
CHIEF INFORMATION SECURITY OFFICER (C|CISO)
Course Description
Chief Information Security Officer (C|CISO)
Course Code: C|CISO 101 — Certified Chief Information Security Officer
The Certified Chief Information Security Officer (C|CISO) program is designed for senior security leaders
who plan, build, and govern enterprise security programs. Developed with contributions from experienced CISOs and
an advisory board of industry executives, the curriculum focuses on transferring executive-level knowledge to the
next generation of leaders responsible for protecting mission-critical assets and enabling strategic business outcomes.
Learners will master the executive competencies required to lead security strategy, risk management, governance,
budgeting, vendor oversight, and incident response—while aligning security initiatives with organizational goals and
measurable outcomes.
Architects/Managers, and experienced GRC leaders preparing for executive responsibility.
What You’ll Learn
- Develop and govern an enterprise information security program and roadmap
- Executive risk management: appetite, tolerance, and board-level reporting
- Security finance: budgeting, forecasting, and value realization
- Policy, standards, and control frameworks mapped to business objectives
- Third-party/vendor risk management and contract/security addenda
- Incident response leadership, crisis communications, and recovery
- Metrics & KPIs/KRIs: building an outcomes-driven security scorecard
Topics Covered
- Governance, Risk & Compliance (GRC): ISO/IEC 27001, NIST CSF, COBIT, SOC 2
- Legal & regulatory: privacy, e-discovery, breach notification, data residency
- Architecture & strategy: zero trust, cloud security, identity, and data protection
- Security operations: threat intel, detection & response, tabletop exercises
- Talent & org design: roles, RACI, coaching, and vendor/managed services models
- Business alignment: risk quantification, investment cases, and board narratives
Format & Materials
- Executive-level seminars, case studies, and tabletop simulations
- Program templates (policies, charters, risk registers, scorecards)
- Capstone: draft or refine a 12–18 month security strategy and metrics plan
Prerequisites
- 5+ years in information security leadership or equivalent senior GRC/architecture role
- Familiarity with enterprise risk management and control frameworks
Outcomes & Next Steps
- Lead an enterprise security program aligned to strategy and risk appetite
- Communicate effectively with the C-suite and board using actionable metrics
- Prepare for the C|CISO certification exam and executive-level interviews
- Advance toward roles such as CISO, VP of Security, or Head of GRC
Course Info
- Start Course: Weekly
- Duration: 5 days
- Prerequisites: No