Why should you attend?

The EBIOS Risk Manager training course provides participants with the comprehensive knowledge and competencies required to master information security risk management concepts and components using the EBIOS methodology, applied to all relevant organizational assets.

Through practical exercises and case studies, this training enables attendees to develop the skills necessary to conduct thorough information security risk assessments and implement effective, timely risk management processes within the framework of the risk management lifecycle. The course aligns closely with the implementation requirements of the ISO/IEC 27001 standard.

Upon mastering the EBIOS risk assessment concepts, participants may take the examination to qualify for the “PECB Certificate Holder in EBIOS Risk Manager” credential. Earning this certification demonstrates practical knowledge and professional ability to support organizations in performing risk assessments in accordance with the EBIOS method.

Who should attend?

  • Individuals seeking to learn and understand the basic concepts of Risk Management
  • Individuals participating in risk assessment activities using the EBIOS method
  • Managers seeking to understand the techniques for performing risk assessment based on the EBIOS method
  • Managers seeking to master the techniques for analyzing and communicating the results of a risk assessment based on the EBIOS method

Learning objectives

  • The training course enables participants to understand risk management concepts and the foundational principles of the EBIOS methodology.

  • Participants will learn to direct EBIOS study activities across key phases—such as pilot, control, and reframing—while acting in a supervisory role.

  • They will be able to interpret, articulate, and present the findings and key deliverables of an EBIOS assessment.

  • Attendees will acquire the practical competencies required to conduct a full EBIOS study effectively.

  • The course equips participants with the skills necessary to manage information security risks within an organization’s systems.

  • Finally, participants will develop the ability to analyze and clearly communicate the results of an EBIOS study to relevant stakeholders.

Educational approach

  • This training is based on both theory and best practices of risk assessment using the EBIOS method
  • Lecture sessions are illustrated with examples based on case studies
  • Practical exercises are based on case studies which include role playing and discussions
  • Practical exercises and examples are similar to the Certificate Exam

Related courses

Frequently asked questions

How long is the EBIOS Risk Manager course?

The course covers three days of content and carries 21 CPD credits. In the self-study format you cover the same material at your own pace.

Is the exam included in the price?

Yes. The course fee includes the PECB certification and examination fees. If you do not pass, one complimentary retake is available within 12 months of your first attempt.

Which formats and languages is EBIOS Risk Manager available in?

It is available as self-study (English, French) and hybrid learning (English). Choose the format and language before adding the course to your cart.

What is hybrid learning?

Hybrid learning combines the self-paced course with one day of one-to-one live coaching with the instructor. The day can be split into a half day before you start studying and a half day before your exam, so you go in prepared.

Is there a live class for EBIOS Risk Manager?

There is no scheduled live class for this course at the moment. The hybrid option adds one day of one-to-one live coaching with the instructor. Organizations that want a dedicated live session can contact us at [email protected].

Who issues the certificate?

PECB issues the certificate. After passing the exam you can apply for the “PECB EBIOS Risk Manager” credential. Horus Academy is a PECB Authorized Silver Partner and does not issue the certificate itself.

The “PECB EBIOS Risk Manager” exam fully meets the requirements of the PECB Examination and Certification Programme (ECP). The exam covers the following competency domains:

Domain 1: Fundamental principles and concepts of Information Security risk management process based on the EBIOS method

Domain 2: Information Security risk management framework based on the EBIOS method

Domain 3: Information Security risk assessment using the EBIOS method

For specific information about exam type, languages available, and other details, please visit the List of PECB Exams and the Examination Rules and Policies.

After successfully completing the exam, you can apply for the credential shown on the table below.

The certificate requirements for the EBIOS Risk Manager are:

Credential Exam Risk Management experience Other requirements
PECB Certified EBIOS Provisional Risk Manager PECB Certified EBIOS Risk Manager exam or equivalent None Signing the PECB Code of Ethics
PECB Certified EBIOS Risk Manager Confirmed PECB Certified EBIOS Risk Manager exam or equivalent • Follow an EBIOS Risk Manager training or have relevant professional experience of at least 2 years; and • Have followed a significant part of the EBIOS method in real conditions at least one in the three years preceding the certification request Signing the PECB Code of Ethics

 

To ensure validity, risk assessment activities must adhere to established best practices and encompass the following key components:

  • Establishing a formalized risk management framework.

  • Designing and deploying a comprehensive, organization-wide risk management process.

  • Defining clear and consistent risk evaluation criteria.

  • Conducting thorough risk assessments.

  • Systematically identifying assets, threats, existing controls, vulnerabilities, and potential consequences.

  • Assessing the severity of consequences and the likelihood of incidents.

  • Evaluating options for risk treatment and mitigation.

  • Conducting regular reviews of the risk management process to ensure its ongoing effectiveness.

  • The training course fee includes all associated certification and examination costs.

  • Participants will receive comprehensive training materials, comprising over 200 pages of instructional content and practical examples.

  • Attendees who complete the training will be awarded a certificate of course completion, valid for 21 Continuing Professional Development (CPD) credits.

  • Should a participant not pass the examination on the first attempt, one complimentary retake is available within a 12-month period.

Price range: CA$449.00 through CA$949.00
Clear
-
+

Course agenda

Day 1

  • Training course objectives and structure
  • Introduction to EBIOS RM method
  • Workshop 1 Scope and security baseline
  • Workshop 2 Risk origins

Day 2

  • Workshop 3 Strategic scenarios
  • Workshop 4 Operational scenarios
  • Workshop 5 Risk treatment
  • Closing of the training course

Day 3

  • Certificate exam