In the training, you will learn how to establish and operate effective risk management in IT and cybersecurity in a practice-orientated way using current examples.
The contents at a glance:
1 Introduction to Risk Management: Terms, principles and benefits for organisations – with psychological aspects of risk perception
2 Why Risk Management: Importance and added value for organisations, typical sources of error and success factors
3 Analysing the threat situation: Global cyber threats, situation reports, practical tools and sources
4 Identify assets & classify risks: Asset identification, risk types and risk classification based on importance and criticality
5 Conduct Cyber Risk Assessments: Methods such as:
6 Risk Management in the ISMS context: Application of international norms and standards such as ISO/IEC 27005, NIST Framework
7 Dealing with risks in digital business models: New requirements due to digitalisation and dynamic IT environments
Interactive exercises, case studies and discussions specifically support the transfer of learning into practice.
This course is designed for Chief Information Security Officers in small and medium-sized companies, IT managers and CxO functions with an interest in or need for information security.
Activity as security officer or information security officer and practical/professional experience in IT security.