Top governance, risk and compliance certification courses for 2020 - Sharpen your skills, raise your profile and become a governance, risk and ...
←
→
Page content transcription
If your browser does not render page correctly, please read the page content below
Top governance, risk and compliance certification courses for 2020 Sharpen your skills, raise your profile and become a governance, risk and compliance expert Qualsys helps organisations to achieve global standards and comply with regulations:
Why we created this guide to the best GRC training courses “Unlike many other professions, the GRC career path is only loosely defined. With such a broad mixture of managerial and technical skills required to master the role, continuing professional development is crucial. But there wasn’t anywhere online where I could easily find the best training courses. So I reached out to dozens of training course providers within the GRC space and assessed their courses to develop this list of the seven best GRC training courses available for 2020-21. Peer-reviewed by our Compliance Director Kate Armitage, these courses have been ranked by category to help you focus on the skill sets that matter most to you and your business.” Alex Pavlović GRC Market Intelligence Analyst Qualsys
Contents Best for GRC beginners Winner: OCEG, Professional Certificate in GRC course 4 Best for risk management Winner: University of Cambridge JBS, ‘Managing risk for 6 competitive advantage’ course Best for internal auditors Winner: IIA, Award in Compliance Audit & Assurance 8 course Best for corporate governance Winner: The GRC Group, Certified in Corporate 10 Governance/Certified Governance Professional course Best for lean Winner: ASQ, Lean Six Sigma Black Belt course 12 Best for building a quality strategy Winner: CQI, ‘Leading Quality Strategy & Planning’ course 14 Best for information security Winner: IT Governance, Certified Information Systems Security Professional Accelerated course 16 www.qualsys.co.uk/knowledge-centre/ 3
1. Best for GRC beginners US-based OCEG is a non-profit think tank registered as a public charity, with 80,000 global members. OCEG was founded in 2002 with a mission to drive good governance, risk and compliance across the business “The GRCP is the only certification that world. demonstrates understanding of the GRC Capability Model, which is the only publicly In 2005 OCEG published vetted set of standards for an integrated GRC the GRC Capability Model, also known as the structure. Red Book. Tens of thousands of people have downloaded The Red Book outlines and applied the Model. “the integration of the governance, assurance And 7500 people have taken the exam in the and management of past 5 years. performance, risk, compliance and ethics” in Every single day we hear from an OCEG member a general GRC structure who has just completed their GRCP certification for businesses and and is excited about how it is assisting them in professionals to apply. their career and in helping them improve and OCEG’s Governance, protect their organisations. Risk & Compliance Professional (GRCP) The course is making a difference and that’s course is designed to hugely affirming. ” give beginners a broad understanding of the role and business benefits of GRC and the Capability Carole Switzer President, Co-Founder OCEG
GRC Professional How it works: Certification • Purchase an All Access Pass on the OCEG website Overview • Access OCEG’s GRC resource library to GRCP certification proves that begin your research and you’re a qualified governance, learning risk and compliance “The GRCP course is • When you’re ready, take a professional who understands perfect for anyone 2-hour 100-question online the GRC Capability Model and examination. You must wanting to get into how to apply it to a business. the world of GRC and achieve a 70% score or higher to pass the exam. is passionate about The course aims at breadth making their business • The emphasis is on rather than depth, giving learning, not testing - so stronger and more participants the skills to you can retake the exam integrated. understand and integrate the if you fail, and you’re various components of the GRC encouraged to continue A robust quality and approach - from governance learning and accessing and performance management GRC system is the resources long after you to risk management, internal difference between a pass control and compliance. • Once you’re certified, good business and a you can use your great one. GRCP knowledge as a springboard to move onto Understanding the Individual benefits: the next tier: GRC Audit Capability Model and (GRCA) certification how you can apply it is • Globally recognised certification proving you the first step on that understand the broad journey.” Who it’s for: basics and structure of GRC • Beginners looking to get Kate Armitage • Access to OCEG’s GRC into GRC for the first time Compliance Director resource library for ongoing • GRC professionals who Qualsys learning want to consolidate their • Well-rounded knowledge and gain understanding that certification prepares you for • Experienced professionals specialisation in a working in a single area particular area of GRC, such as risk management, who want to broaden and round out their role and start Benefits to your business: managing other areas of the Capability Model • Competent GRC professionals ready to apply the Capability Model Price: • Access to hundreds of ebooks, videos, articles and The All Access Pass gives research papers to inform you access to OCEG’s GRC For more details: projects and future GRC resource library and the direction GRCP online exam for $399 support@oceg.org • Break down operational (£315). silos with an integrated +1 (602) 234-9278 GRC approach Team bundles are available • Proven increase in business too, so you and your confidence colleagues can become certified together. 5
2. Best for risk management COVID-19. Brexit. Fukushima. Katrina. The financial crash. Major business shocks and disruptions are a fact of life, and can do irreparable damage to your operation. That’s why risk management is a critical exercise no business can do without. Business leaders need “We preach neither prediction nor despair. to understand the risks Instead, we say, “plan to be surprised!” they face and how to treat them in an ongoing, Look at your firm’s revenue: which types of structured way. threat, external and internal, pose the most concern to your firm’s receipts? Which locations But they also need to be proactive and in the supply chain and consumer markets positive, turning risks are exposed to the most revenue risk? What is into opportunities the chance of a shock that causes substantial and uncertainty into revenue loss – perhaps 10 per cent or more – advantage. next year? The University of A recipe for nightmares, maybe. But confronting Cambridge’s Judge all of your nightmares is the first step to Business School is building a breakwater to minimise the harm consistently ranked that may come your way.” as one of the finest in the world. This 3-day course gives corporate leaders everything they need to turn risk into a competitive weapon. Daniel Ralph Professor of Operations Management Judge Business School
Managing risk for competitive advantage Managing risk for “Any 21st-century How it works: Overview competitive business advantage leader should • 3-day face-to-face class understand corporate This 3-day course from the JBS risk and how to Overview course in Cambridge, U.K. is designed to equip business • Small groups (max. 25) to approach it. leaders with the understanding, When you have a robust risk maximise value tools and techniques of management process, effective risk management. • 3-step learning programme, The JBS’ 3-day your course from recognising risk- business becomes more is my pick for the best related and decision- proactive, pre-emptive and Core topics include behavioural risk management resilient. making behaviour, to risk, applying risk management the strategic challenges course because it frameworks, operationalising of modern business, to centres challenges This workshop on a key point: your risk response, and building risk management business from a strategic, managing risk in enterprises risk into your organisational isn’t tactical and just a tick-box operational level. • Presented by Professor culture and make-up. exercise to protect of Operations Research Daniel Ralph and Reader in Topicsand covered: insulate. Operations Management Individual benefits: • ISO 31000 risk methodology Kishore Sengupta Done properly, it’s • Risk-based thinking training • Understanding of how a tool for growing to leverage risk as a and strengthening Benefits: positive, business-driving Who it’s for: your market position force which augments and building • Inspiration a real and ideas competitive advantage to upgrade your risk Risk culture of quality. • Senior business strategy • Practical risk framework managersprocess management have a vital leaders knowledge to apply to your role to play to kick- • Executive risk management operation What start you get: professionals, such as Chief this change.” • Understanding of Risk Officers immediate and long-term • Risk audit/gap analysis • Business leaders looking to risks • Risk-based thinking training address future challenges Kate Armitage • Provides 3 of the 10 learning • EQMS for risk management and drive competitive Compliance Director days needed for the JBS workshop advantage Qualsys General Management Certificate of Achievement Who this is for: Businesses using EQMS Benefits to your business: and want to utilise its risk management tools. • Transition from negative, Price: reactive risk management to proactive, positive risk The 3-day ‘managing risk for control competitive advantage’ course • Harness your unique risk is priced at £3300 + VAT. environment to strengthen Fee: your operation Groups and UoC alumni can • Bake accountability, risk access preferential rates. £1690 awareness and stronger decision-making into your culture For more details: executive.education@ jbs.cam.ac.uk +44 (0)1223 765496 ISO 9001:2015 7
3. Best for internal auditors Internal auditors are the eyes, ears and conscience of the organisation. And gathering evidence and uncovering risks and opportunities is the key to driving the future direction of any organisation. The Chartered Institute of Internal Auditors is the only professional “To be an effective and trusted partner, internal association for British auditors must understand their organisations’ and Irish internal business well enough to know, understand, auditors - making it the and anticipate risks. A firm grounding in the perfect place to visit to organisation’s strategy and operations is sharpen your auditing essential to see the risk landscape fully. skills. Boards also want assurance that their From building effective corporate culture encourages collaboration relationships to across the organisation to develop business leveraging the third plans that adapt to market disruptions, such as line of defence, the skills taken from an IIA the COVID-19 epidemic. Award in compliance audit and assurance Internal audit should be providing that are a key building block assurance.” for any auditor looking to progress to an managerial or oversight position. Richard Chambers President IIA
IIA Award in compliance How it works: audit and assurance • Pre-course preparation Managing riskhas forbeen provided upon sign-up “ISO 19011 Overview • 2-day face-to-face classes competitive advantage a hugely popular in London, Birmingham and standard in recent This 2-day course from the IIA years, which shows Overview York introduces delegates to the • Comprehensive learning that businesses are core processes, techniques and Whenthinking you have a robust risk programme covering the carefully responsibilities of the modern management process, your modern compliance auditor about how to build compliance and assurance business becomes more role, including planning, and apply internal auditor, while making sure they proactive, pre-emptive and testing, reporting and understand their role within the auditing programmes resilient. assurance wider organisation. • Presented by Dr Marian that really make a Silltow CFIIA, former difference. This workshop challenges your Individual benefits: business from a strategic, internal auditor in a range of business sectors The tactical IIA and Award in level. operational • Knowledge of how to compliance audit and • Award presented upon apply internal auditing Topicsassurance, covered: completion of the course and the for a robust compliance framework broader IIA Certificate • ISO 31000 it’s partrisk of, methodology is a good • Understanding of the • Risk-based thinking training Who it’s for: way for businesses to various ways to examine, test and assure an arm their compliance Benefits: • New compliance and organisation’s compliance assurance professionals teams and their programme • Internal audit leaders second line • Inspiration andof defence ideas • Ability to write a risk with the all-round to upgrade your risk looking to refresh how statement, report knowledgeprocess management and skill compliance is assessed and effectively, apply a risk set needed to apply a assured in their business matrix, perform root cause What modern you get: audit plan.” • Auditors perfoming analysis, and more compliance/assurance • Competence in evaluating • Risk audit/gap analysis reviews who want to embed audit evidence and • Risk-based thinking training best practice into their Kate Armitage building clear, actionable • EQMS for risk management operation Compliance Director conclusions workshop • Auditors looking to Qualsys • 1 of the 4 IIA Awards which progress to a compliance form the IIA Certificate in Who this is for: management position Internal Audit & Business Risk Businesses using EQMS Price: and want to utilise its risk management tools. Benefits to your business: It depends on whether you’re a member of the IIA or not. • Standardised auditing programmes with Members can complete the clear objectives and Award for £1175 + VAT. responsibilities Fee: • Actionable tools, techniques For non-members, it’s £1390 + and takeaways to apply VAT. £1690 • Understanding of how to coordinate the third line Membership itself has tiered of defence (internal audit pricing, ranging from student teams) to drive compliance For more details: and affiliate membership (£200 and ethics through the p.a.) to chartered membership organisation trainingandevents@iia.org.uk (£263 p.a.) and audit leader +44 (0)20 7498 0101 membership (£850 p.a.) ISO 9001:2015 9
4. Best for corporate governance The GRC Group delivers training and certification for thousands of GRC professionals worldwide, through its twin SOX and GRC institutes. From integrated risk and internal control management to IT governance and CSOXP certification, the GRC Group’s tight focus on the governance, risk and compliance space means dedicated and specialised training courses for professionals looking to gain new skills. The GRC Group offers “As you gain more visibility into processes you two tiers of certification: can actually streamline them, compress them, base and pro. make them more efficient. Begin your corporate Once you start to make business processes governance more efficient from a controls standpoint, accreditation with you eliminate errors and fraud. You are Certified in Corporate automatically making businesses run better.” Governance (CGOV), then progress to Certified Governance Professional (CGOVP) as you accrue more experience. Sanjay Anand CEO SOX Institute, The GRC Group
“How can businesses be ethical, Certified in Corporate • Confidence in ability to meet environmentally Governance (CGOV) & regulatory requirements, friendly, socially auditor expectations and Managing risk for Certified Governance responsible, stakeholder needs Professional (CGOVP) competitive compliant,advantage while at the same time Overview How it works: growing, delivering Overview value, making The GRC Group views • Join the GRC Group as a Whenstakeholders you have a robust risk certification more holistically member once you’ve gained management happy?process, your Corporate than other organisations. at least 3 years’ professional business becomes more governance is the Rather than following a typical experience proactive, pre-emptive key to answering and this training-exam-certification • Attend 2 days of corporate resilient. question. route, the CGOVP journey governance classroom relies on attaining real-life training and complete a This workshop challenges your experience and practicing detailed case study write- CGOVP business certification from a strategic, long-term self-teaching after up for CGOV certification with the GRC Group tactical and operational level. initial CGOV certification. • Accrue a minimum of 1200 means you’ve taken hours of GRC-related Topicscorporate covered: governance Certification proves that you experience per year for at seriously and are understand the components of least 3 years to progress to • ISO 31000 able to risk helpmethodology your modern corporate governance CGOVP certification • Risk-based businessthinking training hit those big and how they interact to • Maintain certification by objectives. provide stakeholder and maintaining membership Benefits: societal value. and accessing GRC Group • For more information Inspiration and ideas resources and learning Individual benefits: activities for a minumum of to about upgradecorporate your risk 12 hours per year responsibility, management process • Knowledge of the role and particularly in the mechanisms of corporate What States, you get: it’s worth governance and how to taking a closer look at measure performance • Risk audit/gap the analysisand SOX Institute • Understanding of Who it’s for: • Risk-based its work thinking training as well.” the separate roles of • EQMS for risk management shareholders, owners • New governance, risk and workshop Kate Armitage and managers in driving compliance professionals Compliance Director effective corporate seeking to compound and Who this is for: Qualsys governance expand their governance • Knowledge of how to knowledge Businesses using EQMS measure management • Governance managers and want to utilise its risk performance to ensure • Business leaders looking management tools. the expectations of to systematise, measure stakeholders, shareholders and overhaul their current and society are met governance initiatives • Access to textbooks and real-life case studies • Tiered certification Fee: dependent on your experience £1690 Price: Benefits to your business: Dependent. Contact the GRC For more details: • Broad, systematic Group for more information. awareness of how a email@grcg.com corporate governance +1 212 626 9016 model operates • Opportunity to measure and improve internal governance ISO 9001:2015 11
5. Best for lean Lean techniques are as powerful for quality professionals now as when they were introduced in the mid- 1980s. But a 2018 Qualsys survey found only around a third of quality and GRC professionals are actively applying approaches like Lean Six Sigma in their business. Six Sigma DMAIC methodology remains a hugely influential “Six Sigma is a real laser-focused tool for model for examining, getting at the root cause. restructuring and optimising business What’s interesting about the power of Six Sigma processes to achieve is you get the best of both worlds: you get the maximised efficiency and waste elimination and the cycle time reduction customer satisfaction. of process flow improvements, and you get the variation reduction and defect elimination. ASQ’s Black Belt course gives delegates the knowledge to become It’s a powerful, powerful toolkit.” Lean Six Sigma experts, able to execute lean tactics, coach and coordinate project teams, and deliver tangible business results. Chad Smith Lean Six Sigma Master Black Belt ASQ
“Lean Six Sigma is a data-driven Lean Six Sigma Black Belt approach to removing waste and reducing Overview How it works: Managing risk fordefects. variation and • Complete the web-based competitive advantage Lean Six Sigma Black Belt Understanding the certification is one of the training modules at your own pace (approx. 136 hours value stream, the Overview highest levels of Six Sigma total) process flow, and competence, second only to • Mixture of text, video, audio, Whenhow non-value- you have a robust risk Master Black Belt (MBB). simulations and quizzes to management process, added steps your can be help engrain learning business becomes more eliminated is one of Black Belt certification • Once you’ve completed proactive, pre-emptive the most valuableand demonstrates your ability to the course, apply for the resilient. understand and communicate contributions a GRC ASQ Six Sigma Black Belt L6S techniques such as DMAIC, professional can make This workshop challenges your and apply a range of process certification exam to afrom business business. a strategic, improvement methods to your tactical and operational level. business operation. We often hear Who it’s for: Topicsabout quality and covered: Individual benefits: GRC teams being • Anyone looking to become a • ISO 31000 risk methodology overlooked by top Lean Six Sigma Black Belt • Risk-based thinking training management. • Knowledge of the full gamut of L6S techniques and how • Quality and GRC professionals looking to Benefits: they relate to your business Applying lean examine and improve their operation processes to get • Inspiration and ideas • Coaching in the various business processes through a comprehensive model to results upgradeisyour onerisk of concepts of L6S and the best ways to management process process improvement get management • Expert competence in lean What attention you get: and make methodology, from building a team to integrating your mark.” Price: • Risk audit/gap analysis Voice of the Customer and • Risk-based thinking training Kate Armitage mapping and measuring ASQ members can complete the • EQMS for risk management Compliance Director processes course for $2790 (£2185). workshop Qualsys • 19% salary increase (on average) over Green Belt Non-members can complete Who this is for: professionals the course for $3100 (£2400). Businesses using EQMS Standard professional ASQ and want to utilise its risk Benefits to your business: management tools. membership costs $169 (£130) a year. • Opportunity to examine business processes with a view to optimising them with a tried and tested operational model Fee: • Competence to implement efficient, lean processes £1690 that satisfy customers while minimising costs and defects • Practical application For more details: of tools and techniques to measure business help@asq.org performance: SIPOC +1 414 272 857 mapping, MSA graphing, 5 Whys, root cause analysis, and so on ISO 9001:2015 13
6. Best for building a quality strategy The Chartered Quality Institute is the chartered body for quality professionals, which celebrated its 100 birthday in 2019. The CQI contributes to policy decisions at a national level, and provides a range of training, certification “Responding to a new normal post-COVID and resources for its ought to be occupying the minds of the quality members. profession and business leaders alike. Its 40-hour ‘Leading If we are to assume that there is no going back Quality Strategy and to normal, business management systems and Planning’ course is quality processes cannot expect to continue as designed to hone the before. skills of a quality and GRC leader - from product and service Organisations and their ecosystems are likely management to to change irreversibly from the COVID-19 deploying teams, policies outbreak, and quality must be leading that and procedures for change.” maximum effect. Alexander Woods Policy Manager CQI
“Perhaps more than any other year, Leading Quality Strategy 2020 is the year for & Planning businesses to take Managing riskchart stock and for a new Overview How it works: competitive course foradvantage the future after the COVID-19 Product and service portfolio pandemic. Overview • Complete the 40-hour face- management. Process review. to-face classroom course Coaching and support. Risk WhenA well-built you and risk have a robust well- • Complete a 2.5-hour management. management process, your multiple-choice exam led quality strategy business becomes is crucial more for turning GRC and quality leaders need proactive, pre-emptive and all these skills and more. This the confusion and resilient. CQI course is designed to chaos of this year Who it’s for: transform GRC professionals around into proactive, This workshop challenges your into effective strategy builders • GRC professionals with positive, business from a long-term strategic, and executors. managerial, strategic quality improvement. tactical and operational level. and/or operational Individual benefits: TopicsThe fact the CQI has covered: responsibilities • Any GRC professional dedicated an entire • Learn how to manage • ISO 31000 risk methodology aspiring to a leadership role 40-hour course to and combine the various • Risk-based elements of a modern • New quality managers, or planningthinking training and leading those looking to build on a quality strategy quality strategy Benefits: existing experience makes it my first pick • Understand the context • GRC and quality leaders your business operates in, • for this category.” Inspiration and ideas looking to build a new long- and how to build and lead to upgrade your risk term strategy an effective long-term management process strategy that matches it Kate Armitage • Learn how to apply SWOT, Compliance Director What you get: FMEA, arrow and tree Qualsys diagrams, interrelationship • Risk audit/gap analysis Price: diagraphs and other core • Risk-based thinking training strategic tools Dependent. Contact the CQI for • EQMS for risk management more information. workshop Benefits to your business: Who this is for: • Build a cogent, integrated long-term quality strategy Businesses using EQMS that matches and supports and want to utilise its risk your top-line objectives management tools. • Engage your entire business with quality with effective leadership and coaching • Deploy your business resources effectively to manage risk, grow Fee: competitive advantage, and build a quality-first culture £1690 For more details: training@quality.org +44 (0)20 7245 8606 ISO 9001:2015 15
7. Best for information security As the name suggests, IT Governance focuses strictly on helping GRC professionals improve how information is governed and controlled in their business. Certified Information Systems Security “Regulatory pressures, an increasing reliance Professional (CISSP) certification is on technology and big data, and the evolving designed to provide threat environment place significant a comprehensive and obligations on organisations to reduce their practical competence cyber risks. of the full spectrum of information security, Cyber security affects all companies of all sizes by guiding delegates in all sectors. Threats are serious and evolving, through all 8 domains and legal and regulatory requirements are of the Common Body of growing. Knowledge (CBK). No longer relegated to the desk of the CIO, cyber The CBK is a comprehensive security has now found its rightful place: front model of information and centre in the boardroom.” security developed by the International Information Systems Security Certification Consortium, (ISC)². “12 cyber security questions to ask your CISO” A guide by IT Governance
“Qualsys’ journey to ISO 27001 Certified Information certification with zero Systems Security non-conformances Professional (CISSP) Managing in 2019 risk for reinforced Accelerated competitive to me how advantage critical information security Overview How it works: is for building trust Overview and assurance for The (ISC)2’s Common Body • 5-day training course Whenyour brand. you have a robust risk of Knowledge can be applied covering all 8 domains of the management process, your to the entirety of modern CBK, face-to-face or online business becomes more IT Governance information security, from • Once complete, apply to proactive, pre-emptive provides and complete the GDPR to BS 10012 and ISO take the (ISC)² CISSP exam resilient. focus on this key area 27001. at an official exam centre of GRC - their CISSP This workshop challenges your • Complete the 6-hour, From risk management to 250-question multiple choice course business fromis a perfect strategic, asset security and testing, and advance innovative for anyone aspiring tactical and operational level. the CISSP course proves you question exam with a 70% to a senior security understand and can apply score or higher to pass Topicsposition covered: such as CISO. the CBK as a competent, well- • Once you’ve accrued at rounded information security least 5 years of paid work • ISO 31000 risk Having solidmethodology professional. experience in at least 2 • Risk-based thinking information training security of the 8 areas of the CBK, credentials on your Individual benefits: you’ll receive your CISSP Benefits: CV is only going certification to become more • Inspiration and ideas • Knowledge of all 8 domains of the CBK: security to impressive upgrade youras more risk and risk management, Who it’s for: and more businesses management process asset security, security start to think about architecture & engineering, • Chief Information Security What their information you get: communication & network Officers governance. ” security, identity & access • Chief Security Officers • Risk audit/gap analysis management (IAM), • Senior Security Engineers • Risk-based thinking training security assessment and • Security Consultants • EQMS Katefor risk management Armitage testing, security operations, • Security Managers workshop Compliance Director software development • Security Auditors/Analysts Qualsys security • Security Directors Who this is for: • Free copy of the (ISC)2 • Security/Network Architects CISSP textbook • IT Directors/Managers Businesses using EQMS • Security Systems Engineers and want to utilise its risk Benefits to your business: management tools. • Well-rounded, comprehensive internal Price: knowledge of the information security £1995 + VAT discipline Fee: • Ability to assess, treat and improve how information is £1690 governed and controlled For more details: servicecentre@ itgovernance.co.uk +44 (0)333 800 7000 ISO 9001:2015 17
You can also read