Twenty years in the field · Big Four · Defence · Critical entities

Dominique Bourra

PECB Platinum Trainer · 51 certifying curricula · EN / FR

Big Four advisory firms, national defence organisations, NIS2 and DORA regulated critical entities — twenty years of field experience, delivered in English and French, across France, Luxembourg and Scandinavia.

Get in touch   
FR FR | EN EN | Carnet International → | The Bourra Ecosystem →
Dominique Bourra — PECB Platinum Trainer
1 000+ Certified professionals trained
PECB Certified Platinum Trainer
~100% Certification pass rate
Strategic value

Not a cost. A strategic lever.

These disciplines are not compliance costs — they are EBITDA levers, resilience drivers and sustainable competitive advantages.

Certification impact

The certification that changes your trajectory

Certified with an experienced PECB Platinum Trainer who has delivered in Big Four, defence and critical entity contexts, your expertise carries immediate operational credibility — for leadership roles, compensation and international mobility.

Languages

English & French

Geographies

France · Luxembourg · Scandinavia

Delivery

In-person · Remote · Blended

Four disciplines. One integrated approach.

Each training programme is built on a deep normative command and twenty years of field delivery across high-stakes environments. All certifications are internationally recognised through PECB.

ISO/IEC 27001 Information Security Management — from governance to EBITDA The international reference for information security. Lead Implementer, Lead Auditor, Foundation — from ISMS design to internal audit. Explore → ISO/IEC 27005 Risk management as a strategic decision lever Structured risk analysis and treatment — EBIOS Risk Manager methodology. Aligned with ISO 31000 and the NIS2 / DORA regulatory framework. Explore → ISO 22301 Business continuity as a governance discipline From BIA and MTPD to recovery strategies and full BCP. The complete normative corpus including ISO/IEC 27031 for ICT continuity. Explore → ISO 31000 Risk management as a governance discipline Principles, framework and process for managing any type of risk. The universal reference standard — applicable to any organisation, any sector. Explore → DORA Digital operational resilience for the financial sector EU Regulation 2022/2554 — ICT risk management, incident reporting, resilience testing and third-party risk. Applicable since 17 January 2025. Explore → NIS2 Cybersecurity as a governance obligation Directive (EU) 2022/2555 — eighteen sectors, Article 21 security measures, personal liability for management bodies. Explore → EBIOS Risk Manager Threat scenario-based risk analysis The ANSSI 2018 method — five structured workshops, risk source modelling, strategic and operational threat scenarios. Explore → ISO/IEC 27701 Privacy management built into the management system Extension of ISO 27001 for personal data — PII Controller and PII Processor roles, Annexes A and B, GDPR mapping (Annex C). Explore → ISO/IEC 42001 AI governance — the first international standard Design, deploy and govern AI systems responsibly. Aligned with the EU AI Act — high-risk provisions fully in force August 2026. Explore →

Field experience across demanding environments

Training delivered to teams from Big Four advisory firms, national defence organisations and critical entities regulated under NIS2 and DORA — sometimes through training partners. Participants include CISOs, risk managers, DPOs, IT directors, business continuity managers, consultants, Lead Implementers and Lead Auditors preparing for PECB certification.

Group training programmes, individual certification, or a question about my offer — I respond within 48 hours.

Let's talk

Group training, individual certification, or a question about my offer — I respond within 48 hours.

Your message has been sent. I will get back to you within 48 hours.