C-Risk and isits AG International School of IT Security Join Forces to Equip German Organizations with Data-Driven Cyber Risk Management Skills
C-Risk, a leading European firm specializing in Cyber Risk Quantification (CRQ) and Data-Driven Risk Management (DDRM), and isits AG (International School of IT Security), a recognized leader in IT security education in Germany, today announced a strategic partnership to bring data-driven cyber risk management training to German-speaking professionals.
As organizations across Europe face increasing pressure to comply with evolving regulatory frameworks including NIS2 and DORA. The ability to quantify and manage cyber risk with precision has become a business-critical skill. Yet most training offerings still focus on technical controls rather than risk-based decision-making. This partnership directly addresses that gap. ISITS, which has built a strong reputation over more than two decades through its collaboration with Ruhr University Bochum and the Horst Görtz Institute, enriches its already extensive catalog with C-Risk's expertise in data-driven risk management giving German-speaking professionals access to internationally recognized frameworks and methodologies to make smarter, evidence-based cybersecurity decisions.
Under this agreement, ISITS will offer C-Risk's flagship course "Data-Driven Cyber Risk Management with FAIR" enabling professionals to go beyond traditional security practices and approach cyber risk through a rigorous, quantitative lens. The program will be delivered by a dedicated German-speaking instructor, ensuring participants benefit from expert-led, localized training sessions.
A Comprehensive Training Offer
The partnership provides participants with access to a two-level learning experience:
- In-person training sessions in Germany, led by a dedicated German-speaking C-Risk instructor, covering the full "Data-Driven Cyber Risk Management with FAIR" curriculum.
- C-Risk Education, C-Risk's online learning platform, enabling professionals to deepen their knowledge at their own pace, on demand.
Additionally, specialized training courses on "Turning Controls into Measurable Risk Reduction with FAIR-CAM" and "Building a Data-DrivenThird-Party Risk Management (TPRM) Program with FAIR™" are available upon request, allowing organizations to address the full spectrum of quantitative cyber risk management.

Quotes
"C-Risk has been supporting clients in the DACH region for several years. This partnership with ISITS, a TÜV Pers Cert-accredited training organization, is alogical continuation of that commitment. It opens a new avenue for our German-speaking teams, who have until now been primarily focused on consulting, by engaging them in training delivery in Germany. We are delighted to take this new step in our European development with a partner that shares our standards of rigor."
—Grégoire Paillas, Training Manager, C-Risk
To find out more about the training programs offered through this partnership or to register for an upcoming session, visit c-risk.com/crq-training.
"Many organizations in Germany, Austria and Switzerland still rely heavily on qualitative risk assessments, heat maps and abstract risk ratings. While these methods remain useful, they often make it difficult to communicate cyber and technology risks in a language that executive management, finance, compliance and business stakeholders can act on. Together with C-Risk, we aim to make this transition tangible and practical for GRC, security and risk management teams across the DACH region."
— Giuseppe Zano, Program Manager, isits AG International School of IT Security
Learn More about C-Risk and isits AG International School of IT Security
About C-Risk
C-Risk helps build a safer digital economy through data-driven risk management and cyber risk analysis using the proven FAIR standard. Since 2016, C-Risk has worked with organizations across industries and geographies to translate complex cyber risks into clear, actionable business insights. Its quantitative approach to risk management enables informed decision-making, strengthens board-level reporting, and guides strategic cybersecurity investments. C-Risk also supports enterprises in implementing and onboarding SAFE Security's cyber risk management platform, managing third-party cyber risks, and training teams to build and sustain effective risk-based information security programs.
Visit C-Risk.com and follow us at @C-Risk
MediaContact — C-Risk Lydie Aubert lydie.aubert@c-risk.com
About ISITS
Since 2001, isits AG has been training professionals and executives in cybersecurity. Our programs are innovative, versatile, and certified by various organizations. Whether through seminars, webinars, in-house training, distance learning, or conferences, our goal is to provide our clients with the best possible learning experience.
You can find all of our training courses, as well as more information about the isits AG International School of IT Security, at www.is-its.org
MediaContact — ISITS Carolin Feth, feth@is-its.org

.png)