GRC Lab courses and certification prep
Everything Aron Lange's GRC Lab offers, from free fundamentals to lead implementer certification, in one place.
Courses
Pricing is shown on each course page on GRC Lab and can change, so we link out rather than quote a figure here.

ISO/IEC 27001 Lead Implementer
A complete, practitioner-led path to implementing an ISO/IEC 27001 ISMS, built around a 12-step project roadmap with templates and practice material.
View course
NIST CSF 2.0 Foundation
Learn the NIST Cybersecurity Framework 2.0, its core functions and how to apply them in practice.
View course
BPMN 2.0 for Enterprise Architects
Model business processes clearly with BPMN 2.0, a practical skill for GRC and enterprise architecture work.
View courseFree guides, toolkit and exams
Free fundamentals guides
Free introductions to the essentials, covering information as an asset, the CIA triad and core concepts. A good place to start before a paid course.
ISO 27001 and ISO 42001 fundamentalsISO/IEC 27001 Project Toolkit
A practical toolkit with a 12-step project plan, pre-built policies and processes, plus bonus NIST CSF and NIST SP 800-53 mappings.
View the toolkitCertification exam vouchers
GRC Lab is an authorized TRECCERT training provider and offers discounted exam vouchers, each including a free retake, across ISO/IEC 27001, ISO/IEC 42001, ISO/IEC 27005, ISO 22301 and ISO 37301.
See available vouchersIn-house and corporate training
Workshop-style training for teams, delivered in person across the DACH region or virtually worldwide, with a free second exam attempt.
Corporate trainingCommunity and bootcamps
A community for GRC professionals to connect and grow together, alongside live bootcamps that pair masterclass workshops with a course and an exam voucher.
Learn more on GRC LabGRC Lab is an independent company. These pages are a genuine recommendation, with no paid or affiliate arrangement.
Frequently asked questions
Are exam fees included in the courses?
Certification exams are booked separately. GRC Lab is an authorized TRECCERT training provider and sells discounted exam vouchers that each include a free retake.
How much do GRC Lab courses cost?
Pricing is listed on each course page on GRC Lab and can change over time, so we link out to the source rather than quote a figure that might go stale.
What is the difference between the free guides and the paid courses?
The free fundamentals guides introduce core concepts at no cost. The paid courses go deeper, with structured roadmaps, templates and practice material aimed at implementation and certification.
Does ISMS Copilot earn a commission?
No. This is a good-faith recommendation of a company we rate, with no paid or affiliate arrangement.
Looking for more information security companies?
The ISMS Directory is our directory of ISO 27001, SOC 2 and compliance service providers: consultants, auditors, certification bodies and platforms. Browse it to find the right specialists for your needs.
Start learning with GRC Lab
Browse the full catalogue of courses, toolkits and resources.
