Home / Courses / Corporate Governance and Compliance (GRC) / COBIT® 2019 for Cybersecurity & GRC
Corporate Governance and Compliance (GRC)

COBIT® 2019 for Cybersecurity & GRC

COBIT® 2019 for Cybersecurity & GRC addresses the growing reality that cybersecurity risk and regulatory…

Code BII-GRC003 5-Day Dubai, Istanbul, London, Online Online + Classroom
Overview

Course Description

COBIT® 2019 for Cybersecurity & GRC addresses the growing reality that cybersecurity risk and regulatory compliance are now core governance priorities. As organizations increase their reliance on digital technologies, they face not only cyber threats but also fragmented controls, unclear accountability, and misalignment between cybersecurity initiatives and business objectives. These challenges often prevent cybersecurity and GRC efforts from delivering measurable value or sustainable risk reduction.

Aligned with the COBIT® 2019 framework by ISACA, this training course provides a structured approach to governing and managing enterprise IT with a strong focus on cybersecurity and GRC. COBIT® 2019 enables organizations to align cybersecurity strategy with enterprise goals, manage cyber risk within defined risk appetite, and support compliance through robust governance mechanisms.

The COBIT 2019 for Cybersecurity & GRC Training Course emphasizes practical application, guiding participants to design, assess, and strengthen cybersecurity governance, cyber risk management, and compliance oversight. It bridges technical cybersecurity controls and executive governance, helping organizations build a resilient, well-governed Cyber GRC capability.

Objectives

What you will achieve

COBIT® 2019 for Cybersecurity & GRC equips participants with the knowledge to apply governance principles to cybersecurity and compliance challenges. The training course focuses on translating COBIT® concepts into actionable Cyber GRC practices that support enterprise decision-making.

By the end of this training course, participants will be able to:

  • Apply COBIT® 2019 to cybersecurity governance and GRC initiatives
  • Align cybersecurity strategy with enterprise goals and defined risk appetite
  • Integrate cyber risk management into enterprise governance structures
  • Use COBIT® governance and management objectives to assess cyber controls
  • Support regulatory compliance through structured oversight mechanisms
  • Improve coordination between cybersecurity, risk, compliance, and audit
  • Measure, monitor, and report Cyber GRC performance effectively
Training methodology

How the course is delivered

COBIT® 2019 for Cybersecurity & GRC uses practical and interactive learning methods to ensure participants can confidently apply governance concepts in real-world environments. The training course combines structured instruction with applied learning to reinforce understanding of Cyber GRC integration.

Learning methods include instructor-led presentations to explain COBIT® principles and governance objectives, alongside cybersecurity and GRC-focused case studies that illustrate real organizational challenges. Participants engage in practical governance and risk mapping exercises to connect cyber risks with enterprise objectives. Group discussions and scenario-based analysis encourage shared learning and critical thinking. Framework integration workshops support hands-on alignment of COBIT® with ISO 27001, NIST CSF, and ITIL, ensuring practical skills that can be applied immediately after the training course.

Who should attend

Designed for

COBIT® 2019 for Cybersecurity & GRC is designed for professionals responsible for cybersecurity oversight, risk management, and compliance within complex organizational environments. The training course supports roles involved in governance decision-making, assurance, and cyber risk integration.

This training course is suitable for:

  • Cybersecurity managers and senior security professionals
  • Governance, Risk, and Compliance (GRC) specialists
  • CIOs, CISOs, and IT risk management professionals
  • Information security and SOC managers
  • Internal auditors and IT audit professionals
  • Risk, compliance, and regulatory affairs teams
  • Consultants working in cybersecurity, risk, and governance
Course outline

Daily programme

DAY 01Cybersecurity Governance in the Digital Enterprise
  • Evolution of cybersecurity as a governance issue
  • Cyber risk vs. traditional IT risk
  • Role of boards and executive management in cyber governance
  • Overview of COBIT® 2019 framework
  • Governance vs. management from a cybersecurity perspective
  • Positioning cybersecurity within enterprise governance
DAY 02COBIT 2019 Governance & Management Objectives for Cybersecurity
  • Overview of COBIT domains and objectives
  • Governance domain (EDM): cybersecurity oversight
  • Management domains and cyber relevance:
  • APO: strategy, risk, and policies
  • BAI: secure design and implementation
  • DSS: security operations and incident response
  • MEA: monitoring, assurance, and compliance
  • Selecting COBIT objectives for cybersecurity and GRC
DAY 03Cyber Risk Management and GRC Alignment
  • Understanding cyber risk appetite and tolerance
  • Using COBIT goals cascade for cyber risk alignment
  • Integrating cybersecurity with enterprise risk management (ERM)
  • Mapping cyber risks to governance objectives
  • Aligning compliance obligations with cyber controls
  • Roles and responsibilities in Cyber GRC
DAY 04Integrating COBIT with Cybersecurity Frameworks
  • COBIT and ISO 27001 alignment
  • COBIT and NIST Cybersecurity Framework integration
  • COBIT and ITIL for secure service management
  • Avoiding duplication and control overlap
  • Building a unified Cyber GRC model
  • Governance metrics and key risk indicators (KRIs)
DAY 05Monitoring, Assurance, and Continuous Improvement
  • Cybersecurity performance management using COBIT
  • Monitoring control effectiveness and maturity
  • Cybersecurity reporting to executives and boards
  • Role of internal audit and continuous assurance
  • Common Cyber GRC gaps and implementation challenges
  • Course review, governance roadmap, and next steps
Certificate

Certification & accreditation

BII Certificate of Completion

BII Certificate of Completion Upon successful completion, participants receive a BII Development Institute Certificate of Completion with a unique reference code that is independently verifiable. Our certificates are recognised internationally and reflect successful completion of your chosen programme.

Schedule

Upcoming sessions

DatesVenueFormatFee
28 Sep - 02 Oct 2026 Online Online US$ 4950 Register
12 - 16 Oct 2026 Istanbul Classroom US$ 4950 Register
19 - 23 Jul 2027 Dubai Classroom US$ 4950 Register
27 Sep - 01 Oct 2027 London Classroom US$ 4950 Register
Enrolment

Register, request in-house, or download the agenda

Choose an action and share your details — our team responds within one business day with dates, fees and the full programme.

Poster