Professional Training & Certification (PECB)
Upskill your teams and certify them against demanding international standards.
PECB examination centre & official training
- Official PECB programmes delivered by accredited trainers
- Course materials and practice papers provided to every participant
- Examination arranged at the end of the session, on site or online under proctoring
- PECB certificate issued once the examination is passed and the required professional experience is validated
A certification does not replace experience: it evidences it. It shows that your teams know a recognised framework and can apply it. Corevia Technologie delivers the official PECB courses and arranges the examinations, from Foundation level through to the Lead Implementer and Lead Auditor qualifications. Sessions are run by consultants who carry out implementation and audit assignments themselves, so the case studies are drawn from real engagements.
The PECB partnership means the official programmes are delivered and the examinations arranged in direct continuity with the course: participants do not have to go through a third party to get certified.
Our services
Certification course catalogue
Information security & continuity
The core ISO 27000 frameworks and business continuity: from first contact with the standard through to leading certification audits.
- ISO/IEC 27001Foundation
Foundation
Understand the structure of the standard, the vocabulary of information security and the stages of a management system (ISMS) before committing to a certification project.
- Duration
- 2 days
- Audience
- Project managers, quality officers, IT staff and future members of an ISMS team.
- Place the requirements of clauses 4 to 10 and the role of Annex A
- Identify the stakeholders and deliverables of an ISMS project
- Read an audit report and understand the findings raised
- Prepare for and sit the PECB Foundation examination
- ISO/IEC 27001Lead Implementer
Lead Implementer
Run an implementation project end to end: scope definition, risk assessment, selection of Annex A controls and preparation for the certification audit.
- Duration
- 5 days
- Audience
- CISOs, compliance managers, consultants and project managers tasked with deploying an ISMS.
- Define a defensible scope and statement of applicability
- Carry out risk assessment and risk treatment
- Build the document set a certification body expects
- Steer the management review and continual improvement
- ISO/IEC 27001Lead Auditor
Lead Auditor
Master the conduct of a certification audit along ISO 19011 principles: audit programme, interview techniques, evidence gathering and writing up findings.
- Duration
- 5 days
- Audience
- Internal and external auditors, audit managers and consultants working on ISMS engagements.
- Plan an audit and write a plan proportionate to the scope
- Gather audit evidence and classify non-conformities
- Lead interviews and the closing meeting
- Write a report the audited management can act on
- ISO/IEC 27005Manager
Risk Manager
Apply the information security risk assessment and treatment process in line with the requirements of ISO/IEC 27001.
- Duration
- 3 days
- Audience
- Risk managers, CISOs, auditors and consultants responsible for risk assessment.
- Select an assessment method suited to the context
- Identify assets, threats, vulnerabilities and risk scenarios
- Evaluate likelihood and impact, then decide on treatment
- Document residual risks and their formal acceptance
- ISO 22301Lead Implementer
Lead Implementer
Implement a business continuity management system: business impact analysis, continuity strategies, recovery plans and test exercises.
- Duration
- 5 days
- Audience
- Business continuity managers, risk managers, operations and production leadership.
- Run a business impact analysis (BIA) and set RTOs / RPOs
- Define continuity strategies proportionate to what is at stake
- Write business continuity and disaster recovery plans
- Organise test exercises and act on what they reveal
Artificial intelligence & emerging technologies
ISO/IEC 42001, the first management standard for artificial intelligence, to govern AI use without stalling projects.
- ISO/IEC 42001Foundation
Foundation
Discover the management standard for artificial intelligence: requirements, vocabulary and how it fits with the data governance already in place.
- Duration
- 2 days
- Audience
- Business leaders, data managers, legal teams and project teams dealing with AI use cases.
- Understand the structure of an AI management system (AIMS)
- Distinguish the roles of AI provider, developer and user
- Spot the risks specific to AI: bias, explainability, model drift
- Prepare for and sit the PECB Foundation examination
- ISO/IEC 42001Lead Implementer
Lead Implementer
Deploy an artificial intelligence management system: AI system inventory, impact assessment, controls and in-production monitoring.
- Duration
- 5 days
- Audience
- Compliance managers, CISOs, data governance leads and AI project managers.
- Frame the scope and the acceptable-use policy for AI
- Carry out an AI system impact assessment
- Put controls in place across the model lifecycle
- Connect the AIMS with an ISO/IEC 27001 ISMS and GDPR obligations
- ISO/IEC 42001Lead Auditor
Lead Auditor
Audit an artificial intelligence management system along ISO 19011 principles, including the control points specific to models and datasets.
- Duration
- 5 days
- Audience
- Internal and external auditors, consultants and quality managers called on to audit AI use.
- Build an audit programme covering data, models and use cases
- Gather evidence on traceability and human oversight
- Classify non-conformities tied to AI-specific risks
- Report findings that both technical and business teams can understand
Governance, quality & data protection
Personal data protection, quality, risk management and anti-bribery: the frameworks your clients and auditors check.
- RGPD / GDPRSpecialist
Certified Data Protection Officer (DPO)
Take on the data protection officer role: records of processing, impact assessments, data subject requests and dealings with the supervisory authority.
- Duration
- 5 days
- Audience
- Appointed or prospective DPOs, legal counsel, compliance managers and CISOs.
- Maintain records of processing and establish lawful bases
- Carry out a data protection impact assessment (DPIA)
- Handle data subject requests and personal data breaches
- Reconcile GDPR requirements with Morocco's law 09-08
- ISO 9001Lead Auditor
Lead Auditor
Audit a quality management system along ISO 19011 principles: preparation, on-site conduct, assessment of the process approach and of performance indicators.
- Duration
- 5 days
- Audience
- Quality managers, internal auditors, buyers responsible for supplier audits and consultants.
- Assess how processes and their interactions are controlled
- Verify customer focus and the handling of complaints
- Classify non-conformities, observations and improvement opportunities
- Run a supplier audit with the same rigour as an internal one
- ISO 31000Manager
Risk Manager
Deploy a risk management framework that applies across the whole organisation, not just the IT perimeter.
- Duration
- 3 days
- Audience
- Executive management, internal control, risk managers and heads of audit.
- Set up a risk management framework and process
- Align risk appetite with strategic objectives
- Facilitate risk identification and evaluation with business units
- Report the risk profile to the executive committee
- ISO 37001Lead Implementer
Lead Implementer
Implement an anti-bribery management system: risk mapping, third-party due diligence, financial controls and a whistleblowing channel.
- Duration
- 5 days
- Audience
- Legal and compliance functions, procurement managers and ethics officers.
- Map bribery risks by activity and by geography
- Define due diligence on third parties and intermediaries
- Set up the whistleblowing channel and how reports are handled
- Prepare internal controls and the management review
Delivery formats
In-house
A session dedicated to your teams, at your premises or ours. Exercises are built from your own context, processes and internal documents.
Open enrolment
Scheduled sessions bringing several organisations together. Suited to one or two participants, with peer exchange across different sectors.
Remote
Live virtual classroom with the trainer: the same programme, the same practical work and the same examination as on site.
A project, an audit, an emergency?
Describe your situation in a few lines. We come back within one business day with an initial read and the questions that matter.
