Reporting an incident is mechanical. Deciding whether it has to be reported is judgement, and that is where the difficulty and the exposure sit. This course separates the operational incident, the major incident and the significant cyber threat, works through the dimensions that drive materiality and the facts your response process must be able to produce for each, and teaches an assessment method you can run under time pressure on incomplete information and defend months later. It works a single illustrative incident in which the classification is genuinely arguable, argues it both ways, and follows it through the staged pattern of an initial notification, intermediate updates and a final report, including the discovery that changes the picture after filing. It closes with decision rights, coordination between the incident team, compliance, legal and the supervisor, the drill that rehearses the decision rather than the recovery, and the evidence that shows classification works as a control. This is training material and not legal or regulatory advice. It deliberately prints no article references, instrument numbers, thresholds or reporting timings, because those are set by the regulation as published and by your own supervisor, and it tells you what to ask them.
Nothing. Every course, exam, and certificate on the catalog is free — including retakes. All you need is a free Safeguard account.
None. The flagship course, Safeguard Certified Practitioner, is a beginner-level course — basic familiarity with how software is built helps, but every exam question is answerable from the lessons themselves.
You can retake it after a 24-hour cooldown, as many times as you need. Retakes are free, and each attempt draws a fresh random set of questions.
The Safeguard Certified Practitioner credential is valid for 24 months from issue. The expiry date is printed on the certificate and shown live on its public verification page. Renewing means passing the current exam again.