04.11.2026
Online

CyberFundamentals (CyFun) Framework - 04/11

//

The CyberFundamentals (CyFun®) Framework Training is a practical, intensive one-day training programme designed to help professionals translate NIS2 cybersecurity obligations into concrete and actionable measures.

During the training, participants learn how to work with the CyFun® framework and its assurance levels Basic, Important and Essential, conduct a self-assessment, interpret maturity results and translate identified gaps into a prioritised implementation roadmap. The course combines explanations, practical exercises and an implementation workshop.

By the end of this training, participants will be able to:

[ Turn NIS2 into action: Move beyond understanding regulatory obligations and learn how to translate them into concrete cybersecurity measures using CyFun® ]

[ Learn a practical implementation methodology: Work with the actual framework structure, assurance levels, self-assessment, maturity scoring and evidence requirements. ]

[ Conduct a CyFun® self-assessment, interpret maturity scores and identify the documentation and evidence needed to demonstrate implementation. ]

[ Understand the different conformity assessment approaches and develop a prioritised, practical roadmap for implementing CyFun® within your organisation. ]

Full programme information

//

The CyberFundamentals (CyFun®) Framework Training is delivered as an intensive one-day programme from 09:00 to 17:00. The programme combines framework knowledge with exercises and a practical implementation workshop, enabling participants to apply the methodology to organisational scope, risks, controls, evidence and priorities.

Module 1 – Understanding the CyberFundamentals Framework

  • Introduction to the CyberFundamentals Framework
  • Structure of the framework
  • Functions, categories and subcategories
  • Controls, requirements and implementation guidance
  • Positioning CyFun® within the NIS2 context
  • Relationship with other cybersecurity frameworks and standards

Outcome: Participants understand how CyFun® is structured and how the framework can be used to translate NIS2 cybersecurity requirements into a practical approach.

Module 2 – Selecting the Appropriate Assurance Level

  • Understanding the CyFun® assurance levels
  • Basic
  • Important
  • Essential
  • Framework selection
  • Organisational scope and risk considerations
  • Using the CyFun® selection tools

Outcome: Participants learn how to determine the appropriate CyFun® assurance level based on the organisation's context and cybersecurity requirements.

Module 3 – Controls, Measures & Evidence

  • Translating CyFun® controls into technical measures
  • Translating CyFun® controls into organisational measures
  • Identifying documentation requirements
  • Identifying appropriate evidence
  • Key measures and implementation expectations
  • Using mappings to support implementation

Outcome: Participants learn how to move from framework requirements to concrete measures and how to demonstrate that these measures have actually been implemented.

Module 4 – Self-Assessment & Cybersecurity Maturity

  • Using the CyFun® self-assessment tools
  • Assessing current cybersecurity maturity
  • Understanding maturity scoring
  • Identifying gaps
  • Interpreting assessment results
  • Translating assessment findings into priorities

Outcome: Participants gain the skills to perform a CyFun® self-assessment and use the results to identify and prioritise cybersecurity improvements.

Module 5 – Conformity Assessment & ISO/IEC 27001

  • Self-assessment
  • External verification
  • Certification
  • Understanding the differences between assessment approaches
  • Role of Conformity Assessment Bodies (CABs)
  • Relationship between CyFun® and ISO/IEC 27001
  • Preparing the organisation for conformity assessment

Outcome: Participants understand the available approaches for demonstrating conformity and what organisations need to prepare when moving towards external verification or certification.

Module 6 – Building Your CyFun® Implementation Roadmap

  • Translating gaps into implementation actions
  • Prioritising cybersecurity measures
  • Defining practical next steps
  • Connecting scope, risks, controls and evidence
  • Building a structured implementation roadmap
  • Practical implementation workshop

Outcome: Participants leave the training with a methodology for transforming CyFun® assessment results into a realistic and prioritised cybersecurity implementation roadmap.

ADDED VALUE

arrow right cronos blue
Turn NIS2 into action: Move beyond understanding regulatory obligations and learn how to translate them into concrete cybersecurity measures using CyFun®
arrow right cronos blue
Learn a practical implementation methodology: Work with the actual framework structure, assurance levels, self-assessment, maturity scoring and evidence requirements.
arrow right cronos blue
Understand what evidence looks like: Learn how to identify and prepare the documentation and evidence needed to demonstrate that cybersecurity controls are effectively implemented.
arrow right cronos blue
Prepare for conformity assessment: Understand the difference between self-assessment, external verification and certification, including the role of Conformity Assessment Bodies.
arrow right cronos blue
Leave with a roadmap: Learn how to prioritise cybersecurity improvements and build a structured CyFun® implementation roadmap that can be applied within your organisation.

Our other trainings

Join the Training

Fill out the form below and our team will be in touch.

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
We value your privacy! We use cookies to enhance your browsing experience and analyse our traffic. By clicking "Accept All", you consent to our use of cookies.