Course Outline
1. Introduction to the CISO Role and Organizational Context
- Understanding the strategic importance of the CISO position
- Roles, responsibilities, and leadership expectations
- Information security governance within corporate strategy
2. Governance, Risk, and Compliance (GRC)
- Developing information security governance frameworks
- Aligning policies with ISO/IEC 27001, COBIT, and NIST standards
- Regulatory compliance and audit readiness
3. Information Security Risk Management
- Risk identification, analysis, and mitigation techniques
- Risk management methodologies and frameworks
- Integrating risk management into corporate decision-making
4. Security Program Development and Management
- Designing and implementing enterprise security strategies
- Developing security policies, standards, and procedures
- Metrics, reporting, and continuous improvement
5. Information Security Controls and Technologies
- Overview of modern security technologies and architectures
- Data protection, identity management, and cloud security
- Defense-in-depth and zero-trust principles
6. Incident Management, Business Continuity, and Disaster Recovery
- Developing and implementing incident response plans
- Business continuity planning and recovery strategies
- Lessons learned and post-incident review processes
7. Leadership, Communication, and Strategic Alignment
- Building a security-aware culture across the organization
- Communicating risk and strategy to executive leadership and the board
- Managing cross-functional teams and vendor relationships
8. PECB Certification Exam Preparation
- Exam structure, format, and key topic review
- Sample questions and mock exam
- Certification process and maintenance requirements
Summary and Next Steps
- Review of key leadership and governance competencies
- Guidance on maintaining certification and continuing professional development
- Resources for further specialization in cybersecurity leadership
Requirements
- Knowledge of information security concepts and frameworks
- Experience in information security or IT governance roles
- Familiarity with ISO/IEC 27001 or related standards is recommended
Audience
- Information Security Managers and Senior IT Professionals
- Risk and Compliance Officers
- IT Directors and Consultants
- Professionals aspiring to become Chief Information Security Officers (CISOs)
Custom Corporate Training
Training solutions designed exclusively for businesses.
- Customized Content: We adapt the syllabus and practical exercises to the real goals and needs of your project.
- Flexible Schedule: Dates and times adapted to your team's agenda.
- Format: Online (live), In-company (at your offices), or Hybrid.
Price per private group, online live training, starting from £9000 + VAT*
Contact us for an exact quote and to hear our latest promotions
Testimonials (3)
Theory followed by practical examples and exercices. Job well done!
Vincenzo Delle Donne - Department of National Defence
Course - ISO 37301 Compliance Management System
the expertise & knowledge of the trainer
Erica DeRosa DeRosa - Aecon Group INc.
Course - ISO 37001 Anti-Bribery Management System
Speed of response and communication