The Right Call Series · Module 3

GDPR & Data Protection
Training for Managers

Real data decisions. Real consequences. The breaches and disclosures managers actually have to handle.

Scenarios
5
Time per learner
~10 min
Standard
SCORM 1.2
Pass mark
10/10
Licence
Unlimited users

GDPR training that doesn’t bore the room

Most GDPR training is annual, generic, and forgotten by the next morning. It tells managers what the law is. It rarely shows them the moment they’ll actually need it — the colleague at their desk in a panic about a misdirected email, the request from a vendor for a full employee export, the laptop left open at a coffee shop.

The Right Call: GDPR & Data Protection puts managers inside five real data situations and shows the consequence of each choice — the ICO fine, the breach notification, the trail that protects you or doesn’t. There’s no “correct” answer screen. Each option plays out.

Scenarios are drawn from real cases, anonymised, grounded in UK GDPR and the Data Protection Act 2018. Because the stakes are high, this module requires a perfect score to pass — managers must get every decision right.

Five scenarios
  • The Misdirected Email
    A colleague has just emailed a spreadsheet of staff details to the wrong address — and wants to handle it quietly.
  • The Oversharing Manager
    A management conversation that crosses the line from need-to-know into casual disclosure — and where data minimisation lives in practice.
  • The Subject Access Request
    An employee asks for everything you hold about them — and the difference between compliance and confrontation.
  • The Unlocked Laptop
    A laptop left open on the train — and what counts as a reportable security breach.
  • The Overly Helpful Colleague
    A vendor consultant asks for a full employee export — and the lawful basis you need before saying yes.
What’s included
  • 5 scenarios with 3 choices each
  • Full consequence feedback for every choice — no “correct” answer screens
  • Knowledge primer before scenarios begin
  • Key takeaways reference screen
  • Score and results screen
  • Sound effects and animations
  • SCORM 1.2 with 10/10 pass mark — perfect score required
  • Item-level interaction logging on every scenario choice
  • Works in any LMS or standalone in any browser
  • Unlimited internal users on one licence
Try it free

Play the complete module — before you buy

The demo is the full product. All five scenarios, all fifteen choices, all the consequences. No email gate, no time limit. Play it through, decide if it’s right for your managers, then buy when you’re ready.

About 10 minutes start to finish. Works on desktop, tablet and mobile.

Frequently asked questions

Why does this module require a perfect score?
GDPR mistakes carry real consequences — up to £17.5 million or 4% of annual global turnover for serious breaches, plus reputational damage and individual harm. The pass mark reflects that reality. Managers need to get every call right, not most of them. Learners can retake the module unlimited times to reach 10/10.
How long does the training take to complete?
Around 10 minutes per learner on a first pass. Some learners take a couple of attempts to reach the perfect-score pass mark, in which case allow 15-20 minutes total. Learners can pause and resume; the SCORM package saves state.
Can I deploy this on our LMS?
Yes. The package is supplied as SCORM 1.2, which works in any LMS — TalentLMS, Moodle, Cornerstone, Workday Learning, Bridge and others. You can also host it on your intranet as a standalone HTML file if you don’t use an LMS.
Is this enough to satisfy our annual GDPR training requirement?
It depends on your DPO’s assessment of the risk environment and your processing activities, but for most organisations it serves as an effective annual refresher for line managers. Roles handling sensitive data at scale (HR, finance, legal) typically need additional role-specific training; this module focuses on the decisions that every manager faces.
Can I customise this for our organisation?
Not out of the box. It’s deliberately industry-neutral so it works across sectors. If you need bespoke versions with your branding, policies or sector-specific situations, get in touch — we offer this as a paid service.
What’s the licensing model?
One-time purchase of £149. Unlimited internal users. No annual renewals, no per-seat fees. The licence covers use within your organisation in perpetuity. If you’re a training provider planning to resell or use it with clients, contact us about a commercial licence.
Best value

Get the full Right Call series

All nine modules — equality, conflict, performance, mental health, safeguarding, GDPR, AI ethics, neurodiversity and inclusion — for one bundled price. Roll the lot out across your management population.

See the bundle →