Governance, Risk and Compliance  

Browse courses within this category

Certified Management Systems Internal Auditor

"The Certified Management Systems Internal Auditor training course is designed to provide the knowledge and skills needed
for conducting and managing internal audits in accordance with ISO 19011 guidelines, and other best practices. In this
comprehensive three-day course, you will learn the fundamental concepts and principles of internal auditing, the competence required for internal auditors, and how to effectively prepare, conduct, and follow up on internal audits.
This training course will enable you to establish and continually improve an internal audit program within your organization, ensuring compliance and effectiveness."

"This training course is intended for:

- Internal auditors
- Individuals carrying out roles and responsibilities related to the management system
- Individuals involved in the auditing and maintaining a management system
- Individuals seeking to become internal auditors or consultants involved in internal auditing
- Individuals responsible for ensuring conformity with management system standards"

"Explain the fundamental concepts and principles of internal auditing.
Establish, implement, monitor, review, and improve an internal audit program.
Plan, conduct, and complete an internal audit following the ISO 19011 guidelines and other best practices."

Basic knowledge of the common structure and requirements of management system standards (MSSs)

Risk Management - ISO 31000

"The ISO 31000 Foundation training course presents the basic principles and approaches of managing risks and opportunities
based on the guidelines of ISO 31000. This training course focuses on the main components of ISO 31000: basic terms and
definitions, principles of risk management, risk management framework, and risk management process. In addition, each step
of the risk management process is analyzed and elaborated individually.
Upon completion of the training course, you can sit for the exam and apply to obtain the “PECB Certificate Holder in ISO 31000
Foundation” designation. The certificate demonstrates that you understand the fundamental concepts of risk and methodologies
for risk management based on the guidelines of ISO 31000."

"Risk management professionals.
Individuals seeking to gain knowledge about the ISO 31000
guidelines for risk management principles, framework, and
process.
Individuals responsible for the creation and protection of value
in an organization.
Personnel tasked with managing the risks and opportunities in
their area of responsibility.
Individuals interested to pursue a career as a risk manager."

"Upon successful completion of this training course, the participants
will be able to:
Summarize the main concepts and principles of risk management as articulated in ISO 31000
Explain the ISO 31000 guidelines for establishing the risk
management framework
Describe the application of the risk management process in
accordance with ISO 31000 guidelines"

There are no prerequisites to participate in this training course

"Risks come from multiple sources and can appear in many shapes and sizes. Almost every strategic decision within an
organization is accompanied by certain risks that the organization must acknowledge and deal with. Since without taking risks,
there is virtually no growth, risk management should be an integral part of the processes in every organization.
The ISO 31000 Risk Manager training course helps participants acquire the knowledge necessary and ability to integrate the risk
management guidelines of ISO 31000 in an organization. It provides information with regard to the risk management principles
and their application, as well as the core elements of the risk management framework and steps for a risk management process.
In addition, it provides the basic approaches, methods, and practices for assessing risk in a wide range of situations."

"Managers or consultants responsible for the effective management of risk in an organization.
Individuals seeking to gain knowledge about the risk management principles, framework, and process.
Individuals responsible for the creation and protection of value in their organizations.
Individuals interested in pursuing a career in risk management."

"By the end of this training course, the participants will be able to:
Demonstrate understanding of risk management principles, as formulated in ISO 31000
Establish, maintain, and continually improve a risk management framework, in accordance with ISO 31000 guidelines
Apply the risk management process, in accordance with ISO 31000 guidelines"

There are no prerequisites to participate in this training course

"Risks come from multiple sources and can appear in many shapes and sizes. Almost every strategic decision within an
organization is accompanied by certain risks that the organization must acknowledge and deal with. Since without taking risks,
there is virtually no growth, risk management should be an integral part of the processes in every organization.
The ISO 31000 Risk Manager training course helps participants acquire the knowledge necessary and ability to integrate the risk
management guidelines of ISO 31000 in an organization. It provides information with regard to the risk management principles
and their application, as well as the core elements of the risk management framework and steps for a risk management process.
In addition, it provides the basic approaches, methods, and practices for assessing risk in a wide range of situations."

"Managers or consultants responsible for the effective management of risk in an organization.
Individuals seeking to gain knowledge about the risk management principles, framework, and process.
Individuals responsible for the creation and protection of value in their organizations.
Individuals interested in pursuing a career in risk management."

"By the end of this training course, the participants will be able to:
Demonstrate understanding of risk management principles, as formulated in ISO 31000
Establish, maintain, and continually improve a risk management framework, in accordance with ISO 31000 guidelines
Apply the risk management process, in accordance with ISO 31000 guidelines"

There are no prerequisites to participate in this training course

Anti-bribery Management Systems - ISO 37001

"This training course is designed to help participants understand the fundamental concepts and principles of an anti-bribery management system (ABMS) based on ISO 37001. By attending this training course, participants will learn more about the structure and requirements of the standard for an ABMS, including the anti-bribery policy, the top management’s leadership and commitment, processes related to specific controls such as due diligence, financial and non-financial controls, gifts, hospitality, and donations, as well as performance evaluation and continual improvement processes.

After completing this training course, you can sit for the exam and, if you successfully pass it, you can apply for the “PECB Certificate Holder in ISO 37001 Foundation” designation. A PECB foundation certificate proves that you have knowledge on the fundamental concepts, principles, methodologies, requirements, framework, and management approaches used in establishing anti-bribery management systems."

"Managers and consultants seeking to know more about anti-bribery management.
Professionals wishing to get acquainted with ISO 37001 requirements for an ABMS.
Individuals engaged in or responsible for anti-bribery management activities in their organization.
Individuals wishing to pursue a career in anti-bribery management."

"Upon successful completion of this training course, the participants will be able to:

Describe the anti-bribery management concepts, principles, and definitions.
Explain the main ISO 37001 requirements for an anti-bribery management system.
Identify potential actions and approaches that organizations can use to achieve conformity to ISO 37001."

There are no prerequisites to participate in this training course

"The PECB Certified 37001 Lead Implementer training course provides a framework for organizations to establish, implement, maintain, and improve an anti-bribery management system (ABMS) that aligns with legal requirements and ethical business practices.

The training course is designed to equip participants with the necessary knowledge and skills to implement an ISO 37001-compliant ABMS. By participating in this training, you will gain practical insights into bribery risk assessment, due diligence, internal controls, and continuous improvement strategies.

Organizations operate in environments where bribery risks pose significant threats to ethical governance, regulatory compliance, and business sustainability. Failure to prevent bribery can result in legal penalties, reputational damage, financial losses, and diminished stakeholder trust. As organizations seek to strengthen their integrity and align with global anti-bribery expectations, adopting a structured and effective approach to anti-bribery management becomes essential.

Upon completing the training course, you can take the certification exam. After passing the exam, you will earn the internationally recognized “PECB Certified ISO 37001 Lead Implementer” credential. Validating your competence in implementing an ABMS based on the requirements of ISO 37001."

"This training course is intended for:

Managers or consultants involved in anti-bribery management.
Individuals seeking to master the implementation of the ABMS.
Individuals responsible for maintaining conformity with the 37001 requirements within an organization.
Individuals carrying out roles and responsibilities related to the ABMS.
Individuals wishing to contribute in maintaining organizational integrity by supporting ethical behavior.
Individuals aspiring to become anti-bribery consultants."

"By the end of this training course, participants will be able to:

Explain the fundamental concepts and principles of an ABMS based on ISO 37001
Interpret the ISO 37001 requirements for an ABMS from the perspective of an implementer
Initiate and plan the implementation of an ABMS based on ISO 37001, by utilizing PECB’s IMS2 Methodology and other best practices
Support an organization in operating, maintaining, and continually improving an ABMS based on ISO 37001
Prepare an organization for a third-party certification audit"

Participants who attend this course must be familiar with asset management concepts and have in-depth knowledge of anti-bribery principles.

"The PECB Certified ISO 37001 Lead Auditor training course equips you with the knowledge and skills to conduct anti-bribery management system (ABMS) audits using widely recognized audit principles, procedures, and techniques.

Organizations worldwide seek skilled auditors to evaluate the effectiveness of anti-bribery policies and controls within an ISO 37001:2025-based ABMS. This course prepares you to assess, plan, and execute audits effectively while ensuring compliance with ISO 19011 (guidelines for auditing management systems) and ISO/IEC 17021-1 (certification process requirements).

Through interactive sessions, practical exercises, and discussions, you will gain deep insights into ABMS audit techniques while enhancing essential auditing skills.

Upon completing the course, you can take the certification exam. After passing the exam, you will earn the internationally recognized “PECB Certified ISO 37001 Lead Auditor” credential, validating your ability to audit organizations for compliance with ISO 37001 requirements. "

"The ISO 37001 Lead Auditor training course is intended for:

Auditors seeking to perform and lead ABMS audits.
Managers or consultants seeking to master the ABMS audit process.
Individuals responsible for maintaining conformity to ISO 37001 requirements in an organization.
Technical experts seeking to prepare for an ABMS audit.
Expert advisors in anti-bribery management."

"By the end of this training course, the participants will be able to:

Explain the fundamental concepts and principles of an anti-bribery management system (ABMS) based on ISO 37001.
Interpret the ISO 37001 requirements for an ABMS from the perspective of an auditor.
Evaluate the ABMS conformity to ISO 37001 requirements, in accordance with the fundamental audit concepts and principles.
Plan, conduct, and close an ISO 37001 compliance audit, in accordance with ISO/IEC 17021-1 requirements, ISO 19011 guidelines, and other best practices of auditing.
Manage an ISO 37001 audit program."

Participants who attend this training course are required to have a fundamental understanding of anti-bribery concepts and a comprehensive knowledge of audit principles.

Anti-bribery Management Systems - ISO 37001 Transition

"Published in February 2025, the second edition of ISO 37001 maintains the same structure and core requirements as the 2016 version, ensuring continuity in the framework for establishing an effective ABMS. However, the standard has undergone a technical revision to incorporate key updates and improvements, including the integration of the Amendment ISO 37001:2016/Amd 1:2024.

This training course provides a comprehensive overview of the key changes in ISO 37001:2025. It includes the introduction of subclauses on climate change, highlighting the growing importance of sustainability in fostering a strong compliance culture. It also covers the changes addressing conflicts of interest and the role and responsibilities of the anti-bribery function. Additionally, the course highlights the harmonization of wording in ISO 37001 with other ISO standards, ensuring smoother integration of the ABMS with other management systems.

Upon completing the training, you will be eligible to sit for the exam. If you successfully pass the exam, you can apply for the PECB Certified ISO 37001:2025 Transition credential. This internationally recognized certificate demonstrates that you possess the knowledge and professional capabilities to update an ABMS in line with the latest ISO 37001:2025 requirements."

"This training course is intended for:

Individuals seeking to remain up to date with the requirements of ISO 37001 for an ABMS.
Individuals seeking to understand the differences between requirements of ISO 37001:2016 and ISO 37001:2025.
Individuals responsible for transitioning an ABMS from ISO 37001:2016 to ISO 37001:2025.
Managers, trainers, and consultants involved in maintaining an ABMS.
Professionals wishing to update their ISO 37001 certificates."

"By the end of this training course, you will be able to:

Explain the differences between ISO 37001:2025 and ISO 37001:2016
Interpret the new concepts, requirements, and recommendations of ISO 37001:2025
Plan and implement the necessary changes to an existing ABMS to ensure conformity to the requirements of ISO 37001:2025"

Participants who attend this training course need to have a general understanding of anti-bribery concepts and ISO 37001 requirements.

ISO/IEC 38500 IT Corporate Governance

"As organizations deepen their reliance on IT and digital capabilities, the ability to govern these resources effectively has become essential. In an era shaped by technological change, heightened risk, and evolving stakeholder expectations, understanding how to establish governance for the use of IT is fundamental to building resilient and accountable organizations.

The ISO/IEC 38500 Foundation training course provides the basic concepts and principles for the use of IT. It offers a clear and structured approach to help participants understand the principles, model, and framework of the governance of IT as outlined in ISO/IEC 38500.

After attending the training course, you can sit for the exam and, if you successfully pass it, you can apply for the “PECB Certificate Holder in ISO/IEC 38500 Foundation” credential. A PECB Foundation certificate validates your understanding of good governance practices in the context of digital transformation."

"This training course is intended for:

Managers and consultants seeking knowledge about the basic concepts and principles of governance of IT
Individuals involved in digital transformation, compliance, or IT-related initiatives
Professionals entering governance, risk, or IT management role
Consultants and advisors interested in familiarizing themselves with ISO/IEC 38500
Individuals wishing to build a solid foundation in governance of IT as a pathway toward advanced responsibilities or certification"

"By the end of this training course, participants will be able to:

Interpret the concepts and principles for the governance of IT
Explain the ISO/IEC 38500 model for the governance of IT
Describe the ISO/IEC 38500 framework for the governance of IT "

There are no prerequisites to participate in this training course.

"ISO/IEC 38500 IT Governance Manager training enables you to gain a thorough understanding of the core principles for good governance of IT based on ISO/IEC 38500. During this training course, you will also acquire the necessary knowledge to support an organization to apply and manage the ISO/IEC 38500 Evaluate-Direct-Monitor model.

After becoming acquainted with all the necessary concepts and principles of IT Governance, you can sit for the exam and apply for a “PECB Certified ISO/IEC 38500 IT Corporate Governance Manager” credential. By holding a PECB Certificate, you will demonstrate that you have the practical knowledge and skills to manage an IT Governance model."

"Managers or consultants responsible for ensuring good IT Governance within an organization
Individuals seeking to gain comprehensive knowledge of the core principles of IT Governance
IT Governance team members
Expert advisors involved in IT Governance
"

"Managers or consultants responsible for ensuring good IT Governance within an organization
Individuals seeking to gain comprehensive knowledge of the core principles of IT Governance
IT Governance team members
Expert advisors involved in IT Governance
" "Understand the core principles of ISO/IEC 38500 and learn how to interpret them
Learn about the ISO/IEC 38500 Evaluate-Direct-Monitor Model
Acquire the necessary knowledge to evaluate, direct and monitor the use of IT in an organization
Understand COBIT 5 and CGEIT"

A fundamental understanding of ISO/IEC 38500 and comprehensive knowledge of IT Governance.

"ISO/IEC 38500 Lead IT Corporate Governance Manager training enables you to acquire the expertise to support and lead an organization to successfully evaluate, direct and monitor an IT Governance model based on ISO/IEC 38500. During this training course, you will also gain comprehensive knowledge of the best practices and core principles of IT Governance and be able to effectively apply them in an organization in order to ensure good governance of IT.

After mastering all the necessary concepts and core principles of IT Governance, you can sit for the exam and apply for a “PECB Certified ISO/IEC 38500 Lead IT Corporate Governance Manager” credential. By holding a PECB Certificate, you will demonstrate that you have the professional capabilities and competencies to effectively govern the use of IT within an organization."

"ISO/IEC 38500 Lead IT Corporate Governance Manager training enables you to acquire the expertise to support and lead an organization to successfully evaluate, direct and monitor an IT Governance model based on ISO/IEC 38500. During this training course, you will also gain comprehensive knowledge of the best practices and core principles of IT Governance and be able to effectively apply them in an organization in order to ensure good governance of IT.

After mastering all the necessary concepts and core principles of IT Governance, you can sit for the exam and apply for a “PECB Certified ISO/IEC 38500 Lead IT Corporate Governance Manager” credential. By holding a PECB Certificate, you will demonstrate that you have the professional capabilities and competencies to effectively govern the use of IT within an organization." "Managers or consultants responsible for ensuring good IT Governance within an organization and effective management of its risks
Expert advisors seeking to gain comprehensive knowledge of the key concepts and principles of IT Governance
Technical experts seeking to formalize, amend, and/or extend an organization’s IT-related objectives
Members of groups monitoring the resources within an organization
IT Governance and/or Information Security team members"

"Course objective and structure
Normative frameworks for IT Governance
Fundamentals of IT governance
Relationship between IT Governance and IT Management
Identification and engagement of stakeholders
Clarify sponsorship and responsibilities"

"A fundamental understanding of ISO/IEC 38500 and comprehensive knowledge of IT Governance.

"

Compliance Management Systems - ISO 37301 Introduction

"ISO 37301 Introduction training course introduces you to the basic concepts of compliance and ISO 37301 requirements for a compliance management system (CMS). Moreover, this training course shows the importance of a CMS and the benefits resulting from its implementation.

Who should attend?
Managers, consultants, and compliance officers wishing to get introduced to ISO 37301 requirements for a CMS
Individuals wishing to contribute in maintaining organizational integrity by supporting ethical behavior
Managers and members of governance, risk management, and compliance teams
Individuals aspiring to become compliance officers or compliance management consultants"

"Managers, consultants, and compliance officers wishing to get introduced to ISO 37301 requirements for a CMS
Individuals wishing to contribute in maintaining organizational integrity by supporting ethical behavior
Managers and members of governance, risk management, and compliance teams
Individuals aspiring to become compliance officers or compliance management consultants"

This training course will help you:

Develop an overall understanding of the compliance concepts
Have a general understanding of the ISO 37301 requirements for a compliance management system (CMS)

"This training course will help you:

Develop an overall understanding of the compliance concepts
Have a general understanding of the ISO 37301 requirements for a compliance management system (CMS)"

There are no prerequisites to participate in this training course.

Compliance Management Systems - ISO 37301

"The PECB Certified ISO 37301 Foundation training course presents the basic concepts of compliance and the requirements of ISO 37301 for a compliance management system (CMS). In this training course, you will learn about the various aspects of a CMS, including the compliance policy, compliance culture, compliance risk assessment, operational controls, performance measurements, leadership and commitment, internal audit, management review, and continual improvement.

After completing the training course, you can sit for the exam. If you successfully pass the exam, you can apply for the “PECB Certificate Holder in ISO 37301 Foundation” certificate. An internationally recognized “PECB ISO 37301 Foundation” certificate demonstrates that you have the necessary professional capabilities to be part of an ISO 37301 CMS implementation project."

"The ISO 37301 Foundation training course is intended for:

Managers and consultants seeking knowledge about the basic concepts of a CMS
Compliance officers and members of compliance teams who want to get acquainted with ISO 37301’s requirements
Individuals wishing to contribute in maintaining the organizational integrity by supporting ethical behavior
Managers and members of governance, risk management, and compliance teams
Individuals wishing to pursue a career as a compliance officer"

"By participating in this training course, you will:

Understand the basic compliance management concepts, definitions, and approaches
Get acquainted with the ISO 37301 requirements for a compliance management system
Develop a general understanding of how an organization can meet the requirements of ISO 37301"

There are no prerequisites to participate in this training course.

"The benefits of implementing a compliance management system (CMS) based on ISO 37301 are manifold: helping the organization avoid or mitigate the costs, risks, and damage of noncompliance, ensuring the long-term sustainability of the organization, promoting trust and confidence, encouraging good governance practices, due diligence, and ethically sound business dealings, etc.

The PECB ISO 37301 Lead Implementer training course provides the knowledge needed to establish, implement, manage, maintain, and continually improve a CMS. It aims to provide an in-depth understanding of ISO 37301 requirements, as well as the best practices and approaches used for the implementation and subsequent maintenance of the compliance management system.

The training course enables you to help organizations establish processes needed to adhere to all compliance obligations and establish controls that proactively prevent noncompliance and contribute to the creation of a culture of integrity, transparency, and openness.

The training course is followed by the certification exam. If you pass, you can apply for the “PECB Certified ISO 37301 Lead Implementer” credential. The “PECB ISO 37301 Lead Implementer” certificate is internationally recognized. It validates your professional capabilities and competences to implement a CMS in an organization based on the requirements of ISO 37301."

"Managers, consultants, and compliance officers wishing to develop a thorough understanding of ISO 37301 requirements for a compliance management system
Managers and consultants seeking a comprehensive CMS implementation framework
Compliance officers responsible for practicing due diligence with regard to compliance risks
Individuals wishing to contribute in maintaining organizational integrity by supporting ethical behavior
Managers and members of governance, risk management, and compliance teams
Individuals aspiring to become compliance officers or compliance management consultants"

"Managers, consultants, and compliance officers wishing to develop a thorough understanding of ISO 37301 requirements for a compliance management system
Managers and consultants seeking a comprehensive CMS implementation framework
Compliance officers responsible for practicing due diligence with regard to compliance risks
Individuals wishing to contribute in maintaining organizational integrity by supporting ethical behavior
Managers and members of governance, risk management, and compliance teams
Individuals aspiring to become compliance officers or compliance management consultants" "By the end of this training course, participants will be able to:

Explain the concepts, approaches, methods, and techniques used for the implementation and effective management of a CMS
Explain the relationship between ISO 37301 and other standards and regulatory frameworks
Interpret the requirements of ISO 37301 from the perspective of an implementer
Support organizations in establishing, implementing, maintaining, and continually improving their CMS based on ISO 37301
Prepare an organization to undergo a third-party certification audit"

The main requirements for participating in this training course are a basic knowledge of ISO management system standards, as well as a general understanding of ISO 37301 (or ISO 19600) and the MS implementation principles.

"The PECB Certified 37301 Lead Auditor training course enables you to develop the necessary competence to perform compliance management system (CMS) audits by applying widely recognized audit principles, procedures, and techniques.

Many organizations seek competent auditors to determine whether their policies, procedures, and controls adhere to ISO 37301 requirements. This training course aims to help you complete these tasks successfully and intends to reflect the importance of effective CMS audits. In addition, this training course aims to strengthen your knowledge and skills to plan and carry out CMS audits based on the guidelines for auditing management systems provided in ISO 19011 and the certification process described in ISO/IEC 17021-1.

This training course can potentially qualify you to conduct audits on behalf of conformity assessment bodies.

The exercises, quizzes, and case studies provided in this training course are designed to help you practice the most important aspects of a CMS audit: ISO 37301 requirements, auditing principles, tools and techniques used to obtain evidence, leading a team of auditors, conducting interviews with auditee, reviewing documented information, drafting nonconformity reports, and preparing the final audit report.

After successfully completing the training course, you can sit for the exam which is designed to measure your knowledge and skills regarding CMS audits. If you successfully pass the exam, you can apply for the “PECB Certified ISO 37301 Lead Auditor” credential. The “PECB ISO 37301 Lead Auditor” certification validates your professional capabilities and demonstrates that you have the knowledge and skills to audit a CMS based on ISO 37301."

"The ISO 37301 Lead Auditor training course is intended for:

Auditors seeking to perform and lead CMS audits
Managers or consultants seeking to master the CMS audit process
Individuals responsible for maintaining conformity to ISO 37301 requirements in an organization
Technical experts seeking to prepare for a CMS audit
Expert advisors and compliance officers"

"This training course enables you to:

Understand the main concepts of a compliance management system (CMS) and its processes based on ISO 37301
Acknowledge the relationship between ISO 37301 and other standards and regulatory frameworks
Understand the auditor’s role in planning, leading, and following up on a CMS audit in accordance with ISO 19011
Interpret the requirements of ISO 37301 in the context of a CMS audit
Plan an audit, lead a team of auditors, draft nonconformity reports, and follow up on an audit
Act with due professional care during an audit"

A fundamental understanding of ISO 37301 requirements (or ISO 19600 guidelines) for a CMS and a comprehensive knowledge of audit principles.