your organisation.

3 Learning UnitsFoundational / LevelIncludes 1 practical tool~50 min
Module overviewWhy this module existsA short look at what you'll walk away holding
Enrol now

Invoiced to your organisation

About this module

Kenya's Data Protection Act, Cap. 411C, puts binding duties on whoever carries ultimate accountability for your organisation, whether that's a board of directors, a board of retirement fund trustees, a council or accounting authority, or body corporate trustees.

This module traces the law from its constitutional root in Article 31 through the eight core principles to the breach, transfer and enforcement rules the ODPC is already applying. Three short units, one governing-body duty. Foundational means we assume nothing except that you already sit on a governing body. We start where Kenyan law starts, at Article 31. [134/180 chars, PASS]. Promoted lead line, shown large above the body.

The tool
Kenya DPA (Cap. 411C) Compliance Readiness Checklist
Walks through Kenya DPA compliance steps to confirm you are ready.

What's inside

3 learning units

~50 min total · 1 practical tool
01Kenya's Data Protection Landscape & Core Principles
🔒Video
🔒Quiz
02Rights of Data Subjects & Duties of Controllers and Processors
🔒Video
🔒Quiz
03Everyday Compliance: Transfers, Breaches & Enforcement
🔒Video
🔒Quiz

Put your board through it before the next review, not after.

We'll set your people up and send you the completion record.