Course Outline
- Core tenets of information security and the strategic role of the Chief Information Security Officer (CISO)
- Regulatory compliance frameworks, risk management methodologies, and the design of secure architectures
- Implementation of security controls, incident response protocols, and change management processes
- Cultivation of a security-conscious culture, performance monitoring, and continuous improvement strategies
- Professional certification examination
The PECB Chief Information Security Officer examination fulfills the standards set by the PECB Examination and Certification Program (ECP). The assessment covers the following competency domains:
- Foundational principles of information security
- The responsibilities and strategic contributions of the CISO within a security program
- Selection of compliance frameworks, risk assessment, and secure architectural design
- Operational execution of security controls, incident management, and change governance
- Promotion of a security culture, performance measurement, and programmatic optimization
Upon passing the examination with a satisfactory score, candidates may apply for one of the certifications listed below. The official certificate will be issued once all prerequisites for the chosen credential are met.
The eligibility criteria for PECB Chief Information Security Officer certifications are as follows:
|
Designation |
Examination |
Professional Experience |
CISOMS Project Experience |
Additional Requirements |
|
PECB Certified Information Security Officer |
PECB Chief Information Security Officer examination |
Not required |
Not required |
Execution of the PECB Code of Ethics |
|
PECB Certified Chief Information Security Officer |
PECB Chief Information Security Officer examination |
Five years: Including two years of direct experience in information security |
Project activities: A cumulative total of 300 hours |
Execution of the PECB Code of Ethics |
Effective information security leadership for a CISO should align with industry best practices, addressing the following critical areas:
- Development of security-focused business and communication protocols
- Definition of information security objectives and performance indicators
- Assurance of organizational adherence to applicable information security statutes and regulations
- Enforcement of security standards and the cultivation of a robust security culture
Requirements
The primary prerequisite for enrolling in this training course is a foundational understanding of information security principles and core concepts.
Testimonials (5)
Theory followed by practical examples and exercices. Job well done!
Vincenzo Delle Donne - Department of National Defence
Course - ISO 37301 Compliance Management System
the expertise & knowledge of the trainer
Erica DeRosa DeRosa - Aecon Group INc.
Course - ISO 37001 Anti-Bribery Management System
With both my 2022 ISO 9001 audit prep-related training & the recently completed ISO 9001 audit prep refresher course; Dereck has helped me significantly with regards to gaining a new & practical perspective of the ISO 9001:2015 clauses & sections & how they apply to our business. Dereck has also helped me with both training courses --- to improve my ISO-related communications both with our company's employees and the external ISO Auditors .
Dana Foster - Corrigan Oil Company
Course - ISO 9001 Foundation
The quizzes to reinforce the reading and the ability to ask questions at any time
Jonathan
Course - ISO 9001 Lead Auditor
Speed of response and communication