Certified Data Center Risk Professional (CDRP)

H6D35S

Course ID

H6D35S

Duration

2 days

Format

ILT, VILT

Overview

This course is designed for professionals responsible for the operational resilience and security of data centers. It focuses on the identification, assessment, and management of risks within data center environments, emphasizing the importance of proactive measures to mitigate potential threats.

Course ID

H6D35S

Duration

2 days

Format

ILT, VILT

  • Audience

    This course is ideal for data center and IT specialists, as well as risk and compliance managers responsible for ensuring and enhancing the availability and manageability of data centers. This is recommended for both end-customers and/or service providers and facilitators.


    This course is also recommended for data center managers, operations/floor/facility managers, IT managers, information security managers, security professionals, auditors, risk managers, and for professionals responsible for corporate governance, risk, and compliance.

  • Prerequisites

    There are no prerequisites for this course, however, we recommend you have at least three years of work experience in a data center and/or IT infrastructure environment. Earning the Certified Data Center Professional (CDCP®) is benefi­cial, but not a requirement.

  • Objectives

    After completing this course, you should be able to:

    • Understand various risks associated with data center facilities, such as site selection, facility infrastructure, power and cooling systems, and re-suppression, enabling better risk mitigation strategies.
    • Identify risks in data center environments, including asset-based and event-based identi­fication, and develop the skills to analyze risks qualitatively, semi-quantitatively, and quantitatively.
    • Recognize the critical ­financial and operational consequences of data center downtime and understand the main causes, empowering you to prioritize risk treatment and prevention.
    • Get acquainted with both generic and data center-specific standards and guidelines (e.g., ISO/IEC 27001), ensuring that your risk management strategies align with industry best practices and regulatory requirements.
    • Gain a high-level understanding of the risk management process, including risk identification, analysis, evaluation, treatment, and communication, helping you implement a structured risk management plan.
    • Understand the process of context establishment, de­fining internal and external contexts, and evaluating risk through criteria such as likelihood and impact, ensuring more accurate and effective decision-making.
    • Explore key policies related to risk management, physical security, safety, and maintenance, providing a clear framework for ensuring compliance and managing risks within the organization.
    • Select various risk treatment options, how to develop a Risk Treatment Plan (RTP), and how to overcome constraints in the treatment process, giving you the tools to reduce risks effectively.
    • Understand the importance of communication and consultation in risk management.
    • Monitor and review risk management activities, including the use of Key Risk Indicators (KRIs) and risk assessment matrices, ensuring ongoing risk mitigation and process improvement.
    • Integrate project management principles, including scope, time, and cost considerations, into the risk management process, ensuring that projects are delivered on time and within budget while minimizing risk exposure.
  • Certifications and related exams

    Candidates who successfully pass the certification exam receive an official Certifi­ed Data Center Risk Professional certificate. The certifi­cation is valid for three years, then recertification is required. More information is available on the EPI corporate website at www.epi-ap.com.

  • Course outline

Module 1: Introduction to Risk Management


  • Risk management concepts
  • Risk domains
  • Enterprise Risk Management (ERM)

Module 2: Data Center Risk and Impact


  • Data center risk—site selection
  • Data center risk—facility
  • Data center risk—power infrastructure
  • Data center risk—cooling infrastructure
  • Data center risk—­re-suppression
  • Data center risk— operations
  • Data center risk—organization
  • Impact of data center downtime
  • Main causes of downtime
  • Cost factors in downtime

Module 3: Standards and Guidelines


  • Standards (generic)
  • Guidelines (generic)
  • Standards (data center speci­fic)

Module 4: Risk Management Terminology


  • The importance of terminology
  • Risk management terminology
  • Types of risk

Module 5: Risk Management High-Level Overview


  • Risk management processes
  • Context establishment
  • Risk identification
  • Risk analysis
  • Risk evaluation
  • Risk treatment
  • Communication and consultation
  • Monitoring and review

Module 6: Risk Assessment Considerations


  • Project management principles
  • Scope
  • Time
  • Cost
  • Organization

Module 7: Policies


  • ISO/IEC 27001·
  • Risk management policy
  • Physical security policy
  • Safety policy
  • Maintenance policy

Module 8: Context Establishment


  • Context establishment
  • Internal context
  • External context
  • Interested parties
  • Applying the risk assessment
  • Consequence (impact) criteria
  • Likelihood (probability) criteria
  • Determining the level of risk
  • Risk acceptance criteria

Module 9: Risk Assessment

  • Risk management approach and methods
  • Types of methods
  • Risk assessment phases
  • Types of assessment
  • Event-based assessment
  • Asset-based assessment

Module 10: Risk Assessment—Identifi­cation

  • Elements of risk
  • Identi­fication of risk
  • Event-based identi­fication
  • Asset-based identi­fication

Module 11: Risk Assessment—Analysis


  • Qualitative analysis
  • Semi-quantitative analysis
  • Quantitative analysis
  • Risk analysis considerations
  • Assessment of consequences
  • Assessment of likelihood
  • Determining the level of risk

Module 12: Risk Assessment—Evaluation


  • Risk evaluation
  • Risk evaluation criteria
  • Risk appetite
  • Risk tolerance
  • Risk evaluation (continued)

Module 13: Risk Treatment


  • Process ow
  • Process steps
  • Options for risk treatment
  • Constraints
  • Control categories
  • Cost-benefi­t analysis
  • Statement of Applicability (SoA)
  • Risk Treatment Plan (RTP)
  • Approval
  • Implementation

Module 14: Communication and Consultation


  • Communication and consultation
  • Objectives
  • Key factors
  • Documented information

Module 15: Monitoring and Review


  • Monitoring and review
  • Risk factors
  • Continuous monitoring
  • Key Risk Indicators (KRIs)
  • Risk assessment matrix
  • Monitoring, review and improvement of the risk
  • management program and its processes
  • Continual improvement

Module 16: Exam


  • Sample questions
  • Self-study (time permitted)
  • Exam: Certi­fied Data Center Risk Professional

5 reasons to choose HPE as your training partner

  1. Learn HPE and in-demand IT industry technologies from expert instructors.
  2. Build career-advancing power skills.
  3. Enjoy personalized learning journeys aligned to your company’s needs.
  4. Choose how you learn: in-person, virtually, or online—anytime, anywhere.
  5. Sharpen your skills with access to real environments in virtual labs.

Explore our simplified purchase options, including HPE Education Learning Credits.

Recommended for you