NIS 2 Directive Lead Implementer
Training duration: 32 ac h (4 days).
Target audience:
- Cybersecurity professional seeking to gain a thorough understanding of the requirements of NIS 2 Directive and learn practical strategies to implement robust cybersecurity measures
- IT managers and professionals aiming to gain insights on implementing secure systems and improve the resilience of critical systems
- Government and regulatory officials responsible for enforcing the NIS 2 Directive
Prerequisites:The main requirements for participating in this training course are having a fundamental understanding of cybersecurity.
Contents of this training
The importance of robust cybersecurity measures cannot be overstated, as organizations are increasingly facing all types of cyberattacks. The NIS 2 Directive is a legislation that has been designed to strengthen the cybersecurity posture of critical infrastructure sectors, including energy, transport, healthcare, and digital services. The Certified NIS 2 Directive Lead Implementer training course enables participants to gain the necessary competencies to support organizations in effectively planning, implementing, managing, monitoring, and maintaining a cybersecurity program that meets the requirements of the NIS 2 Directive.
- The training course provides both theoretical concepts and practical examples regarding NIS 2 Directive requirements that will help you support organizations to meet the requirements of the directive.
- The training course contains essay-type exercises and multiple-choice quizzes, some of which are scenario-based.
- The participants are encouraged to interact with one another and engage in meaningful discussions when completing the quizzes and exercises.
- The structure of quizzes is similar to that of the certification exam.
After passing the exam, you can apply for the “PECB Certified NIS 2 Directive Lead Implementer” credential.
Trainer: PhD Andro Kull, certified ISO 27035 Lead Incident Manager
Specific course content will include
Day 1: Introduction to NIS 2 Directive and initiation of the NIS 2 Directive implementation
Day 2: Analysis of NIS 2 Directive compliance program, asset management, and risk management
Day 3: Cybersecurity controls, incident management, and crisis management
Day 4: Communication, testing, monitoring, and continual improvement in cybersecurity
The day after the training, it is possible to take the international certification exam (in English).
Intended outcome
The training course enables participants to gain the necessary competencies to support organizations in effectively planning, implementing, managing, monitoring, and maintaining a cybersecurity program that meets the requirements of the NIS 2 Directive.
Learning objectives
Upon successfully completing the training course, you will be able to:
- Explain the fundamental concepts of NIS 2 Directive and its requirements
- Obtain a thorough comprehension of the principles, strategies, methodologies, and tools necessary for implementing and efficiently managing a cybersecurity program in compliance with NIS 2 Directive
- Learn how to interpret and implement NIS 2 Directive requirements in the specific context of an organization
- Initiate and plan the implementation of NIS 2 Directive requirements, by utilizing PECB’s methodology and other best practices
- Acquire the necessary knowledge to support an organization in effectively planning, implementing, managing, monitoring, and maintaining a cybersecurity program in compliance with NIS 2 Directive
Conditions for completing the training: At the end of the training, the training center issues a Certificate to the person who has completed the training or an Attestation to the person who has participated the training. At the end of the training, a certificate is issued if at least 80% of each subject of the curriculum and other requirements arising from the training program (e.g. exam, accounting, practical work, etc.) have been completed. An attestation of participation is issued to a person if during the training the achievement of the learning outcomes was not assessed or if the person did not achieve all the learning outcomes required to complete the curriculum.
Examination
The day after the training, it is possible to take the international certification exam (in English).
The “PECB Certified NIS 2 Directive Lead Implementer” exam meets all the requirements of the PECB Examination and Certification Program (ECP). It covers the following competency domains:
Domain 1: Fundamental concepts and definitions of NIS 2 Directive
Domain 2: Planning of NIS 2 Directive requirements implementation
Domain 3: Cybersecurity roles and responsibilities and risk management
Domain 4: Cybersecurity controls, incident management, and crisis management
Domain 5: Communication and awareness
Domain 6: Testing and monitoring of a cybersecurity program
Candidates who have completed the training course but failed the exam are eligible to retake the exam once for free within a 12-month period from the initial date of the exam.
For specific information about the exam type, languages available, and other details, please visit the List of PECB Exams and Exam Rules and Policies.
Price includes:
- training;
- certification exam voucher;
- course materials;
- certification of attendance.
Continuing Education Curriculum Group: Interdisciplinary Information and Communication Technology Curriculum Group
Trainer
-
Andro Kull
Andro Kull during his career, has worked in both sectors, public and private. In the previous years he has worked for the financial sector with regards to IT and information security, and for the energy sector with regards to IT risks, where security and continuity demands are very high. Kull started his career as IT specialist and IT manager, and has worked extensively as IT auditor and as IT risk manager for one of the largest company in Estonia. At the same time, he founded a small consulting company and managed projects related to IT risk assessment, the implementation of security measures, business continuity planning (BC), planning for recovery (DR), and crisis management mostly in public sector organizations.
The international environment is not new to Andro Kull, since he has participated in the European Central Bank internet payment security working group. Kull has been cooperating with the IT banking supervisors on an international level. Furthermore, he has organized one international conference in Tallinn. In addition, he has worked for European Union DG Connect as advisor connected with IT risk management recommendations development.
Andro Kull holds a PhD degree from the University of Tampere, concentrating on the IT oversight and compliance verification methodologies, and he currently is lecturing IT risk and information security management issues at the University of Tallinn.