Skip to main content
Institute of Advanced Technological and Commercial Studies

Skills

Information security management

Governance, risk assessment, policy, treatment plan, indicators, audit: information security is steered like an executive function. This skill provides the standards framework and the vocabulary a board and an auditor expect.

Security as an executive function

A board arbitrates risks, not configurations. The skill consists in translating one into the other: start from a business asset, measure its exposure, propose a costed treatment and track it with indicators that speak to executives. Standards frameworks supply the shared grammar of that exchange, and audit supplies its proof. The programme teaches that chain, from the risk register to the dashboard presented in committee.

  • Maintain a risk register and rank it by business impact
  • Draft an applicable security policy and secure its adoption
  • Build a costed treatment plan and track its execution
  • Prepare for and support a compliance audit

What you command on completion

You carry an organisation's security policy before its leadership and demonstrate its application to an auditor. The statement below is a commitment: it is what the training makes you able to carry out.

teaching blocks
3

Catalogue rule: one credit is twenty-five hours of work, ten of them taught.

of taught instruction
360 h
credits in total
36
professional qualifications concerned
3

The blocks that build it

The skill is built block after block, in the order of the years. You see here exactly where it is taught, and for how many taught hours.

Teaching blockProgrammeTaught hoursYear
Governance, risk and complianceCybersecurity programme — Bac+5 level100 hYear 2
Security fundamentalsCybersecurity programme — Bac+5 level220 hYear 1
Data and sovereigntyDigital Transformation Certificate40 hYear 1

The roles that call for it

These professional qualifications target a named occupation. Their official framework carries this skill.

Professional qualificationTarget occupationLevelTaught volume
Chief Information Security OfficerCISO7 · Expert and executive700 h
Enterprise ArchitectIS architect7 · Expert and executive700 h
Compliance Managercompliance officer6 · Manager and professional750 h

Choosing your programme

The right choice depends on the time you have as much as on the level you target. Both appear here.

ProgrammeLevelDurationFees
Cybersecurity programme — Bac+5 levelMaster's degree2 years7 500 000 GNF per year
Digital Transformation CertificateProfessional certification6 months3 600 000 GNF in total

Three questions, three answers

Does this skill require a technical background?

It requires understanding systems, which the programme teaches in year one. The steering itself is management work: risk, policy, indicators and audit.

Are international standards covered?

Yes: the governance, risk and compliance block builds on the recognised security management standards and their audit requirements.

What level of responsibility does it lead to?

To level 7 of the framework, that of expert and executive: the information systems security manager qualification is prepared over 700 taught hours.

Information security management — Skills | IHETC — IHETC