Executive programme · Online · Gulf regulatory layer

Executive Certificate in Enterprise Resilience Governance

aligned to ISO 22301, ISO 31000 and AE/SCNS/NCEMA 7000

A programme for executives who answer for resilience before the board and the regulator. You gain the governance language, six working artefacts and the Gulf Cooperation Council (GCC) regulatory layer; your organisation gains a leader who can take it toward ISO 22301 and NCEMA 7000 readiness.

6 modulesthe full resilience cycle, from board risk appetite to the auditor's report
6 artefactsworking documents you build for your own organisation — and keep
Exam + defencea pass mark and a defended capstone before the examiner
Public registera unique number and QR verification on risk-place.org
Request enrolmentAsk a question

Who the programme serves

Suppliers to UAE government clients

Contracts increasingly ask for NCEMA-aligned continuity. The programme gives your executives the language and the artefacts that procurement and auditors expect to see.

Risk leaders aiming higher

Head of Risk, GRC Manager, BCM Lead on the way to CRO: an executive credential about governance — accountability, boards, regulators — that matches the roles you are applying for.

Leadership teams in-house

Groups with several business units get one resilience framework across the whole management team, delivered as a cohort on your own cases.

Why this credential, and why now

NCEMA 7000 alignment is becoming a condition of access to UAE government work — across logistics, construction, IT services, healthcare, energy, transport and telecom. The requirement lands on organisations; the competence lands on people.

Courses about the standard are plentiful. This programme occupies a different position: an individual executive credential in resilience governance, built around the Gulf regulatory layer — a niche that stood empty until now.

The demand is visible in hiring: in our review of 14 Gulf risk-leadership vacancies, governance appears in 9, compliance in 10, business continuity in 8, and a certification is requested in 9. The market asks for governed resilience — and for proof.

What you will be able to do

Define and defend a disruption risk appetite and tolerable downtime before the board
Design resilience governance: committees, delegated authority, three lines of defence
Run a business impact analysis and justify MAO, MBCO, RTO and RPO in money
Map one management system to both ISO 22301 and AE/SCNS/NCEMA 7000 and prepare the organisation for assessment
Stand up crisis governance: team, escalation, communications, an exercise programme
Establish board and audit-committee reporting with a resilience dashboard and a maturity model

The programme — six modules, six artefacts

Each module ends with a working document you build for your own organisation. The measure of the programme is completeness and artefacts — you set the pace.

01
Resilience Governance and the Board

Risk appetite for disruption, committee architecture, delegated authority, three lines of defence, the CRO role.

Artefact: a resilience governance policy and governance map

02
From ERM to Resilience

ISO 31000, the risk register, KRIs, scenario analysis and stress-testing, linking ERM to continuity.

Artefact: a resilience risk register with KRIs

03
Impact Analysis and Recovery Economics

BIA, MAO / MBCO / RTO / RPO, cost of downtime, the investment case for measures.

Artefact: a completed BIA with defended targets

04
Crisis Governance and Decision-Making

The crisis team, escalation, communications, the exercise programme and its reports.

Artefact: a crisis response plan and an exercise scenario

05
The Gulf Regulatory Landscape

AE/SCNS/NCEMA 7000 in depth, mapping to ISO 22301, sector regulators, government-contract expectations.

Artefact: an organisation mapping matrix against NCEMA 7000 and ISO 22301

06
Assurance, Reporting and Maturity

The resilience dashboard, the board report, audit readiness, the maturity model.

Artefact: a dashboard and a board report template

Capstone: a board-level resilience report on your own organisation, defended before the examiner.

The differentiator: Module 5 and the Gulf layer

AE/SCNS/NCEMA 7000:2021 is the UAE national standard for business continuity — mandatory for government entities and critical infrastructure, and increasingly referenced in supplier requirements across the economy.

Its structure is deliberately aligned with ISO 22301: one well-designed system covers both. The differences — terminology, supplier-evaluation duties, recovery during response — are exactly what Module 5 teaches.

Module 5 gives you the ability to read your organisation against both standards at once and to speak with a UAE regulator, client or auditor in their language — the layer this programme was built around.

Read our full NCEMA 7000 guide →

Standards coverage

Core: ISO 22301:2019 · ISO 31000:2018 · AE/SCNS/NCEMA 7000:2021
Open the full coverage map — which module covers which standard
StandardCoversModule
ISO 22313BCMS guidanceM1
ISO 22317Business impact analysisM3
ISO 22331Continuity strategyM3
ISO 22332Plans and proceduresM4
ISO 22318Supply chain continuityM2 · M5
ISO 22330People aspectsM4
ISO 22316Organisational resilienceM1
ISO 22361Crisis managementM4
ISO 22320Incident managementM4
ISO 22398ExercisesM4
ISO/IEC 27031ICT readinessM6
ISO/IEC 27001Information securityM6
IEC 31010Risk assessment techniquesM2
COSO ERM 2017Enterprise risk frameworkM2
ISO 37301Compliance managementM1
ISO 37000Governance of organisationsM1
ISO 42001AI managementM2
UAE: NCEMA 7000 · TDRA IAS · DESC ISR · ADHICS v2 · UAE PDPLGulf regulatory layerM5
KSA: NCA ECCSaudi cybersecurity controlsM5
Qatar: NCSA NIAQatar information assuranceM5

This table is the promise of completeness: from board appetite to the auditor's report.

Format

Assessed, verifiable, yours to show

Assessed, not attended

A proctored exam plus a defended capstone. There is a pass mark — the certificate is earned.

Artefacts you keep

Six working documents leave the programme with you and go straight into your organisation.

Publicly verifiable

Every certificate carries a unique number and a QR resolving to the register on risk-place.org. An employer verifies it in ten seconds.

Valid for three years

Renewal through evidence of practice and professional development keeps the credential alive.

Executive Certificate in Enterprise Resilience Governance — sample certificate

The certificate: personalised, numbered, QR-verified. Sample shown.

Verify a certificate

Every certificate number can be checked here.

Programme Director

Evgeny Telenkov
Evgeny Telenkov

PhD in Economics. Best Risk Manager of the Year 2020 (RusRisk). 15+ years leading risk functions. Built business continuity from zero at Nornickel — 20+ continuity plans. CRO of a $20bn petrochemical megaproject (AGCC, SIBUR) with 200+ construction risk indicators. Risk consulting at Ernst & Young.

Enrolment

Individual · founding cohort pricefrom AED 9,500
In-house cohort, up to 12 executivesfrom AED 45,000

Founding-cohort terms: this fee applies to the first cohort only and rises as the register grows. Payment by invoice; corporate purchase orders welcome.

Request enrolment

Tell us who the programme is for — yourself or a leadership cohort — and we will come back the same day.

Frequently asked questions

How long does the programme take?

It is self-paced, with access that stays open. We measure the programme by completeness — the full cycle from board risk appetite to the auditor's report — and by the six artefacts you build. You choose the pace that fits your calendar.

Is the certificate accredited?

It is an independent educational credential issued by risk-place, and we say so openly. Its weight comes from what is verifiable: the assessment with a pass mark, the artefacts, the public register and the programme content itself.

Is it recognised by NCEMA?

NCEMA assesses organisations against the national standard; recognition of private programmes is outside its role. This programme certifies your personal competence in that landscape — the ability employers and clients actually hire for.

Does it make my company NCEMA 7000 compliant?

Compliance belongs to organisations and is assessed by authorities. The programme equips you to lead your organisation toward it — the Module 5 mapping matrix is exactly that starting point.

How is this different from CBCI or CBCP?

Those are respected practitioner credentials for the people who build continuity systems. This programme certifies the executive layer — governance, board accountability and regulatory navigation — and is built around the GCC regulatory landscape, which is its home ground.

What if I fail the assessment?

One exam re-take and one capstone re-submission are included; further attempts are scheduled at cost. The pass mark is what makes the certificate worth showing.

What exactly do I receive?

The personalised, numbered certificate with QR verification, the six artefacts you built, and continued access to the materials as they are updated.

Can our whole leadership team take it?

Yes — the in-house track runs as a cohort on your own cases, and the capstone becomes a real board report for your organisation.

How do we pay?

Invoice with a corporate purchase order — standard practice for learning and development budgets.

The Executive Certificate in Enterprise Resilience Governance is an independent educational programme by risk-place. It is not affiliated with, endorsed by or accredited by NCEMA, ISO or any other standardisation or certification body. The certificate confirms completion of the programme and successful assessment; it does not attest any organisation's compliance with any standard.

Request enrolment