Skip to main content
Corevia Technologie
05Training & certification

Professional Training & Certification (PECB)

Upskill your teams and certify them against demanding international standards.

PECB examination centre & official training

  • Official PECB programmes delivered by accredited trainers
  • Course materials and practice papers provided to every participant
  • Examination arranged at the end of the session, on site or online under proctoring
  • PECB certificate issued once the examination is passed and the required professional experience is validated

A certification does not replace experience: it evidences it. It shows that your teams know a recognised framework and can apply it. Corevia Technologie delivers the official PECB courses and arranges the examinations, from Foundation level through to the Lead Implementer and Lead Auditor qualifications. Sessions are run by consultants who carry out implementation and audit assignments themselves, so the case studies are drawn from real engagements.

The PECB partnership means the official programmes are delivered and the examinations arranged in direct continuity with the course: participants do not have to go through a third party to get certified.

Our services

Certification course catalogue

Information security & continuity

The core ISO 27000 frameworks and business continuity: from first contact with the standard through to leading certification audits.

  • ISO/IEC 27001Foundation

    Foundation

    Understand the structure of the standard, the vocabulary of information security and the stages of a management system (ISMS) before committing to a certification project.

    Duration
    2 days
    Audience
    Project managers, quality officers, IT staff and future members of an ISMS team.
    • Place the requirements of clauses 4 to 10 and the role of Annex A
    • Identify the stakeholders and deliverables of an ISMS project
    • Read an audit report and understand the findings raised
    • Prepare for and sit the PECB Foundation examination
  • ISO/IEC 27001Lead Implementer

    Lead Implementer

    Run an implementation project end to end: scope definition, risk assessment, selection of Annex A controls and preparation for the certification audit.

    Duration
    5 days
    Audience
    CISOs, compliance managers, consultants and project managers tasked with deploying an ISMS.
    • Define a defensible scope and statement of applicability
    • Carry out risk assessment and risk treatment
    • Build the document set a certification body expects
    • Steer the management review and continual improvement
  • ISO/IEC 27001Lead Auditor

    Lead Auditor

    Master the conduct of a certification audit along ISO 19011 principles: audit programme, interview techniques, evidence gathering and writing up findings.

    Duration
    5 days
    Audience
    Internal and external auditors, audit managers and consultants working on ISMS engagements.
    • Plan an audit and write a plan proportionate to the scope
    • Gather audit evidence and classify non-conformities
    • Lead interviews and the closing meeting
    • Write a report the audited management can act on
  • ISO/IEC 27005Manager

    Risk Manager

    Apply the information security risk assessment and treatment process in line with the requirements of ISO/IEC 27001.

    Duration
    3 days
    Audience
    Risk managers, CISOs, auditors and consultants responsible for risk assessment.
    • Select an assessment method suited to the context
    • Identify assets, threats, vulnerabilities and risk scenarios
    • Evaluate likelihood and impact, then decide on treatment
    • Document residual risks and their formal acceptance
  • ISO 22301Lead Implementer

    Lead Implementer

    Implement a business continuity management system: business impact analysis, continuity strategies, recovery plans and test exercises.

    Duration
    5 days
    Audience
    Business continuity managers, risk managers, operations and production leadership.
    • Run a business impact analysis (BIA) and set RTOs / RPOs
    • Define continuity strategies proportionate to what is at stake
    • Write business continuity and disaster recovery plans
    • Organise test exercises and act on what they reveal

Artificial intelligence & emerging technologies

ISO/IEC 42001, the first management standard for artificial intelligence, to govern AI use without stalling projects.

  • ISO/IEC 42001Foundation

    Foundation

    Discover the management standard for artificial intelligence: requirements, vocabulary and how it fits with the data governance already in place.

    Duration
    2 days
    Audience
    Business leaders, data managers, legal teams and project teams dealing with AI use cases.
    • Understand the structure of an AI management system (AIMS)
    • Distinguish the roles of AI provider, developer and user
    • Spot the risks specific to AI: bias, explainability, model drift
    • Prepare for and sit the PECB Foundation examination
  • ISO/IEC 42001Lead Implementer

    Lead Implementer

    Deploy an artificial intelligence management system: AI system inventory, impact assessment, controls and in-production monitoring.

    Duration
    5 days
    Audience
    Compliance managers, CISOs, data governance leads and AI project managers.
    • Frame the scope and the acceptable-use policy for AI
    • Carry out an AI system impact assessment
    • Put controls in place across the model lifecycle
    • Connect the AIMS with an ISO/IEC 27001 ISMS and GDPR obligations
  • ISO/IEC 42001Lead Auditor

    Lead Auditor

    Audit an artificial intelligence management system along ISO 19011 principles, including the control points specific to models and datasets.

    Duration
    5 days
    Audience
    Internal and external auditors, consultants and quality managers called on to audit AI use.
    • Build an audit programme covering data, models and use cases
    • Gather evidence on traceability and human oversight
    • Classify non-conformities tied to AI-specific risks
    • Report findings that both technical and business teams can understand

Governance, quality & data protection

Personal data protection, quality, risk management and anti-bribery: the frameworks your clients and auditors check.

  • RGPD / GDPRSpecialist

    Certified Data Protection Officer (DPO)

    Take on the data protection officer role: records of processing, impact assessments, data subject requests and dealings with the supervisory authority.

    Duration
    5 days
    Audience
    Appointed or prospective DPOs, legal counsel, compliance managers and CISOs.
    • Maintain records of processing and establish lawful bases
    • Carry out a data protection impact assessment (DPIA)
    • Handle data subject requests and personal data breaches
    • Reconcile GDPR requirements with Morocco's law 09-08
  • ISO 9001Lead Auditor

    Lead Auditor

    Audit a quality management system along ISO 19011 principles: preparation, on-site conduct, assessment of the process approach and of performance indicators.

    Duration
    5 days
    Audience
    Quality managers, internal auditors, buyers responsible for supplier audits and consultants.
    • Assess how processes and their interactions are controlled
    • Verify customer focus and the handling of complaints
    • Classify non-conformities, observations and improvement opportunities
    • Run a supplier audit with the same rigour as an internal one
  • ISO 31000Manager

    Risk Manager

    Deploy a risk management framework that applies across the whole organisation, not just the IT perimeter.

    Duration
    3 days
    Audience
    Executive management, internal control, risk managers and heads of audit.
    • Set up a risk management framework and process
    • Align risk appetite with strategic objectives
    • Facilitate risk identification and evaluation with business units
    • Report the risk profile to the executive committee
  • ISO 37001Lead Implementer

    Lead Implementer

    Implement an anti-bribery management system: risk mapping, third-party due diligence, financial controls and a whistleblowing channel.

    Duration
    5 days
    Audience
    Legal and compliance functions, procurement managers and ethics officers.
    • Map bribery risks by activity and by geography
    • Define due diligence on third parties and intermediaries
    • Set up the whistleblowing channel and how reports are handled
    • Prepare internal controls and the management review

Delivery formats

  • In-house

    A session dedicated to your teams, at your premises or ours. Exercises are built from your own context, processes and internal documents.

  • Open enrolment

    Scheduled sessions bringing several organisations together. Suited to one or two participants, with peer exchange across different sectors.

  • Remote

    Live virtual classroom with the trainer: the same programme, the same practical work and the same examination as on site.

A project, an audit, an emergency?

Describe your situation in a few lines. We come back within one business day with an initial read and the questions that matter.

contact@coreviatechnologie.com