Building cyber risk acumen for in-house legal teams
Building cyber risk acumen for in-house legal teams
More than half of today's chief legal officers feel unprepared to handle data-related risks, according to the 2025 ACC Chief Legal Officer Survey. In today's highly vulnerable landscape, that's a risk your organization can't afford.
Cybersecurity leadership isn't just for the CISO. Anyone involved in making and executing cybersecurity decisions needs to be part of managing enterprise-wide cyber risks. This means you!
That's why we're excited to introduce a new credential designed specifically for in-house legal professionals: the ACC ECRC (Executive Cybersecurity Risk Credential). This program, provided through ACC's partnership with CLASS LLC, will equip you with the essential cybersecurity skills to provide enhanced guidance and support across your entire organization.
The ACC ECRC empowers in-house legal professionals with the knowledge and perspective needed to effectively oversee and govern modern cybersecurity risks.
Rather than prioritizing technology, the ACC ECRC program focuses on executive leadership that addresses the intersection of board governance and enterprise cybersecurity risk management.
You will learn to rethink risk leadership and advance cybersecurity excellence through content and case studies to:
Governance: governance fundamentals, role & responsibilities of directors, role & responsibility of management, essential security-related objectives, and oversight and duty of care for cybersecurity.
Corporate Culture & Behavior: organizational psychology and biases, cultivating risk culture, ethics and decision management, personal and corporate accountability, and cultural influences in practice.
Strategy, Objective Setting, & Performance Management: strategy and objective setting fundamentals, strategic management practices, capital planning and investment control, performance management models and practices, and performance measurement for information security.
Operational Alignment and Execution: operational alignment, strategic execution, program management practices and models, project management practices and models, and project management cases.
Enterprise Risk Management (ERC): ERM fundamentals, ERM practices and models, prioritizing and integrating cybersecurity risk for ERM, informing risk prioritization and response with business impact analysis, and promises and perils of cyber insurance.
Practical Application: leadership case studies and limiting legal exposure (crisis management deposition prep exercise).
Program Review: executive summary and review of key learning objectives and practices.
Registration for the 2025 ACC ECRC Cybersecurity Certification includes courses, written materials, scheduled meals/receptions, and the exam. It does not include travel, housing or personal expenses.
| Registration Type | Registration Amount |
| Member Rate | $5000 USD |
| Non-member* Rate | $5435 USD |
*Non-member will be charged a one year ACC membership (US$435) fee. Membership eligibility rules apply. ACC membership and meeting registration will be confirmed pending approval of eligibility; a staff member will contact you as needed.
ACC Registration Policies
In the process of registering for the ACC ECRC Certification, you have agreed to all policies and procedures of this event without exception. These policies include code of conduct, image release, refund policies, etc. These can be referred to here.