Advanced Cybersecurity & Data Governance: Risk, Compliance & Incident Response
This 2-day programme provides in-depth knowledge of cybersecurity governance, PDPA compliance, risk management, and incident response. Includes simulations and case studies to strengthen organizational cyber resilience.
The most senior of the general cybersecurity programmes, aimed at IT and security managers, risk officers and internal auditors rather than at hands-on responders. The focus is governance: building a security programme, running a risk assessment that produces decisions, selecting and evidencing controls, and reporting to a board in terms it can act on. Data governance is covered alongside, since classification and retention determine what a breach actually costs. Malaysian regulatory context runs throughout, covering PDPA obligations, the Cyber Security Act 2024 for NCII entities, and BNM RMiT expectations for financial institutions. It pairs directly with the ISO 27001 programmes. Participants leave with a drafted risk register and a board-ready summary.
HRD Corp SBL-Khas Claimable
Day 1: Cyber Risks & Governance
Cyber Threat Landscape
Advanced threats, attack vectors, industry trends and case studies.
PDPA & Compliance
PDPA requirements, updates and organisational implications.
Data Governance Framework
Accountability, transparency and governance structures.
Risk Assessment & Management
Risk frameworks, tools, asset and vulnerability mapping.
Case Study Workshop
Data breach analysis and group solutions.
Key Outcomes
- Analyse advanced cyber threats and risks
- Apply PDPA requirements in organisational practices
- Develop data governance and compliance frameworks
- Design incident response and data breach handling plans
- Respond effectively to ransomware and cyberattack scenarios
- Build effective cybersecurity governance structures
- Strengthen organisational resilience against cyber threats
Day 2: Incident Response & Resilience
Incident Response Planning
Detection, containment, recovery and reporting obligations.
Ransomware Simulation
Attack lifecycle and hands-on response exercise.
Cyber Resilience & Business Continuity
Disaster recovery and business continuity planning.
Digital Trust & Ethics
Stakeholder trust and ethical data handling.
Final Simulation & Action Plan
End-to-end incident simulation, presentation and feedback.
Training Mode Physical / Online / Hybrid / e-learning
HRD Corp SBL-Khas Claimable
Duration 2 Days (16 Hours)
Certificate Certificate of Completion awarded upon full attendance