Training

Make resilience a collective capability.

Our training helps teams put knowledge into practice by connecting responsibilities, risks and expected behaviours.

Skills transfer

Training grounded in day-to-day operations.

Compliance and resilience cannot rest with a small number of specialists alone. They require a shared understanding of responsibilities, risks and expected behaviours.

Programmes combine regulatory insight, lessons from experience, workshops, case studies, simulations, quizzes and action plans.

Catalogue

Five training areas to shape the right learning path.

Content can be tailored by sector, audience, maturity level and expected outcomes.

Programmes

Explore the modules in each training area.

12 artificial intelligence courses

Programmes for executives, managers, business teams, developers, Risk, Compliance, Cyber and IT. Each module can be adapted to the sector, use cases and maturity level.

01

AI governance awareness

Understand the responsibilities, risks and principles of trustworthy AI.

02

Advanced AI governance

Build the governance model, roles, committees, controls and metrics.

03

Responsible enterprise AI adoption

Establish guardrails for use cases while balancing innovation, security, ethics and performance.

04

AI Act: understand and prepare for compliance

Classify systems, identify obligations and build the roadmap.

05

Shadow AI: audit and risk management

Identify unauthorised uses and implement appropriate controls.

06

Internal AI policy

Design and deploy a clear, practical framework for AI use that can be monitored and enforced.

07

AI incident management

Prevent, detect, assess, manage and document AI-related incidents.

08

Generative AI in the enterprise: secure use

Manage data, prompts, confidentiality, hallucinations and human review.

09

AI and coding assistants for developers

Accelerate development without compromising quality, security or intellectual property.

10

CAIM / ISO/IEC 42001

Prepare AI leaders for the ISO 42001 management system and governance model.

11

AI and fraud

Understand how AI is changing fraud scenarios, detection and controls.

12

AI fraud lead

Manage AI-related fraud risks and coordinate prevention, analysis, response and reporting.

10 AML/CFT courses

A progressive learning path that builds a culture of vigilance in everyday practice, adaptable to banking, insurance, fintech and professions subject to AML/CFT requirements.

01

AML/CFT fundamentals

Regulatory framework, responsibilities, risks and sanctions.

02

KYC and customer due diligence

Identification, verification, documentation and ongoing updates to customer records.

03

Beneficial ownership and complex structures

Identify ownership chains and document who ultimately exercises control.

04

Risk-based approach and customer classification

Build segmentation, risk scoring and due-diligence levels.

05

Simplified, standard and enhanced due diligence

Tailor due diligence to risk level, countries, products and transactions.

06

Transaction monitoring and alert detection

Analyse transaction flows, unusual patterns, thresholds and early warning signs.

07

PEPs, international sanctions and high-risk countries

Strengthen controls for high-risk individuals and jurisdictions.

08

Suspicion assessment and reporting to TRACFIN

Assess the facts, document the analysis, make a reporting decision and preserve confidentiality.

09

Ongoing AML/CFT control, audit and reporting

Test the effectiveness of the framework, track issues and manage remediation.

10

AML/CFT compliance officer

In-depth professional programme: KYC, transaction analysis, alerts, TRACFIN, traceability and final assessment.

Resilience, cybersecurity, technology and regulation

Resilience and compliance

01

DORA — Employee awareness

Understand digital risks, good practices and everyone’s role in resilience.

02

DORA — Governance and executive responsibilities

Master governance, oversight and ICT risk-management obligations.

03

DORA — TPRM and critical ICT providers

Assess, govern and monitor risks associated with critical ICT providers and services.

04

DORA — Digital operational resilience testing

Build a testing programme tailored to the risks and manage remediation plans.

05

NIS2 — Governance and achieving compliance

Identify applicable requirements, structure governance and build the roadmap.

06

ISO/IEC 27001 — Information security management

Build, deploy and improve an information security management system.

07

ISO/IEC 42001 — AI management system

Govern AI systems, manage their risks and organise continual improvement.

Risk and cybersecurity

01

EBIOS Risk Manager and ISO 27005

Identify, analyse and treat digital risks using recognised methods.

02

TPRM and supplier risk management

Assess third parties, manage dependencies and establish monitoring proportionate to the risks.

03

PASSI, LPM and audit preparation

Understand requirements, prepare evidence and manage security audits effectively.

04

SecNumCloud: EBIOS RM, pre-audit and audit

Lead risk analysis, prepare for the pre-audit and support a successful qualification process.

05

Cyber due diligence and M&A transactions

Assess cyber and technology risks to secure acquisitions, disposals and integrations.

06

Procurement advisory for critical services

Define requirements, negotiate commitments and put robust contracts in place for critical services.

07

Cyber/technology crisis and incident management

Prepare the response, coordinate stakeholders and manage the impact of major incidents.

08

Cyber and technology controls and automation

Design, streamline and automate controls to strengthen their effectiveness and traceability.

Short, focused and measurable e-learning modules

Regulatory modules

01

DORA: principles, responsibilities and practical guidance

Understand the key requirements and adopt behaviours that support digital resilience.

02

NIS2: governance, risks and core obligations

Identify responsibilities, security measures and the main compliance obligations.

03

AI Act: risk categories and rules for use

Classify AI systems and understand the rules that apply at each risk level.

Awareness

01

GDPR and personal data protection

Recognise personal data and adopt everyday practices that protect it.

02

Cybersecurity and digital best practices

Identify the main threats and apply essential practices to manage digital risks.

03

Responsible and secure use of AI

Use AI tools without compromising data, confidentiality or security.

Design a tailored module
Four proprietary programmes developed through hands-on experience
Cash management

AUSECAF

Secure applications and processes: access rights, payments, fraud, controls, evidence and continuity.

EDI / EBICS TS

SECEDI

Manage access, certificates, flows, integrity, availability, traceability and exchange-platform risks.

Information

D&IM (Documents & Informations Manager)

Document & Information Integrity Management: lifecycle, quality, governance, traceability, security and compliance.

Resilience testing

RTT — Resilient Test Tracker

Structure scenarios, results, issues, evidence, remediation, re-testing and executive reporting.

Additional training

Professional training programmes ready to deliver.

R’U SAFE offers an extended catalogue covering cybersecurity, financial crime, regulatory compliance and the banking and insurance professions.

  • In person
  • Remote
  • E-learning
  • Case studies
  • Quizzes
  • Customisable programmes
  • Skills assessment
Cybersecurity

Cybersecurity essentials

Equip all employees to address the digital risks they encounter in their day-to-day work.

  • Understand the main cyber threats
  • Recognise phishing, ransomware, impersonation and social engineering
  • Secure passwords, devices, data and mobile use
  • Spot early warning signs
  • Escalate and respond effectively
  • Build a lasting cyber culture

The programme gives employees, managers and executives the essential habits and responses to reduce the human risk associated with cyberattacks. It connects individual behaviours with operational, financial, regulatory and reputational impacts.

Raise awareness across your teams
Compliance

Financial crime, AML/CFT and fraud prevention

Build a shared culture of vigilance beyond the compliance function.

  • Identify fraud, money laundering, terrorist financing and corruption
  • Understand individual and collective responsibilities
  • Recognise unusual situations and transactions
  • Apply prevention and escalation mechanisms
  • Report concerns through the appropriate channel
  • Protect the organisation and its reputation

The programme combines AML/CFT fundamentals, anti-corruption, international sanctions, internal and external fraud, KYC, case studies and final assessment.

Strengthen your financial crime prevention framework
Crisis management

Operational management of a cyber crisis

Turn crisis preparation into effective coordination and decision-making capabilities.

  • Understand cyber-crisis scenarios
  • Define roles and responsibilities
  • Prepare plans, procedures and exercise scenarios
  • Organise detection, assessment and initial response
  • Coordinate internal and external communication
  • Manage recovery, the return to normal operations and post-incident reviews

The programme prepares teams to act under pressure during a major incident: crisis team, decision-making, critical-service continuity, communication and stakeholder relations.

Prepare your crisis exercise
DORA

From awareness to operational leadership

Understand requirements and translate them into controls, evidence, testing and remediation.

  • Understand DORA’s scope and five pillars
  • Clarify executive and key-function responsibilities
  • Manage ICT risks and incidents
  • Structure TPRM and critical-third-party oversight
  • Organise resilience testing
  • Build and prioritise the compliance plan

The programme draws on end-to-end operational leadership experience within a systemically important financial infrastructure. It is tailored for employees, executives, business teams and specialist functions.

Deploy your DORA programme
NIS2

Governance, cybersecurity and executive accountability

Understand how NIS2 applies to your organisation and start working towards compliance.

  • Identify affected entities and sectors
  • Understand risk-management measures
  • Manage notification obligations
  • Clarify executive accountability
  • Structure governance, controls and evidence
  • Align NIS2 with DORA, ISO 27001 and internal frameworks

This programme turns NIS2 into an operational roadmap and can include a workshop to assess scope and prioritise actions.

Prepare for NIS2 compliance
ISO/IEC 27001

ISMS fundamentals

Give teams a shared understanding of information-security governance.

  • Understand ISMS principles
  • Identify the context, interested parties and scope
  • Connect risks, objectives and security measures
  • Understand documentation requirements
  • Organise monitoring, audit and continual improvement
  • Prepare for implementation or certification

The programme makes the standard accessible and shows how to move from documented requirements to a functioning management system built on risk, accountability, controls and evidence.

Structure your ISO 27001 programme
Morocco

Law 05-20 — Cybersecurity and digital resilience

Support public and private organisations and vital infrastructure operators in adopting the Moroccan framework.

  • Understand the scope and requirements of Law 05-20
  • Identify the obligations of entities, operators and critical infrastructure
  • Manage information classification and protection
  • Understand the authorisation of sensitive systems
  • Organise incident management and continuity
  • Develop appropriate cyber governance and culture

The programme connects Moroccan requirements with governance, risk management, data protection, continuity and third-party management practices.

Understand Law 05-20
CER Directive

Resilience of critical entities

Extend resilience beyond digital risk by incorporating physical, organisational and climate-related risks.

  • Understand the scope and obligations of the CER Directive
  • Identify critical sectors and entities
  • Conduct a comprehensive risk assessment
  • Develop continuity, recovery and preventive measures
  • Compile the required evidence
  • Align CER with NIS2, DORA, ISO 22301 and ISO 27001

The programme covers governance, dependencies, supply chain, critical providers, exercises, notifications and cooperation with authorities.

Strengthen your entity’s resilience
Insurance

IAS, IDD and GDPR — Insurance and professional compliance

Acquire or maintain the skills required for insurance intermediation and distribution.

  • IAS levels 1, 2 and 3
  • IDD continuing professional development
  • Insurance products and advisory obligations
  • GDPR and data protection
  • AML/CFT and fraud prevention
  • Cybersecurity, DORA and NIS2

These programmes combine legal, technical, commercial and regulatory knowledge. Their format, duration and content are tailored to the required level of professional competence.

Build your insurance programme
Banking and lending

MCD and IOBSP — Professional compliance

Maintain the skills of professionals involved in designing, advising on or granting credit.

  • MCD / IOBSP continuing professional development
  • Lending regulatory environment
  • Professional requirements and advisory obligations
  • Loan protection insurance
  • Technical and legal principles for mortgage applications
  • AML/CFT, cybersecurity, DORA, NIS2 and GDPR

Modules can be combined according to role, experience level, risk profile and requirements for maintaining professional knowledge.

Build your banking and lending programme
Let’s talk

Let’s build your training programme.

Together, we will select the topics, level, formats and assessment methods.

Request a programme or quotation