Course Outline
1. Introduction to the CISO Role and Organizational Context
- Understanding the strategic importance of the CISO position
- Roles, responsibilities, and leadership expectations
- Information security governance within corporate strategy
2. Governance, Risk, and Compliance (GRC)
- Developing information security governance frameworks
- Aligning policies with ISO/IEC 27001, COBIT, and NIST standards
- Regulatory compliance and audit readiness
3. Information Security Risk Management
- Risk identification, analysis, and mitigation techniques
- Risk management methodologies and frameworks
- Integrating risk management into corporate decision-making
4. Security Program Development and Management
- Designing and implementing enterprise security strategies
- Developing security policies, standards, and procedures
- Metrics, reporting, and continuous improvement
5. Information Security Controls and Technologies
- Overview of modern security technologies and architectures
- Data protection, identity management, and cloud security
- Defense-in-depth and zero-trust principles
6. Incident Management, Business Continuity, and Disaster Recovery
- Developing and implementing incident response plans
- Business continuity planning and recovery strategies
- Lessons learned and post-incident review processes
7. Leadership, Communication, and Strategic Alignment
- Building a security-aware culture across the organization
- Communicating risk and strategy to executive leadership and the board
- Managing cross-functional teams and vendor relationships
8. PECB Certification Exam Preparation
- Exam structure, format, and key topic review
- Sample questions and mock exam
- Certification process and maintenance requirements
Summary and Next Steps
- Review of key leadership and governance competencies
- Guidance on maintaining certification and continuing professional development
- Resources for further specialization in cybersecurity leadership
Requirements
- Knowledge of information security concepts and frameworks
- Experience in information security or IT governance roles
- Familiarity with ISO/IEC 27001 or related standards is recommended
Audience
- Information Security Managers and Senior IT Professionals
- Risk and Compliance Officers
- IT Directors and Consultants
- Professionals aspiring to become Chief Information Security Officers (CISOs)
Delivery Options
Private Group Training
Our identity is rooted in delivering exactly what our clients need.
- Pre-course call with your trainer
- Customisation of the learning experience to achieve your goals -
- Bespoke outlines
- Practical hands-on exercises containing data / scenarios recognisable to the learners
- Training scheduled on a date of your choice
- Delivered online, onsite/classroom or hybrid by experts sharing real world experience
Private Group Prices RRP from £9500 online delivery, based on a group of 2 delegates, £3000 per additional delegate (excludes any certification / exam costs). We recommend a maximum group size of 12 for most learning events.
Contact us for an exact quote and to hear our latest promotions
Public Training
Please see our public courses
Testimonials (5)
The fact that all the standard was reviewed and discussed with some examples, when needed and required.
Ioana
Course - ISO/IEC 27005 Information Security Risk Management
The training was well put together & very informative.
Siobhan Kavanagh - SEEC MM Ltd.,
Course - ISO 9001 Lead Implementer
The quizzes to reinforce the reading and the ability to ask questions at any time
Jonathan
Course - ISO 9001 Lead Auditor
Speed of response and communication
Bader Bin rubayan - Lean Business Services
Course - ISO/IEC 27001 Lead Implementer
Dereck's overall preparedness . Dereck has great communications' skills !!