ED-EL-03 ICT Risk & Digital Resilience for Executives: Meeting Your DORA and NIS2 Obligations – e-Learning

Duration: 5 hours of e-Learning content (unlimited access for 6 months)
Training format: Asynchronous (e-Learning)
CPE credits: 5

Elevate your skills and career potential with expert-led courses from C-Risk Education

Description:

This e-Learning course gives executive leaders a clear, practical understanding of their personal and organizational obligations under DORA and NIS2.

This executive course moves beyond legal summaries to focus on what executives are actually accountable for: approving risk frameworks, overseeing `incident response, questioning third-party dependencies, and demonstrating due diligence to regulators. Interactive questionnaires, self-assessments, and case-based examples translate dense regulatory text into board-relevant decisions.

Each module closes with a short knowledge check, and the course produces a set of downloadable checklists, templates, and an action plan that executives can put to use after completing the course.

The course remains accessible online for six months, allowing executives to revisit key modules at their own pace ahead of board meetings, audits, or regulatory deadlines, and includes a certificate of completion that fulfils the training obligations under NIS2 and DORA.

Description:
Pricing

€895 excl. VAT per person ED-EL-03.1

€3,580 excl. VAT / 5 participants ED-EL-03.2

€5,370 excl. VAT / 10 participants ED-EL-03.3

Duration

5 hours of e-Learning content (unlimited access for 6 months)

Training format

 Asynchronous (e-Learning)

CPE credits

5

Learning Objectives:

By the end of the course, participants will be able to:

  • Determine whether DORA, NIS2, or neither apply to their organization
  • Understand the vocabulary and tools of ICT risk management and governance
  • Methods to read a cyber risk report presented by a CISO or risk team and engage with them for better decision making
  • Apply a structured governance self-assessment to their organization's current posture and build an action plan
Target Audience:

Who Should Attend

Executive leaders, board members, and senior management

Prerequisites

None. No prior technical knowledge required.

Course Content:

Why This Matters to You Personally

  • Personal liability of management body members under DORA (Art. 5) and NIS2 (Art. 20 and Art. 32/33)
  • Real-world regulatory cases where executive governance failures were identified and sanctioned
  • Why "my CISO handles that" is no longer a sufficient governance posture, and what "sufficient knowledge" means in practice
  • The questions regulators ask executives after a major incident

Understanding Your Regulatory Obligations: DORA and NIS2 Decoded

  • A structured decision framework to determine whether DORA, NIS2, both, or neither apply to your organization
  • What each regulation individually requires of the management body
  • Comparing DORA and NIS2 side by side: where they overlap, and which framework sets the higher bar on each dimension
  • What regulators look for during an audit, and the evidence gaps that can trigger enforcement action against the management body

The ICT Risk Landscape: What Executives Need to Understand

  • The core vocabulary of ICT risk: threats, vulnerabilities, and financial exposure
  • Beyond the heat map: how to read, challenge, and act on ICT risk reporting
  • The tools executives need to govern ICT risk with confidence

Digital Operational Resilience: Beyond Business Continuity

  • What "digital operational resilience" now means under DORA and NIS2
  • Cybersecurity and risk oversight obligations and resilience measures to implement as a senior executive
  • Resilience testing, third-party dependencies, and recovery obligations

Reading and Challenging Risk Reports: The Executive Toolkit

  • Moving from qualitative heat maps to financially meaningful risk reporting
  • How to read a quantified risk report: probability, loss magnitude, exposure
  • The right questions to ask a CISO or risk team presenting results

Building Your Governance Posture: From Obligation to Action

  • Self-assessing your organization's governance readiness
  • Turning gaps into a prioritized action plan
  • Preparing evidence of compliance for regulators and auditors
Instructional Team:

Instructional design developed by the C-Risk Education team, experts in FAIR-based risk quantification.

Monitoring of implementation and evaluation of results:
  • Self-assessments integrated throughout the eLearning modules
  • Multiple-choice quizzes at the end of each chapter to validate understanding of key concepts
Technical and educational resources:
  • Interactive modules accessible online 24/7 for 6 months
  • Bibliographic references and links to relevant standards
C-Risk

Advance Your Career with Cyber Risk Management Training

E-learning platform and instructor-led courses in quantification, cyber risk frameworks, and data-driven decision-making.
C-Risk Education equips you with the skills to analyze and manage cyber risk effectively. Our training covers multiple methodologies and frameworks: cyber risk quantification, EBIOS RM, third-party risk management, and advanced threat and control assessment techniques. 
Learn practical, immediately applicable skills across the full spectrum of modern cyber risk management.

In-person
Introduction to Data-Driven Cyber Risk Management with the FAIR™ Standard

Learn data-driven cyber risk management with FAIR standard. 3-hour instructor-led course on quantifying cyber risk in financial terms. No prerequisites.

Half-day (3 hours)
Learn more
E-learning
Introduction to Data-Driven Cyber Risk Management with the FAIR™ Standard - e-Learning

Learn FAIR™ cyber risk quantification at your own pace. 3-hour e-learning covering risk management fundamentals and financial risk analysis.

3 hours of e-Learning content (unlimited access for 3 months)
Learn more
In-person
Data-Driven Cyber Risk Management with the FAIR™ Standard for Practitioners

Master FAIR™ methodology in 12 hours. Learn quantitative cyber risk analysis, overcome qualitative limits, and make data-driven security decisions.

12 hours
Learn more
E-learning
Data-Driven Cyber Risk Management with the FAIR™ Standard for Practitioners - e-Learning

Master FAIR™ cyber risk quantification with 12 hours of e-learning. Model risk scenarios, estimate loss factors, prepare for Open FAIR™ 2 certification.

Approximately 12 hours of e-Learning content (unlimited access for 3 months)
Learn more
In-person
From Regulation to Decision: Defensible Cyber Risk Governance for Executives under NIS2, DORA and the EU AI Act

Meet your board's cyber risk oversight obligations under NIS2, DORA, and the EU AI Act, and learn to govern cyber risk with the same rigor as financial risk. Full-day executive program for management bodies and senior leaders. €930 per person. 6 CPE credits included.

Full day (7 hours), on-site or remote
Learn more
In-person
Turning Controls into Measurable Risk Reduction with FAIR-CAM

Learn to quantify security control effectiveness using FAIR-CAM™. Model risk reduction, analyze attack chains, and integrate controls into FAIR™ analyses.

4 hours
Learn more
E-learning
Turning Controls into Measurable Risk Reduction with FAIR-CAM – e-Learning

Master FAIR-CAM™ to quantify security control effectiveness. 10-hour e-learning for FAIR practitioners. €695 per person. 10 CPE credits included.

Approximately 10 hours of e-learning content (unlimited access for 3 months)
Learn more
E-learning
Building a Data-Driven Third-Party Risk Management (TPRM) Program with FAIR™ – e-Learning

Learn to quantify third-party cyber risks using FAIR™. 10-hour e-learning course covering TPRM lifecycle, risk scenarios, and financial quantification.

Approximately 10 hours of e-Learning content (unlimited access for 3 months)
Learn more
E-learning
Risk & Digital Resilience for Executives : DORA & NIS2 Obligations — E-learning

Fulfil your DORA and NIS2 training obligations and learn why cybersecurity is a governance issue, and how to oversee it effectively. 5-hour e-learning for executives and board members. €895 per person. 5 CPE credits included.

Approximately 5 hours of e-Learning content (unlimited access for 6 months)
Learn more