4 hours. One expert. Zero BS.

Stop googling standards at midnight. Get direct answers to your toughest ISO, NIS 2, DORA or AI-risk questions in a private session built around your reality.

You do not need more theory. You need someone who has been in the audit room.

A CISO in a focused 1:1 coaching session

You are here because

The training is done. The work just started.

  • You passed the training but still feel uncertain when it is time to actually implement.
  • You are staring at Annex A or the NIS 2 measures and thinking "now what?"
  • Your exam is coming and you need targeted prep, not generic study tips.
  • You are stuck translating ISO-speak into something your CEO will actually approve.
  • You have questions you did not want to ask in front of the group.

You bring your questions, challenges or documentation. We work on them directly.

Your coach is an active CISO, not a consultant who read the standard last week.

Christophe Mazzola has been in the room when the auditor asks the hard questions. Real audit exposure. Real board presentations. Real "we go live in three months and nothing is ready" firefights.

PECB-certified trainer. But more importantly: field-tested operator. This coaching comes from someone who has googled "how to actually write a Statement of Applicability" at 11pm, built the ISMS under pressure, and walked into the certification audit wondering if it would hold. It did, more than ten years ago. Now we help you make sure yours does too.

40+

NIS 2 assessments delivered

10+

ISO 27001 implementations from scratch

20+

Certifications across PECB and ISACA

Christophe Mazzola, active CISO and lead coach at Cyber Academy

We don't teach norms. We teach how to survive them.

Christophe Mazzola, Lead trainer

Five places coaching usually pays off.

Pick one or two for the session. We will spend the four hours moving them forward, not introducing the topic.

Targeted exam prep

PECB or ISACA exam in the coming weeks? We work through your weak spots, simulate the question logic, and pressure-test your answers.

Implementation unblock

Statement of Applicability, risk treatment, Annex A controls, NIS 2 measures: bring your real documentation, leave with a concrete next move.

Audit defence

Certification audit, regulator visit, internal audit cycle. We rehearse the hard questions and tighten the evidence so you walk in calm.

Board narrative

Translate the controls into a story the executive committee will actually approve. No jargon dump, no defensive posture.

Role transition

New CISO, new GRC lead, new compliance scope. We map the first 90 days and the documents you actually need to own from day one.

What 4 focused hours actually change.

Before

Stuck in theory.

  • You know the theory but freeze when asked "how would you actually do this?"
  • You are second-guessing your documentation.
  • You are nervous about the exam or the upcoming audit.
  • You are nodding in meetings, thinking "I hope nobody asks me to explain this."

After

Operating with clarity.

  • You know exactly how to apply the framework to your environment.
  • You can explain your controls to the auditor, and mean it.
  • You walk into the exam (or the board meeting) prepared, not panicking.
  • You stop googling. You start implementing.

Questions before you book.

01Can I use this before my certification exam?

Yes. Many people book a coaching session in the two weeks before their PECB or ISACA exam. We focus on the question logic, the weak spots, and the things examiners reward beyond pure knowledge.

02Can we split the 4 hours?

Yes. The default is one 4-hour deep session, but we can split it into two 2-hour blocks if that fits your calendar and your energy better.

03Can my company book this for me?

Yes. The booking can be made and invoiced to your employer. We will share a clean proposal you can forward to your manager or procurement.

04Can we focus on my real documentation?

Yes, that is the whole point. Bring your Statement of Applicability, your risk register, your NIS 2 self-assessment or your draft policies. We work on the actual material, not made-up examples.

05Is the session recorded?

Only if you ask. By default we do not record, so you can talk freely about real internal context. If you want a recording to review later, we set it up at the start.

Ready to stop guessing?

Get clarity in 4 hours.

Whether you are targeting ISO 27001, dealing with DORA or NIS 2 pressure, or strengthening operational resilience, we work on the real audits, evidence and board questions you actually face.