🇲🇿 You are viewing Mozambique — uniform global pricing in USD🌐 Global site
Enroll Now 💬 WhatsApp Us
🛡️ Security & Safety  ·  Intermediate

Certified IT Risk and Controls Specialist

Online Certification  ·  10 Weeks  ·  Globally Recognised  ·  (CITRC)

✅ 2026 Edition 🎓 CPD Accredited 🌍 100+ Countries 📜 Digital + Physical Certificate 100% Online
Executive Summary

Certified IT Risk and Controls Specialist

Designed for today’s high-impact professionals, the Certified IT Risk and Controls Specialist (CITRC) delivers a rigorous Intermediate-level curriculum that equips participants with the knowledge, tools and frameworks needed to excel in security risk management, physical protection and investigations.

This 10 Weeks programme is structured around ASIS, ISO and recognised security-management standards, ensuring every graduate applies internationally validated methods to real-world challenges.

GLI’s CITRC holders are recognised by leading organisations across Africa, the Gulf, Europe and the Americas as qualified, results-driven professionals. Whether you are advancing your current career or transitioning into new responsibilities, this certification provides the competitive edge you need in 2026 and beyond.

Programme Overview

Certification at a Glance

Certification
Certified IT Risk and Controls Specialist
Acronym
CITRC
Category
Security & Safety
Level
Intermediate
Duration
10 Weeks
Delivery Mode
100% Online
Assessment
Online Examination
Certificate
Digital + Physical
CPD Eligibility
CPD Accredited
Alumni Benefits
GLI Network Access
Self-Paced
USD 349
Live Virtual
USD 549
Target Audience

Who Should Enrol?

  • Security Officers and Supervisors
  • Security Managers and Consultants
  • Investigators and Intelligence Analysts
  • Loss Prevention and Protection Specialists
Programme Inclusions

Everything Included in Your Enrolment

  • All study materials and study guide
  • Access to GLI online learning portal
  • Online examination and assessment
  • Digital certificate and digital badge
  • Physical certificate (shipped to you)
  • CPD credits for professional bodies
  • GLI alumni network membership
  • Facilitator and tutor support
  • Resource downloads and reference library
  • Automatic enrolment confirmation
Certification Benefits

Why This Certification Matters for Your Career

Career Advancement
Accelerate your career towards senior security-management and CSO roles
Professional Recognition
Credential aligned with ASIS, ISO and recognised security-management standards
Leadership Capability
Develop the strategic and operational skills to lead complex security risk management functions
Organisational Impact
Design and implement security risk management systems that drive performance and measurable results
Compliance Readiness
Master the standards, compliance and ethical governance central to security risk management
Global Employability
Qualify for security risk management roles across corporates, critical infrastructure, government and protective services worldwide
Competency Framework

Core Competencies You Will Develop

Security Risk Assessment and Threat Analysis
Physical Security and Access Control
Investigations, Intelligence and Forensics
Crisis, Emergency and Incident Response
Security Operations, Technology and Surveillance
Professional Ethics and Governance
Course Curriculum

Programme Modules

Click any module to explore the detailed curriculum topics included in this certification.

1
Foundations and Strategic Context of Certified IT Risk and Controls Specialist
  • Certified IT Risk and Controls Specialist: industry context, trends and professional standards
  • Security principles and protective concepts
  • The security profession, roles and standards
  • The threat landscape and security environment
  • Security governance and management systems
  • Physical, personnel and information security
  • Deterrence, detection, delay and response
  • Duty of care and legal framework
  • Ethics and professional conduct in security
  • Security as a business enabler
  • Career pathways and professional development
2
Guarding and Supervision
  • Guard force management and supervision
  • Security ethics, use of force and accountability
  • Crowd, event and public space safety
  • Security systems integration
  • Drones, sensors and detection technology
  • Cybersecurity of physical systems (OT)
  • Data protection in surveillance
  • Command, control and situational awareness
  • Technology selection and deployment
  • Maintenance, testing and reliability
  • Investigation principles and process
  • Evidence handling and chain of custody
  • Interviewing and statement taking
  • Security intelligence collection and analysis
  • Digital forensics and cybercrime
3
Incident and Investigation
  • Incident response and command
  • Investigation practice and evidence handling
  • Working with police, regulators and the justice system
  • Human rights and lawful security
  • Privacy, surveillance and data protection
  • Integrity, confidentiality and impartiality
  • Anti-corruption and vetting
  • Regulatory compliance and licensing
  • Security KPIs and metrics
  • Incident and response performance
  • Audits, inspections and assurance
  • Continuous improvement in security
  • Cost-effectiveness of controls
  • Security maturity assessment
  • Driving measurable security improvement
4
Insider and Loss Risk
  • Insider threat and personnel security
  • Cash, assets and loss prevention
  • Access control, screening and visitor management
  • Country and destination risk
  • Hostile-environment awareness
  • Emergency evacuation planning
  • Traveller briefing and support
  • Crisis response for travellers
  • Security of accommodation and transport
  • Event and crowd security
  • Coordination with teams and agencies
  • Contingency and emergency plans
  • Equipment and technology
  • Training and rehearsals
  • After-action review
5
Ethics and Accountability
  • Security ethics, use of force and accountability
  • Working with police, regulators and the justice system
  • Security risk assessment and proportionate response
  • Control rooms and command centres
  • Physical security testing and assurance
  • CCTV and video surveillance systems
  • Alarm systems and monitoring
  • Electronic access and biometric systems
  • Fraud and internal-threat investigation
  • Surveillance and covert techniques
  • Report writing and case management
  • Working with law enforcement
  • Legal and ethical investigation
  • Incident management and response
  • Emergency preparedness and planning
6
Risk and Proportionate Response
  • Security risk assessment and proportionate response
  • Layered defence and site protection
  • Access control, screening and visitor management
  • Security programme design and budgeting
  • Security metrics and reporting
  • Convergence of physical and cyber security
  • Vendor and technology management
  • Security culture and awareness
  • Leading security teams
  • Aligning security with business goals
  • Principles of close protection
  • Threat and risk assessment for principals
  • Advance work and route planning
  • Protective formations and drills
  • Secure transport and driving
7
Protecting the Site
  • Layered defence and site protection
  • Access control, screening and visitor management
  • Security technology selection and operation
  • Stakeholder mapping and liaison
  • Working with law enforcement and regulators
  • Board and management reporting
  • Influencing and security awareness
  • Professional report writing
  • Community and tenant engagement
  • Managing sensitive communications
  • Presenting risk and recommendations
  • Leading security projects and change
  • Team leadership in security operations
  • Security transformation and modernisation
  • Technology adoption and integration
8
Risk and Resilience
  • Business continuity and resilience
  • Travel risk management
  • Threat and risk assessment
  • Business continuity and crisis management
  • Interest-rate risk and gap analysis
  • Derivatives and risk instruments
  • Operational risk management
  • Governance, risk and compliance
  • Risk management and security frameworks
  • Control environment and risk assessment
  • Fraud risk and controls
  • Market risk and VaR
  • Analytical techniques and bias
  • Assessment and feedback online
  • Risk assessment and safe systems of work
9
Legal and Regulatory
  • Audit and compliance checks
  • Legal and ethical protection
  • Risk, compliance and feasibility analysis
  • Regulatory compliance and central-bank rules
  • Regulatory reporting and audits
  • Building a culture of compliance
  • Regulatory liquidity ratios (LCR, NSFR)
  • Regulatory compliance in operations
  • Regulatory awareness (GDPR and beyond)
  • Governance, compliance and standards (ISO 27001)
  • Evidence, judgement and scepticism
  • Comparable sales analysis and market evidence
  • Real estate regulation, licensing and professional conduct
  • Grant compliance and restricted funding management
  • Insurance regulation and consumer protection
10
Operations and Supervision
  • Process improvement and automation
  • Process and control documentation
  • Competitive bidding processes
  • Group facilitation and group process
  • Incident response process
  • Business process mapping
  • The HR function: roles, operating models and value creation
  • Preparing financial statements
  • Continuous improvement of finance processes
  • Financial reporting frameworks (IFRS/GAAP)
  • Productivity, collaboration and workflow tools
  • Reconciliation and end-of-day processes
  • Operating-model and process re-engineering
  • Designing a banking solution or process
  • Principles of credit and the lending process
11
Security Technology
  • Intelligence-led and data-driven security
  • Protecting data and information assets
  • Insider threat and data loss prevention
  • Access control systems and identity management
  • Cybersecurity and fraud technology
  • Technology governance and change control
  • Digital credit and alternative data
  • Data security and confidentiality
  • Professional ethics in technology
  • Data ethics, privacy and protection
  • Digital accessibility and inclusion
  • Customer data platforms and segmentation
  • Data-driven decision-making
  • Monitoring and evaluation with data
  • Interpreting financial statements
12
Emergency and Incident
  • Crisis management and command
  • Incident reporting and record-keeping
  • Risk response and contingency
  • Crisis communications
  • Incident investigation and reporting
  • Integrated and sustainability reporting
  • Reporting quality and governance
  • Emergency preparedness and response planning
  • Managing sensitive and crisis messaging
  • Management accounts and dashboards
  • Crisis, resilience and contingency planning
  • Budget vs actual and variance
  • Cost and profitability analysis
  • Incident and problem management
  • Reputation and crisis communications
13
Personnel and Capability
  • Working with referrers and multidisciplinary teams
  • Collaboration and teamwork
  • Scaling delivery capability
  • Servant leadership and self-organising teams
  • Virtual and distributed teams
  • Team leadership and motivation
  • Leading project teams
  • Team development and effectiveness
  • Coaching and developing team members
  • Managing virtual and cross-cultural teams
  • Building high-performing project teams
  • Talent sourcing channels and pipelines
  • High-potential identification and talent reviews
  • Knowledge management and capability building
  • Forecasting and planning
14
Ethics and Conduct
  • Professional ethics and conduct in security
  • Professional ethics and duty of care
  • Data visualisation for finance
  • Ethical decision-making under pressure
  • Setting goals, roles and accountability
  • Ethics and responsible leadership
  • Professional standards and ethics (CIPS)
  • Monitoring, evaluation and learning for accountability
  • Ethics and treating customers fairly in insurance
  • Ethical principles and codes of practice
  • Sustaining ethical, effective practice
  • Ethics and integrity in banking
  • Professional ethics and banking conduct
  • Treating customers fairly and market conduct
  • Integrity, confidentiality and conflicts
15
Leadership and Command
  • Security operations management
  • Guard force and contractor management
  • Locks, keys and credential management
  • Visitor and contractor management
  • Insider threat management
  • Journey management and risk
  • Omnichannel and channel management
  • Queue management and service flow
  • Workforce management and scheduling
  • Front-office and reception management
  • Relationship management and retention
  • Project management plan development
  • Earned value management
  • Procurement and contract management
  • Vendor selection and management
16
Communication and Reporting
  • Communication during crises
  • Communications and coordination
  • Communicating vision and telling stories
  • Executive communication and presence
  • Cross-cultural communication
  • Sustainability reporting and disclosure
  • Risk registers and reporting
  • Proposal development and donor reporting
  • The media and telecommunications landscape
  • Decision support and insight
  • Communicating financial results
  • Cryptography and secure communications
  • Metrics and reporting
  • Professional portfolio and presentation
  • Voice, communication and delivery
17
Stakeholders and Liaison
  • Stakeholder rights and fair treatment
  • Delivery, quality and stakeholder plan
  • Stakeholder identification and analysis
  • Stakeholder engagement strategy
  • Partnering and co-creation with customers
  • Negotiation with clients and partners
  • Partnership building and multi-stakeholder platforms
  • Regulatory compliance and biosafety
  • Corporate social responsibility and community impact
  • Regulatory compliance and market requirements
  • Group dynamics, facilitation and community mobilisation
  • Business partnering with the enterprise
  • The regulatory and legal environment
  • Stakeholders, agency and accountability
  • Trends: ESG, transparency and stakeholder capitalism
18
Cost, Assets and Loss
  • Cost, feasibility and control analysis
  • Microfinance and group lending
  • Financial inclusion and agency banking
  • Psychodynamic and psychoanalytic approaches
  • Impact, blended and concessional finance
  • Configuration and asset management
  • Total cost of ownership
  • Financial risk types and management
  • Ration formulation and least-cost feeding
  • Financial inclusion strategy
  • The role of finance in organisations and value creation
  • Financial and technical feasibility analysis
  • Attachment and developmental theory
  • Professional roles, boundaries and settings
  • The value of customer-centricity
19
Data and Intelligence
  • Performance monitoring and KPIs
  • Cloud and data security
  • Managing boundaries and dual relationships
  • Data migration and cleansing
  • Peer support and consultation
  • Feedback and learner analytics
  • Performance measurement and KPI dashboards
  • Data ethics, privacy and responsible analytics
  • Ethical frameworks and codes of practice
  • Leading and lagging metrics
  • Data collection and analytics
  • Duty of care and risk management
  • Setting objectives and marketing KPIs
  • Marketing and sales KPIs and dashboards
  • Funnel, pipeline and conversion metrics
20
Planning and Design
  • Physical security design and layered defence
  • Protective operations planning
  • Designing a security programme or solution
  • Design review and quality
  • Blended and hybrid design
  • Business model design and innovation
  • Scenario planning and foresight
  • Negotiation strategy and planning
  • Programme governance
  • Real estate development and project appraisal
  • Programme cycle management in NGOs
  • Agile and digital transformation projects
  • Building project management maturity
  • Measuring change and project impact
  • Sustainability and social impact in projects
21
People Risk
  • The employee lifecycle and HR value chain
  • NGO financial management and budget-versus-actual discipline
  • The customer experience (CX) discipline
  • Employee experience and engagement
  • Customer and employee satisfaction
  • Employee engagement models and drivers
  • Innovation in protective operations
  • Governance of converged security
  • Market analysis and environmental scanning
  • Competitive analysis and differentiation
  • Product and portfolio strategy
22
Audit and Standards
  • Sustaining improvement and benefits
  • Assurance engagements and standards
  • Audit risk and materiality
  • Continuous improvement of delivery
  • Continuous safety improvement
  • Feasibility, cost and quality analysis
  • Quality assurance and standards
  • Continuous improvement of programmes
  • Ethics and professional standards in finance
  • Standard costing and variance analysis
  • Committees: audit, risk, remuneration
  • Sustainability certification and standards
  • Traceability, recall and quality assurance systems
  • Quality management systems and audits
  • Roles, standards and professional conduct
23
Health and Safety
  • Brand safety and responsible marketing
  • Brand health and measurement
  • Measuring brand health
  • Complaints, accountability and fitness to practise
  • Contractor safety management
  • Safety culture and behaviour
  • Safety management systems (ISO 45001)
  • Product safety and standards
  • Safety management systems overview (ISO 45001)
  • Safety culture and leadership
  • Influencing and safety leadership
  • Legal responsibilities and professional bodies
  • Client feedback and satisfaction
  • Evidence-based improvement
  • Health records, data and confidentiality
24
Change and Modernisation
  • Measuring security transformation impact
  • Change control and configuration
  • Organisational change management
  • Change and adoption in projects
  • Baseline setting and change control
  • Sales and marketing transformation
  • Measuring growth and transformation impact
  • Patching and change management
  • Behaviour change and adoption of innovations
  • Customer experience transformation
  • Digital and self-service transformation
  • Foreign exchange and treasury operations
  • Foreign exchange and hedging
  • Change management and adoption
  • The finance function and digital transformation
25
Service and Public Interface
  • Customer personas and insight
  • The marketing concept and customer orientation
  • Market and customer analysis
  • Building strategic customer relationships
  • Customer success and retention
  • Customer lifetime value and profitability
  • Customer experience and journey mapping
  • Cross-functional collaboration with product and service
  • Media and public communication
  • IT operations and service management
  • Facilitation, training and public presentation skills
  • Voice of the customer to the business
  • Leading service projects and change
  • Team leadership in customer service
  • Customer onboarding and lifecycle
26
Records and Procedure
  • Tender planning and documentation
  • Record keeping, notes and professional documentation
  • Record-keeping and data protection
  • Data, records and confidentiality tech
  • Lessons learned and knowledge management
  • Professional documentation and presentation
  • Credit risk measurement and mitigation
  • Liquidity risk and asset-liability management
  • Operational risk and resilience
  • Stress testing and scenario analysis
  • Managing risk and difficult cases
27
Strategy and Governance
  • Governance of campaigns and spend
  • Managing price and discount governance
  • Designing a marketing or sales strategy
  • Marketing strategy and the mix
  • Brand strategy, identity and equity
  • Pricing strategy
  • Digital marketing strategy
  • Key account management strategy
  • Dashboards and performance reporting
  • Translating insight into strategy
  • Advocacy and policy engagement
  • Category management and strategy development
  • Sourcing strategies and portfolio (Kraljic)
  • Contract governance and compliance
  • Environmental, social and governance (ESG)
28
Contractors and Supply
  • Supply chain and cargo security
  • Lessons learned and development
  • Conflicts of interest and procurement ethics
  • Procurement and contract value
  • Supply market analysis
  • Third-party and supply-chain risk
  • Supply analysis, gaps and scenario planning
  • Contractor and visitor safety
  • Procurement and supply chain: scope and value
  • Procurement’s contribution to organisational strategy
  • Public versus private procurement
  • Supply markets and the enabling environment
  • Digital procurement and the future of the profession
  • Sustainable procurement principles and standards
  • Fair trade and responsible supply
29
Security Practice
  • Investigations and recovery
  • Driving effective, ethical outcomes
  • Claims investigation and fraud indicators
  • Designing and facilitating groups
  • Psychoeducation and workshops
  • Emerging threats and defensive strategy
  • Valuation and security analysis
  • Working with organisations on wellbeing
  • Security by design
  • Awareness and security culture
  • Turning strategy into results
  • Designing an intervention or programme
  • Ethical, risk and feasibility considerations
30
Professional Leadership Practice
  • Implementation planning and risk management
  • Performance management in service
  • Handling escalations as a leader
  • Teller operations, cash handling and vault management
  • Operational efficiency and channel management
  • Team leadership in banking operations
  • Reconciliation and nostro/vostro management
  • Enterprise risk management in banks
  • Sanctions screening and PEP management
  • Relationship management and cross-selling
  • Sales performance and pipeline management
  • Quality management and standards
  • Data quality and master data management
  • Key account management
  • Journey management and tracking
Learning Outcomes

What You Will Achieve

  • Establish a comprehensive understanding of Certified IT Risk and Controls Specialist principles aligned with ASIS, ISO and recognised security-management standards
  • Apply evidence-based methods to improve security risk management, physical protection and investigations
  • Master security risk assessment and threat analysis and physical security and access control
  • Apply investigations, intelligence and forensics and crisis, emergency and incident response in real-world settings
  • Lead risk management, quality and compliance relevant to your field
  • Design stakeholder engagement and professional communication strategies
  • Use data-driven decision-making and performance-measurement tools effectively
  • Apply internationally recognised best practice to advance your career in security risk management
Enrolment Process

How to Get Certified

🎯
Step 1: Choose Your Certification
You are viewing Certified IT Risk and Controls Specialist — one of GLI's 1,990+ globally recognised professional certifications.
💳
Step 2: Enrol & Pay Online — Instantly
Click Enrol & Study Online to register and pay securely via Paystack, Visa, Mastercard, M-Pesa or bank transfer. Access is granted the moment payment is confirmed.
📚
Step 3: Study in the GLI Learning Portal
Work through 30 structured modules and 150 lessons at your own pace, with downloadable resources and expert-designed content — all inside the LMS.
🎓
Step 4: Pass, Get Certified & Verified
Sit your final examination online, earn your certificate instantly, and receive a globally verifiable Certificate ID — plus GLI Alumni Network access.
🎓 Enrol & Study Online — Instant Access
Secure checkout · Instant LMS access · Globally verifiable certificate
Frequently Asked Questions

Common Questions

What is the CITRC certification?

Yes. GLI certifications are recognised across 100+ countries and are aligned with ASIS, ISO and recognised security-management standards. Graduates receive a digital certificate, a physical certificate and CPD credits recognised by employers worldwide.

Who should enrol in the CITRC?

This certification is ideal for Security Officers and Supervisors, Security Managers and Consultants, Investigators and Intelligence Analysts and Loss Prevention and Protection Specialists, and other professionals seeking to formalise their expertise in security risk management, physical protection and investigations with a globally recognised credential.

How long does the CITRC certification take to complete?

The programme is structured over 10 Weeks and offers flexible learning modes. Self-paced learners can progress at their own schedule, while live virtual participants follow a structured cohort schedule with facilitator-led sessions.

Is the CITRC internationally recognised?

Yes. GLI certifications are recognised across 100+ countries and are aligned with ASIS, ISO and recognised security-management standards. Graduates receive a digital certificate, a physical certificate and CPD credits recognised by employers worldwide.

What is the cost of the CITRC certification?

The Certified IT Risk and Controls Specialist is offered in two formats: Self-Paced at USD 349 and Live Virtual at USD 549. Corporate group rates are available for organisations enrolling 5 or more participants. Contact GLI for a bespoke corporate training quotation.

What does the CITRC certification include?

Enrolment includes all study materials and study guides, access to GLI's online learning portal, online examination, digital certificate and badge, physical certificate (posted), CPD credits, GLI alumni network membership, and ongoing facilitator support.

What is the assessment format for the CITRC?

The Certified IT Risk and Controls Specialist is assessed through an online examination consisting of multiple-choice questions, case study analysis, and practical application assignments. The assessment is designed to evaluate real-world competency, not just theoretical recall.

What CPD credits do I earn from the CITRC?

The Certified IT Risk and Controls Specialist carries Continuing Professional Development (CPD) credits, which can be applied towards professional body requirements including recognised international professional associations.

Can I study the CITRC while working full-time?

Absolutely. The self-paced option is designed for busy working professionals and allows you to study when and where it suits you. Live virtual sessions are typically scheduled in the evenings or on weekends to accommodate professional commitments.

What career outcomes can I expect from the CITRC?

Graduates progress towards senior security-management and CSO roles. The CITRC strengthens your expertise in security risk management, physical protection and investigations and positions you for advancement across corporates, critical infrastructure, government and protective services.

Graduate Voices

What Our Alumni Say

The curriculum was directly applicable to my daily work. I immediately applied what I learned and saw results within weeks of completing the programme.

Head of Security
Private Sector

GLI's certification is the most practical professional programme I have attended. The international frameworks gave me credibility with my employer and clients.

Security Manager
NGO Sector

I earned my CITRC while working full-time. The self-paced format made it possible, and the quality of the content is genuinely world-class.

Investigations Lead
Government
Related

You May Also Like

All Finance & Accounting Certifications →
💬 WhatsApp 📝 Proposal
💬