20% off all courses - Use code NEWYEAR20 at checkout.

New Jersey Data Protection Act (NJDPA) Awareness Course

Coming Soon: March 2026 Delivery: 100% online Duration: 35-40 minutes Certificate on Completion
0:00
15,000+ learners across our course collection. Immediate access on launch. 14 day 100% money-back guarantee.

New Jersey stands out by covering both nonprofit organisations AND higher education institutions - a rare combination among US state privacy laws. The New Jersey Data Protection Act brings comprehensive privacy requirements to the Garden State with an escalating penalty structure that doubles fines for repeat violations.

This course provides practical guidance on the New Jersey Data Protection Act. We cover who must comply (including the unique coverage of nonprofits and higher education), the rights New Jersey residents have over their data, sensitive data requirements, and the escalating enforcement mechanisms.

The NJDPA became effective on January 15, 2025. With penalties starting at $10,000 per violation and increasing to $20,000 for repeat violations, New Jersey has created strong incentives for compliance. The law provides a 30-day cure period before enforcement action. No technical background required - just focused, practical training your team can apply immediately.

Why learn about the NJDPA?

  • Understand the unique coverage of nonprofits and higher education
  • Know how the escalating penalty structure affects your risk
  • Handle New Jersey consumer data requests correctly
  • Avoid penalties of up to $20,000 per repeat violation
  • Implement proper consent mechanisms for sensitive data

Course features

New Jersey-specific

Focused entirely on the NJDPA with New Jersey-specific requirements, including nonprofit and higher education coverage.

Practical scenarios

Real-world examples showing how the NJDPA applies for businesses, nonprofits, and educational institutions.

Current guidance

Covers the law as effective January 2025 with the latest compliance guidance and interpretations.

Official sources

Built from the New Jersey Statutes and Attorney General guidance, with references to official documentation.

Learning with us

Course information

Learning outcomes

  • Understand when and how the NJDPA applies to your organisation
  • Know whether your nonprofit or educational institution must comply
  • Recognise the rights New Jersey residents have over their personal data
  • Handle consumer data requests correctly within required timeframes
  • Understand the escalating penalty structure and enforcement

Training recommendations

  • All employees who handle customer or member data should complete this training.
  • Annual refresher training is recommended to stay current with amendments and enforcement trends.
  • Teams handling sensitive data or consumer requests may benefit from additional role-specific training.

This course is recommended for

Employees who handle customer, member, or student data at organisations that conduct business in New Jersey or target New Jersey residents. This includes marketing, sales, customer service, HR, IT, and compliance teams at businesses, nonprofit organisations, and higher education institutions that meet the applicability thresholds.

Prerequisites

There are no prerequisites for this course. No legal or technical background is required.

What do I need for this course?

This course is 100% online and delivered through our online learning platform. Organisations can also access this content via their own LMS on request (SCORM format available).

Course content

In this section we introduce the New Jersey Data Protection Act and explain why it matters for your organisation. We cover what makes New Jersey's law unique, including its coverage of nonprofits and higher education.

Lessons

  • Introduction to the NJDPA
  • Why New Jersey matters: nonprofits and higher education covered
  • Effective date: January 15, 2025
  • Escalating penalty structure
  • Key definitions you need to know

New Jersey is one of the few states to cover both nonprofits AND higher education institutions. This section covers the applicability thresholds and which organisations must comply.

Lessons

  • The 100,000 consumer threshold
  • The 25,000 consumer + revenue threshold
  • Nonprofit coverage under NJDPA
  • Higher education institution coverage
  • Entities exempt from the NJDPA

New Jersey residents have comprehensive rights over their personal data. We cover what those rights are, how to handle requests, and the timeframes you must meet.

Lessons

  • The right to know and access
  • The right to correct inaccuracies
  • The right to delete personal data
  • The right to data portability
  • The right to opt out of sales, profiling, and targeted advertising
  • Handling consumer requests within 45 days

The NJDPA requires opt-in consent before processing sensitive data. We explain what counts as sensitive data in New Jersey, including special requirements for financial data.

Lessons

  • What is sensitive data under NJDPA?
  • The opt-in consent requirement
  • Financial data considerations
  • Children's data and parental consent
  • Biometric and precise geolocation data
  • Practical consent workflows

This section covers the practical obligations organisations must meet, including privacy notices, data protection assessments, and contracts with processors.

Lessons

  • Privacy notice requirements
  • Data protection assessments
  • Data minimisation and purpose limitation
  • Security obligations
  • Processor and contractor requirements

Understand how the NJDPA is enforced, the cure period, and New Jersey's unique escalating penalty structure.

Lessons

  • Attorney General enforcement authority
  • The 30-day cure period
  • Initial penalties: up to $10,000 per violation
  • Repeat violations: up to $20,000 per violation
  • No private right of action
  • Responding to investigations

Test your knowledge with scenario-based questions covering all the key NJDPA concepts from the course.

Lessons

  • Knowledge check (10 questions)

How it works

Step 1

Get notified

Sign up to be notified when this course launches. You'll be among the first to know and can start training your team immediately.

Step 2

Start learning

Each team member will have access to the learning materials and assessment. On completion of the course, team members will be issued with a certificate.

Step 3

Stay compliant

As the NJDPA evolves, we'll update the course. Trainees can review updated materials to stay current with enforcement trends and amendments.

What's included

Training

  • Distraction-free online learning platform
  • Scenario-based end of course assessment

Updates

  • Access to all course material updates and enhancements for the length of your access period

Certification

  • Certificate on completion

Course FAQs

Yes, on completion of the course you will be issued with a digital certificate. It will be issued by our team shortly after completion of the course including the end of course assessment. You can add this to your LinkedIn profile.

This course is designed for employees who handle customer or member data at organisations that may be subject to New Jersey's privacy law. This includes marketing, sales, customer service, HR, and IT teams at businesses, nonprofits, and higher education institutions doing business in New Jersey.

New Jersey is one of the few states to cover both nonprofit organisations AND higher education institutions - most states exempt one or both. It also has an escalating penalty structure: $10,000 for initial violations, increasing to $20,000 for repeat violations. The law uses standard Virginia-style thresholds.

NJDPA applies to organisations that conduct business in New Jersey or target New Jersey residents, AND either: (a) control or process personal data of 100,000+ New Jersey consumers, or (b) control or process data of 25,000+ New Jersey consumers and derive revenue from selling personal data. Nonprofits and higher education institutions are also covered.

New Jersey has an escalating penalty structure. Initial violations can result in fines up to $10,000 per violation. For repeat violations, penalties increase to $20,000 per violation. There is a 30-day cure period before enforcement action. There is no private right of action.

Yes, we offer a 14-day 100% money-back guarantee. If you are not satisfied with the course for any reason, simply contact us within 14 days of purchase for a full refund.

The course typically takes 35-40 minutes to complete. You can pause and resume at any time, and your progress is automatically saved.

Get notified when this course launches

Sign up to our newsletter to be the first to know when this course is available.

This course will be included in Measured Collective Plus

Get access to all our courses with one subscription from £236/year.

Learn About MC Plus

Available courses

PECR & ePrivacy for Marketers

PECR & ePrivacy for Marketers

UK PECR / ePrivacy

Included in PLUS

Learn PECR rules for direct marketing, cookies, and tracking technologies. Built for marketing and sales teams. Certificate on completion.

View Course
Abstract blue cityscape with tall buildings

GDPR Refresher Training Course

UK UK GDPR

Included in PLUS

A 25-minute refresher covering recent enforcement cases, the Data Use and Access Act 2025, and current GDPR best practices. Certificate…

View Course
woman reading book in training room with team members

GDPR Essentials Course

UK UK GDPR

Included in PLUS

Master UK GDPR fundamentals: data protection principles, lawful bases, data subject rights, and compliance essentials. Certificate on completion.

View Course