Managing Corporate Cybersecurity Programmes

A concise, decision-focused programme covering corporate cybersecurity programmes end to end.

📍 Tripoli🗓️ 5 training days📚 4 modules🎓 Accredited certificate
5intensive training days
4scientific modules
8training sessions
32detailed points

Course Overview

The value of preparation for corporate cybersecurity programmes is only visible on the day it is needed. Guard force performance on this area of corporate security practice reflects supervision, not instruction. The programme uses small-group work so that each participant's treatment of this strand of corporate security practice is examined, not just described. The course leaves participants able to diagnose weaknesses in corporate cybersecurity programmes before they become incidents. The professional literature on this area of corporate security practice converges on a small set of controls that reliably work. It treats this aspect of corporate security practice as an operating discipline and equips participants to run it as one. It is pitched for practitioners with responsibility for corporate cybersecurity programmes, not for observers of it. Buying a tool rarely fixes this area of corporate security practice; the underlying capability has to be built internally first. The programme closes with an action plan for the corporate security practice discipline that each participant writes for their own organisation.

Expected Learning Outcomes

01

Exercise and test arrangements for corporate cybersecurity programmes under realistic conditions.

02

Align corporate cybersecurity programmes with the wider objectives of the protected site rather than optimising it in isolation.

03

Build the investigation capability and evidence handling for corporate cybersecurity programmes.

04

Plan the handover of corporate cybersecurity programmes so that capability is not lost when key staff move on.

05

Design layered controls for corporate cybersecurity programmes across deterrence, detection, delay and response.

06

Balance security requirements in corporate cybersecurity programmes against operational practicality.

07

Set the minimum documentation for corporate cybersecurity programmes that is genuinely necessary, and stop there.

Who Should Attend

01

Investigation and loss prevention specialists working on corporate cybersecurity programmes.

02

Training and development staff building internal capability in corporate cybersecurity programmes.

03

Guard force supervisors delivering corporate cybersecurity programmes.

04

Facility and site managers accountable for protection of corporate cybersecurity programmes.

05

Business continuity and crisis managers covering corporate cybersecurity programmes.

06

Business partners who must understand corporate cybersecurity programmes well enough to challenge it.

Course Modules

01

Corporate cybersecurity programmes: investigation, evidence and reporting

2 sessions · 8 points

Session 1Reviewing corporate cybersecurity programmes when nothing has gone wrong

  • Identify the data already collected that bears on corporate cybersecurity programmes.
  • Test the procedure for corporate cybersecurity programmes against a realistic scenario.
  • Record the rationale for each significant choice made about corporate cybersecurity programmes.
  • Confirm recorded material from corporate cybersecurity programmes is retained long enough to be useful.

Session 2The paperwork for corporate cybersecurity programmes that is actually needed

  • Build the threat picture for corporate cybersecurity programmes from sources relevant to this site and sector.
  • Supervise and spot-check performance on corporate cybersecurity programmes rather than relying on reports.
  • Assign responsibility for keeping documentation of corporate cybersecurity programmes current.
  • Review surveillance coverage for corporate cybersecurity programmes against likely approach routes.
02

Corporate cybersecurity programmes: procedures, access control and identity

2 sessions · 8 points

Session 1Reading the current state of corporate cybersecurity programmes honestly

  • Establish evidence handling and chain of custody for corporate cybersecurity programmes.
  • Check that controls on corporate cybersecurity programmes cover deterrence, detection, delay and response.
  • Report on corporate cybersecurity programmes in terms that support an investment decision.
  • Record what was learned when corporate cybersecurity programmes did not go as planned.

Session 2Coordinating with external authorities on corporate cybersecurity programmes

  • Assess insider risk in roles with privileged access to corporate cybersecurity programmes.
  • Set out the decisions in corporate cybersecurity programmes that require sign-off and by whom.
  • Confirm access control on corporate cybersecurity programmes cannot be routinely bypassed.
  • Set escalation thresholds for corporate cybersecurity programmes that work out of hours.
03

Corporate cybersecurity programmes: insider risk, vetting and personnel security

2 sessions · 8 points

Session 1Making the investment case for corporate cybersecurity programmes

  • Arrange the handover of corporate cybersecurity programmes so capability survives staff changes.
  • Confirm vetting standards applied to staff and contractors in corporate cybersecurity programmes.
  • Compare the cost of corporate cybersecurity programmes with the cost of its absence.
  • Anticipate the objections corporate cybersecurity programmes will raise and prepare the answers.

Session 2Supervising the guard force on corporate cybersecurity programmes

  • Plan the sequence in which improvements to corporate cybersecurity programmes will be introduced.
  • Collect evidence on the present handling of corporate cybersecurity programmes before proposing changes.
  • Rehearse the briefing on corporate cybersecurity programmes that would follow an incident.
  • Protect sensitive information relating to corporate cybersecurity programmes from casual disclosure.
04

Corporate cybersecurity programmes: continuity, exercises and external coordination

2 sessions · 8 points

Session 1Exercising the plan for corporate cybersecurity programmes realistically

  • Define the first response actions for an incident involving corporate cybersecurity programmes.
  • Coordinate arrangements for corporate cybersecurity programmes with civil defence and police in advance.
  • Exercise the plan for corporate cybersecurity programmes under realistic conditions and record failures.
  • Identify vulnerabilities in corporate cybersecurity programmes and rank them by consequence, not ease of fix.

Session 2Finding the vulnerability in corporate cybersecurity programmes an adversary would use

  • Draft the minimum viable security procedure for corporate cybersecurity programmes.
  • Identify single points of dependency in corporate cybersecurity programmes and reduce them.
  • Review whether corporate cybersecurity programmes is aligned with the objectives of the protected site.
  • Assess contractor and third-party exposure within corporate cybersecurity programmes.

Choose the package that suits you

Silver Package

At least 3 people

USD1,250
  • Workshop or Program Participation
  • Airport Transfers
  • Customized Badge
  • Expert Mentorship (Private Sessions)
  • Supervision & Secretarial Services
  • Accredited Certificate of Participation
  • Complete Training Kit
  • Coffee Break
  • Closing Ceremony

Gold Package

At least 3 people

USD1,850
  • 5-night stay in a 5-star hotel
  • Workshop or Program Participation
  • Airport Transfers
  • Customized Badge
  • Expert Mentorship (Private Sessions)
  • Supervision & Secretarial Services
  • Accredited Certificate of Participation
  • Complete Training Kit
  • Coffee Break
  • Closing Ceremony

Complete your registration

We will contact you within one business day to confirm.