Description

Cybersecurity: Assessing Your Exposure, Setting Priorities and Building an Action Plan

Know where the organisation is vulnerable and decide which measures to take first

  • 2 days — 14 h
  • In-person or virtual
  • Foundation
  • Up to 6 participants

Cyber attacks no longer target large corporations alone. A compromised mailbox, an encrypted backup or a forgotten contractor access is enough to bring operations to a halt. Managers know the subject is serious but are unsure where to begin and what falls under technology, contracts or internal organisation.

These two days provide a complete overview without requiring any technical background. Participants identify their sensitive assets, then recognise the most common attack methods and assess their level of exposure. They go on to build a prioritised action plan and prepare the response to be activated in the event of an incident.

Learning objectives

  • Identify the data and systems whose interruption would halt operations
  • Recognise the main attack methods and their points of entry
  • Assess the level of exposure of your organisation
  • Define the cyber hygiene measures to implement as a priority
  • Build a prioritised and costed action plan
  • Prepare the response and recovery in the event of an incident

What makes this programme different

An inventory of sensitive assets carried out on your own scope
Attack scenarios walked through step by step to their business consequences
A prioritised action plan taken away at the end of the session

Programme

1Understanding the threat

Who attacks and through which route

  • Attacker motivations and the targets they select
  • Ransomware, phishing and payment fraud
  • The role of human error in the attack chain
  • Operational, financial and legal consequences

2Assessing your exposure

Knowing what you have to protect

  • Inventory of critical data and applications
  • Review of remote access points and privileged accounts
  • Dependencies on contractors and outsourced services
  • Identification of unsupported equipment and software

3Cyber hygiene measures

What reduces risk immediately

  • Password management and multi-factor authentication
  • Patching and management of the workstation estate
  • Backups and verification of restore capability
  • User awareness and acceptable use rules

4Action plan and response

Deciding, then preparing for the incident

  • Prioritising measures according to risk and cost
  • Choosing between in-house handling and external providers
  • Organising the response in the event of an incident
  • Defining business recovery requirements

Who is it for

IT managers and owners of smaller organisations, together with administrative managers and project leads involved in information systems security.

Prerequisites

No prerequisites

Dates & locations

36 scheduled dates between November 2026 and December 2027. Seats are confirmed in the order enquiries are received.

November 2026

December 2026

January 2027

February 2027

March 2027

April 2027

May 2027

June 2027

September 2027

October 2027

November 2027

December 2027

None of these dates suit you? We open additional sessions on request, and any programme can be run privately for your team.

Practical details

Before the programme
Online positioning questionnaire. Your development objectives are shared with the trainer, who tailors the practical case studies to your context.
Teaching methods
Theoretical input, workshops and practical case studies. Digital course materials and method sheets provided.
Assessment
Multiple-choice tests and role-play exercises. Assessment of learning at the start and end of the programme, with immediate and 60-day follow-up evaluations.
After the programme
One year of access to the e-learning platform. Self-assessment of the skills acquired and a 30-day follow-up session with your trainer.
How to register
Registration online or on the basis of a quotation.
Lead time
11 working days after confirmation of registration.
Accessibility
Accessible to people of determination. Contact our accessibility coordinator to design a suitable solution: contact@mpf-academy.ae
Start dates
Rolling intake: in addition to the scheduled sessions, this programme can start on request.