Advanced Cyber Risk for Non-Technical Managers
5 days|Delivered on request
This advanced programme assumes delegates already work in the field. It goes past the basics into crisis management, control design and the judgement calls that sit outside COSO ERM. At this level the constraint is rarely knowledge. It is judgement under pressure, which matters because risk registers are widely maintained and rarely used in an actual decision. Delegates leave able to work confidently with compliance monitoring, risk reporting to the board and risk culture in their own organisation.
What delegates leave able to do
- Make a decision about compliance monitoring without waiting for a specialist, measured against COSO ERM
- Put risk reporting to the board on a footing they can defend to a reviewer
- Explain risk culture to someone who does not do the work
- Take ownership of operational risk rather than escalating it
What the course covers
- Crisis management
- Control design
- Compliance monitoring
- Risk reporting to the board
- Risk culture
- Operational risk
- Risk appetite and tolerance
Who should attend
- governance and assurance practitioners
- heads of risk
- internal auditors
- risk champions in operating units
- business continuity coordinators

