Risk Management for Organisations
This course develops both theoretical knowledge and practical competence in cybersecurity risk management for organisations. Students will build a solid grounding in risk management principles and strategies, gain familiarity with key industry standards and frameworks.
Instructor

Mikael Asplund
Associate Professor
Language
English, Svenska
Learning Objectives
- · Critically evaluate and apply cybersecurity risk management frameworks, methodologies, and standards to organisational contexts
- · Conduct a basic but structured risk assessment using appropriate tools, identifying and categorising threats, vulnerabilities, and their potential organisational impact
- · Select and justify suitable risk treatment strategies for identified risks, considering organisational priorities and risk appetite
- · Analyse and assess the cybersecurity risk of a real or realistic organisation, synthesising findings into a coherent risk management output
- · Communicate and present risk management findings clearly and effectively, demonstrating the ability to justify conclusions and respond to scrutiny
Prerequisites
- No strict technical prerequisites, but trainees should have some knowledge of the business context, and interest in identifying and managing cybersecurity risk in their own organisation.
Topics dealt with
FundamentalsGRC, Legal & Privacy
Modules

Build your expertise
This course is part of the following learning pathways: SME Cybersecurity Responsible
Cybersecurity skills are not built in a single session. Following a structured learning pathway helps you develop a complete and consistent skill set: step by step, at your own pace.

Not sure where to start?
Learn how the Cycerone portal works, how courses and learning pathways are organized, and how to find the training opportunities that best match your needs.

