logo-img
CCISO training - Certified Chief Information Security Officer

CCISO training - Certified Chief Information Security Officer

5 days + 365 days of online support via the MyTSTC learning platform Classroom MyTSTC

Sharpest price in just 2 steps

Requesting more information and/or the current price of this training is easy. We take into account any ongoing promotions, subsidies, or relationship discounts.

Description

The C|CISO program is the first internationally recognized certification that demonstrates your skills in both the development and execution of a (risk-based) information security management strategy that aligns with organizational goals. C|CISO provides leaders in information security with the most effective and up-to-date tools to defend organizations against cyberattacks. Since the new version 4, there has also been a lot of focus on current AI developments in areas such as audits, risk management, vendor assessment, awareness campaigns, and budgeting. 

CISOs are expected more than ever to be able to combine technical knowledge and experience with the ability to translate this into business value. C|CISOs understand that their decisions regarding information security have a direct impact on, for example, the operational costs, efficiency, and flexibility of the entire organization. In a continuously changing technical environment, C|CISOs are responsible for the development and communication of a solid strategy that can identify and mitigate potential new risks for the organization. 

The C|CISO training concludes with an interactive wargame/crisis simulation in which a cyber incident is simulated and the handling of it from a CISO perspective within a (fictional) organization. In the simulation, the knowledge gained in the training is brought to life in a recognizable way. 

EC-Council’s C|CISO program has certified CISOs worldwide, with a core group of high-level executives, the C|CISO advisory board, contributing to the composition and updating of the program, the exam, body of knowledge, and training. Each component of the program has been developed with the incoming or existing CISO in mind and aims to transfer the knowledge of experienced professionals in the areas that are most important for developing and maintaining a successful information security policy.

C|CISO v4

The latest C|CISO version 4 includes expansions in the areas of:

  • AI-driven cybersecurity leadership & strategy
  • The necessary social skills, emotional and cultural intelligence for effective, global leadership
  • AI risk management in line with the NIST AI RMF and the EU AI Act
  • Executive leadership & influence on and from the board of directors
  • Vendor and Contract Management
  • Strategic Planning
  • Current developments highlighted from a CISO perspective in the areas of AI-driven audits, AI personalized awareness campaigns, the integration of AI in risk management, SOC Automation, and much more.

Working method

In preparation for the classroom C|CISO training, you will receive the corresponding study materials by post after registration, along with one year of access to our exclusive MyTSTC learning platform. During the subsequent self-study period, you can note specific questions for the classroom training and gain knowledge in areas you have had little practical experience with. On MyTSTC, you will take an assessment test after which you will receive tailored additional preparatory videos and other study materials (if necessary based on the test). Furthermore, you will familiarize yourself in this phase with the help of a self-study module on the case that will be addressed in the concluding cyber wargame/crisis simulation. 

In the training, the five C|CISO domains are covered in detail, with an emphasis on their practical application in the CISO role. Additionally, you will be specifically prepared for the corresponding scenario-based exam, which you can schedule with us at a time of your choice after the training, provided you have the necessary work experience for this. If you do not have this experience yet, it is usually possible to take the alternative Associate C|CISO exam.

After the training, you will receive further online guidance via MyTSTC, where you can also practice with test questions for the exam. Finally, we offer you the opportunity to attend the training again free of charge within a year, for example, if you fail the exam or seek additional help with it (not applicable to in-company training). 

Certification

Under certain conditions, this training can be completed with the included C|CISO or Associate C|CISO exam. The C|CISO exam lasts 2.5 hours and consists of 250 scenario-based multiple-choice questions. The Associate C|CISO exam lasts 2 hours and consists of 150 regular multiple-choice questions.

Training Requirements

  • Voor wie is de CCISO training geschikt?
  • De C|CISO training is interessant voor cursisten met diverse achtergronden en persoonlijke doelen maar met name bedoeld voor aankomende of zittende upper-level managers die de CISO rol vervullen of nastreven.
  • GRC, Risk en Compliance Managers
  • Security Managers / Architecten
  • Consultants die rechtstreeks bestuursleden adviseren of dit willen gaan doen.

Training Content

De 5-daagse CCISO training is een uitgebreide voorbereiding op het C|CISO of Associate C|CISO examen (afhankelijk van uw werkervaring) waarin deelnemers worden getoetst op hun kennis in onderstaande vijf C|CISO praktijkgebieden/domeinen:

● Governance; Risk Management; Security, Compliance and Privacy; and Audit Management  
● Organizational Executive Leadership
● Information Security Controls, Security
● Program Management & Operations
● Information Security Core Competencies
● Strategic Planning, Finance, Procurement and Vendor Management

● Design and Implement strategic security programs across enterprises
● Build and manage governance structure and hierarchy
● Enterprise-wide security programmes and architectures
● Modern Cybersecurity Leadership with AI driven innovation

● Threat, vulnerability and risk assessment frameworks (ISO 27005, NIST)
● Global compliance: GDPR, HIPAA, SOX, PCI DSS, EU AI Act
● Security frameworks: NIST CSF, ISO 27001, COBIT, MITRE ATT&CK, Zero trust
● Establish and manage audit programs with AI-driven auditing

● Integrate AI into risk management and predictive modeling
● Embed fairness, accountability, and transparency in AI adoption
● AI-powered predictive budgeting and forecasting
● AI and NLP tools for automated contract analysis and vendor scoring

● Emotional, social and cultural intelligence for global leadership
● Lead inclusive, cross-functional cybersecurity teams
● Succession planning, talent development and mentoring
● AI ethics and governance board participation

● CAPEX vs OPEX strategies and cost-benefit analysis
● Vendor management: SLA, MSA and contract lifecycle management
● Third-party risk and AI-driven SLA breach detection
● Procurement strategies with AI-powered vendor scoring

● Security architecture voor AI/ML pipelines, API's and SOC automation
● Integrate AI into SIEM/SOAR and SOC operations
● Incident response, digital forensics and AI-driven threat intelligence
● Performance measurement with KPIs and security metrics

● Secure SDLC, DevSecOps and application security testing (SAST, DAST, IAST)
● Enterprise architecture frameworks (TOGAF, Zachman, SABSA, FEAF)
● AI-driven traceability and secure AI/ML pipeline architecture
● Cryptography, encryption, hashing and PKI management

● Build effective crisis communication strategies
● AI-personalized security awareness campaigns
● Build organizational security culture and influence behaviours
● Privacy impact assessments and global data protection compliance

Description

The C|CISO program is the first internationally recognized certification that demonstrates your skills in both the development and execution of a (risk-based) information security management strategy that aligns with organizational goals. C|CISO provides leaders in information security with the most effective and up-to-date tools to defend organizations against cyberattacks. Since the new version 4, there has also been a lot of focus on current AI developments in areas such as audits, risk management, vendor assessment, awareness campaigns, and budgeting. 

CISOs are expected more than ever to be able to combine technical knowledge and experience with the ability to translate this into business value. C|CISOs understand that their decisions regarding information security have a direct impact on, for example, the operational costs, efficiency, and flexibility of the entire organization. In a continuously changing technical environment, C|CISOs are responsible for the development and communication of a solid strategy that can identify and mitigate potential new risks for the organization. 

The C|CISO training concludes with an interactive wargame/crisis simulation in which a cyber incident is simulated and the handling of it from a CISO perspective within a (fictional) organization. In the simulation, the knowledge gained in the training is brought to life in a recognizable way. 

EC-Council’s C|CISO program has certified CISOs worldwide, with a core group of high-level executives, the C|CISO advisory board, contributing to the composition and updating of the program, the exam, body of knowledge, and training. Each component of the program has been developed with the incoming or existing CISO in mind and aims to transfer the knowledge of experienced professionals in the areas that are most important for developing and maintaining a successful information security policy.

C|CISO v4

The latest C|CISO version 4 includes expansions in the areas of:

  • AI-driven cybersecurity leadership & strategy
  • The necessary social skills, emotional and cultural intelligence for effective, global leadership
  • AI risk management in line with the NIST AI RMF and the EU AI Act
  • Executive leadership & influence on and from the board of directors
  • Vendor and Contract Management
  • Strategic Planning
  • Current developments highlighted from a CISO perspective in the areas of AI-driven audits, AI personalized awareness campaigns, the integration of AI in risk management, SOC Automation, and much more.

Working method

In preparation for the classroom C|CISO training, you will receive the corresponding study materials by post after registration, along with one year of access to our exclusive MyTSTC learning platform. During the subsequent self-study period, you can note specific questions for the classroom training and gain knowledge in areas you have had little practical experience with. On MyTSTC, you will take an assessment test after which you will receive tailored additional preparatory videos and other study materials (if necessary based on the test). Furthermore, you will familiarize yourself in this phase with the help of a self-study module on the case that will be addressed in the concluding cyber wargame/crisis simulation. 

In the training, the five C|CISO domains are covered in detail, with an emphasis on their practical application in the CISO role. Additionally, you will be specifically prepared for the corresponding scenario-based exam, which you can schedule with us at a time of your choice after the training, provided you have the necessary work experience for this. If you do not have this experience yet, it is usually possible to take the alternative Associate C|CISO exam.

After the training, you will receive further online guidance via MyTSTC, where you can also practice with test questions for the exam. Finally, we offer you the opportunity to attend the training again free of charge within a year, for example, if you fail the exam or seek additional help with it (not applicable to in-company training). 

Certification

Under certain conditions, this training can be completed with the included C|CISO or Associate C|CISO exam. The C|CISO exam lasts 2.5 hours and consists of 250 scenario-based multiple-choice questions. The Associate C|CISO exam lasts 2 hours and consists of 150 regular multiple-choice questions.

Training Requirements

  • Voor wie is de CCISO training geschikt?
  • De C|CISO training is interessant voor cursisten met diverse achtergronden en persoonlijke doelen maar met name bedoeld voor aankomende of zittende upper-level managers die de CISO rol vervullen of nastreven.
  • GRC, Risk en Compliance Managers
  • Security Managers / Architecten
  • Consultants die rechtstreeks bestuursleden adviseren of dit willen gaan doen.

Training Content

De 5-daagse CCISO training is een uitgebreide voorbereiding op het C|CISO of Associate C|CISO examen (afhankelijk van uw werkervaring) waarin deelnemers worden getoetst op hun kennis in onderstaande vijf C|CISO praktijkgebieden/domeinen:

● Governance; Risk Management; Security, Compliance and Privacy; and Audit Management  
● Organizational Executive Leadership
● Information Security Controls, Security
● Program Management & Operations
● Information Security Core Competencies
● Strategic Planning, Finance, Procurement and Vendor Management

● Design and Implement strategic security programs across enterprises
● Build and manage governance structure and hierarchy
● Enterprise-wide security programmes and architectures
● Modern Cybersecurity Leadership with AI driven innovation

● Threat, vulnerability and risk assessment frameworks (ISO 27005, NIST)
● Global compliance: GDPR, HIPAA, SOX, PCI DSS, EU AI Act
● Security frameworks: NIST CSF, ISO 27001, COBIT, MITRE ATT&CK, Zero trust
● Establish and manage audit programs with AI-driven auditing

● Integrate AI into risk management and predictive modeling
● Embed fairness, accountability, and transparency in AI adoption
● AI-powered predictive budgeting and forecasting
● AI and NLP tools for automated contract analysis and vendor scoring

● Emotional, social and cultural intelligence for global leadership
● Lead inclusive, cross-functional cybersecurity teams
● Succession planning, talent development and mentoring
● AI ethics and governance board participation

● CAPEX vs OPEX strategies and cost-benefit analysis
● Vendor management: SLA, MSA and contract lifecycle management
● Third-party risk and AI-driven SLA breach detection
● Procurement strategies with AI-powered vendor scoring

● Security architecture voor AI/ML pipelines, API's and SOC automation
● Integrate AI into SIEM/SOAR and SOC operations
● Incident response, digital forensics and AI-driven threat intelligence
● Performance measurement with KPIs and security metrics

● Secure SDLC, DevSecOps and application security testing (SAST, DAST, IAST)
● Enterprise architecture frameworks (TOGAF, Zachman, SABSA, FEAF)
● AI-driven traceability and secure AI/ML pipeline architecture
● Cryptography, encryption, hashing and PKI management

● Build effective crisis communication strategies
● AI-personalized security awareness campaigns
● Build organizational security culture and influence behaviours
● Privacy impact assessments and global data protection compliance

shape

I am taking this next step in my lifelong learning journey.

1

Applicant Information

2

Billing Information

What Can I Learn After The CCISO training - Certified Chief Information Security Officer?

  • Understanding the fundamentals of information security governance and aligning them with organizational objectives.
  • Developing and managing enterprise-wide security programs and architectures.
  • Working with threat, vulnerability, and risk assessment frameworks such as ISO 27005 and NIST.
  • Setting up and managing audit programs using GRC tools and AI-driven auditing.
  • Anchoring fairness, accountability, and transparency in AI adoption.
  • Applying leadership principles, including executive presence, board communication, and stakeholder management.
  • Applying succession planning, talent development, and mentoring within cybersecurity leadership.
  • Budgeting, financial planning, and ROI calculations for cybersecurity investments.
  • Designing and implementing strategic security programs at the enterprise level.
  • Addressing modern cybersecurity leadership challenges by combining technical expertise, executive strategy, and AI-driven innovation.
  • Interpreting and translating global compliance and regulatory requirements (GDPR, HIPAA, SOX, PCI DSS, DPDP Act, EU AI Act) into policy.
  • Defining the evolving role of the CISO in the AI era and deploying AI responsibly.
  • Applying AI-driven predictive budgeting and forecasting within cybersecurity programs.
  • Leveraging emotional, social, and cultural intelligence for effective leadership within international organizations.
  • Shaping ethical and responsible leadership, including AI ethics and participation in governance boards.
  • Establishing and managing an effective governance structure and hierarchy within a security organization.
  • Applying the basic principles of risk management, including qualitative and quantitative risk analysis.
  • Applying security frameworks and standards such as NIST CSF, ISO 27001, COBIT, MITRE ATT&CK, and Zero Trust.
  • Integrating AI in risk management, predictive modeling, and compliance monitoring.
  • Using AI and NLP tools for automated contract analysis and vendor scoring.
  • Effectively leading inclusive, cross-functional, and virtual cybersecurity teams.
  • Demonstrating resilience and adaptability as a cybersecurity leader in uncertain and complex environments.

Schedules

This training is scheduled as follows in the coming period. Missing a date? Feel free to contact us.

Date: 29 juni - 3 juli 2026

Location: TSTC Veenendaal - Klassikaal & Live Online

Date: 28 september - 2 oktober 2026

Location: TSTC Veenendaal - Klassikaal & Live Online

Date: 30 november - 4 december 2026

Location: TSTC Veenendaal - Klassikaal & Live Online

1

Applicant Information

2

Billing Information

Shape

Frequently Asked Questions

Yes, the C|CISO certification is an internationally recognized certification from EC-Council. The training is offered in a large number of countries. The domains are mapped to the NICE Workforce Framework for Cybersecurity. The certification is accredited under the ANAB standards of ANSI and also meets the requirements of the UK's Government Communication Headquarters (GCQH) Certified Training, for example.

In principle, anyone can attend the training. However, there are conditions attached to participating in the exam.

To complete the training with the C|CISO exam, you must have at least five years of experience in at least 3 of the 5 C|CISO domains. If you have at least two years of experience in at least 1 C|CISO domain, you are eligible for the derived Associate C|CISO exam, which allows you to obtain the Associate C|CISO certification.

C|CISO is about the modern notion that there should be someone at the C-level in an organization who is ultimately responsible for the issue of (cyber)security. This person must have sufficient knowledge of potential risks and vulnerabilities but must also be able to translate these into business terms. Additionally, the CISO is the point of contact within an organization during incidents and the one who makes tactical/strategic decisions based on risk analyses. The domains specifically align with these tasks and responsibilities, including their substantive content. The main difference with the CISM training/certification is the position in the organization for which the training is designed. The CISM is hierarchically lower and therefore does not directly hold responsibility to the management/board, whereas the CISO does or is even part of it. Elements such as (security) budgeting, board communication, strategic planning, and the focus on ultimate responsibility are thus specific C|CISO topics and are much less or not addressed in CISM.

I am taking this next step in my lifelong learning journey.

1

Applicant Information

2

Billing Information

Why experienced professionals choose TSTC for their studies

Train smarter, not harder. TSTC's unique approach guarantees the effective acquisition of skills and the greatest chance of success.

Learn more about TSTC
Toucan Rhino