Invest in your future

Founded in 2004, the IT Governance Network is a leading South African firm dedicated to empowering organizations with robust governance, management, and control of information and technology. Starting with a core emphasis on IT and information security, the company has evolved to encompass data protection, artificial intelligence, and broader corporate governance, drawing on frameworks such as the King V Code for Corporate Governance in South Africa, COBIT, ITIL, ISO 27001, ISO 42001, ISO 38500, ISO 38507, ISO 22989, the Protection of Personal Information Act (POPIA), and other global best practices.
Through expert consulting, tailored training programs—including AI literacy courses—and flexible online solutions, IT Governance Network helps clients achieve compliance, mitigate risks, and foster ethical, trustworthy systems. Headquartered in the Republic of South Africa, the company leverages seasoned professionals to deliver practical, standards-aligned strategies for sustainable success in an increasingly digital world.

20+ years

Governance Mechanisms

Leaders in the governance of information, technology, and organisations for over twenty years.

30+ years

Management Systems

Experienced implementers of management systems following ISO standards and best practices.

35+ years

Operational Processes

Designers of efficient and integrated operational processes for over thirty-five years.

40+ years

Risk Management

Experienced risk managers, compliance officers and auditors.

Who we are.

Scheme Owner

As a scheme owner, we develop certification criteria and audit requirements for assessing conformity. An independent conformity assessment body carries out assessments (Article 43.4) against the certification scheme requirements and issues certificate of conformity for the processing operations within scope. The organisation carrying out the assessment is not the same organisation that has developed and owns the scheme. Further details can be found in Guidelines 4/2018 on the accreditation of certification bodies under Article 43 of the General Data Protection Regulation (2016/679) Version 3.0, 4 June 2019..

The EDPB ensures that the General Data Protection Regulation and the Law Enforcement Directive are applied consistently and ensures cooperation, including on enforcement. Recital 100 of the GDPR states "The establishment of certification mechanisms and data protection seals is encouraged, allowing data subjects to quickly assess the level of data protection of relevant products and services". Several schemes for certification criteria have been developed to cover a wide range of obligations related to the processing of data, including systems that make use of artificial intelligence..

Certification of Personnel.

Skill Development

As the scheme owner, we are responsible for ensuring the criteria we develop are understood and applied consistently. We achieve this by offering training and guidance on implementation and auditing conformity. This training will assist implementers, auditors and conformity assessors to properly understand the regulations and apply the criteria consistently.

Data Protection Schemes offers several certifications for individuals to demonstrate their knowledge and competence in specific areas of the applicable regulations. It is a requirement that an assessor holds the relevant certifications of competence before conducting a certification criteria conformity assessment.

Your success is our success

Our diverse education will prepare you for the growing opportunities in artificial intelligence, data protection, risk management, internal control and auditing.