描述:
本課程旨在為 ISACA 的註冊資訊系統審計師 (CRISC) 考試準備緊張而硬核的考試。ISACA CRISC 教學大綱的最新四 (4) 個領域將重點放在考試上。參加會議時還將提供官方 ISACA CRISC 複習手冊和問答和解釋 (Q,A&E) 補充。Q,A&E在説明代表們理解ISACA風格的問題,ISACA正在尋找的答案類型方面非常出色,它有助於快速記憶同化材料。
ISACA 在 CRISC 認證中推廣和評估的技術技能和實踐是該領域成功的基石。擁有 CRISC 認證證明瞭您在該行業的技能。隨著對具有風險和控制專業知識的專業人員的需求不斷增長,ISACA 的 CRISC 已將自己定位為全球個人和企業的首選認證計劃。CRISC 認證表示致力於為企業和所選專業提供卓越的服務。
目標:
- 説明您第一次通過 CRISC 考試。
- 擁有此認證將意味著您致力於為企業提供卓越的服務。
- 對具有風險和控制技能的專業人員的需求不斷增長,將使該認證的持有者能夠獲得更好的職位和薪水。
您將學習:
- 通過設計、實施、監控和維護基於風險、高效和有效的資訊系統控制,幫助企業實現業務目標。
- CRISC 提倡的技術技能和實踐,是該領域成功的基石。
領域 1:Governance
- 1.1 Governance 框架和原則
- 瞭解各種治理框架(例如 COSO、COBIT)。
- 有效治理原則。
- 瞭解各種治理框架(例如 COSO、COBIT)。
- 1.2 組織結構和文化
- 組織內的角色和職責。
- 影響風險管理的文化因素。
- 組織內的角色和職責。
- 1.3 法律和法規合規性
- 與IT風險管理相關的合規性要求。
- 不遵守規定的法律影響。
- 與IT風險管理相關的合規性要求。
- 1.4 Risk Management 框架
- 風險管理框架的組成部分。
- 將風險管理整合到組織流程中。
- 風險管理框架的組成部分。
- 1.5 道德和行為準則
- 風險管理中的道德考慮。
- 遵守行為準則的重要性。
- 風險管理中的道德考慮。
領域 2:IT 風險評估
- 2.1 風險識別技術
- 識別IT風險的方法。
- 風險識別工具和方法。
- 識別IT風險的方法。
- 2.2 風險分析與評估
- 定量和定性風險分析技術。
- 評估風險情景及其影響。
- 定量和定性風險分析技術。
- 2.3 IT 資產估值
- 評估IT資產的方法。
- 資產估值在風險評估中的重要性。
- 評估IT資產的方法。
- 2.4 威脅和漏洞識別
- 識別IT威脅和漏洞。
- 評估威脅的可能性和影響的技術。
- 識別IT威脅和漏洞。
領域3:風險應對和報告
- 3.1 風險應對選項
- 應對已識別風險的策略。
- 風險處理方案(避免、緩解、轉移、接受)。
- 應對已識別風險的策略。
- 3.2 控制件選擇和實現
- 根據風險評估選擇適當的控制措施。
- 實施控制措施以有效降低風險。
- 根據風險評估選擇適當的控制措施。
- 3.3 風險監測和 Communication
- 監控和衡量一段時間內風險的方法。
- 將風險資訊有效地傳達給利益相關者。
- 監控和衡量一段時間內風險的方法。
- 3.4 事件回應和 Management
- 事件回應規劃和執行。
- 事後分析和經驗教訓。
- 事件回應規劃和執行。
領域 4:資訊技術和安全
- 4.1 IT 概念和架構
- IT 架構的基本概念。
- IT 系統的元件及其相互關係。
- IT 架構的基本概念。
- 4.2 資訊安全基礎
- 資訊安全管理原則。
- 常見安全控制及其實現。
- 資訊安全管理原則。
- 4.3 新興技術趨勢
- 當前技術趨勢(例如,雲計算、物聯網)。
- 新興技術對風險管理的影響。
- 當前技術趨勢(例如,雲計算、物聯網)。
- 4.4 安全策略、標準和程式
- 制定和實施安全策略。
- 遵守行業標準和最佳實踐。
- 制定和實施安全策略。
United Arab Emirates - CRISC - Certified in Risk and Information Systems Control
Qatar - CRISC - Certified in Risk and Information Systems Control
Egypt - CRISC - Certified in Risk and Information Systems Control
Saudi Arabia - CRISC - Certified in Risk and Information Systems Control
South Africa - CRISC - Certified in Risk and Information Systems Control
Brasil - CRISC - Certified in Risk and Information Systems Control
Canada - CRISC - Certified in Risk and Information Systems Control
中国 - CRISC - Certified in Risk and Information Systems Control
香港 - CRISC - Certified in Risk and Information Systems Control
澳門 - CRISC - Certified in Risk and Information Systems Control
台灣 - CRISC - Certified in Risk and Information Systems Control
USA - CRISC - Certified in Risk and Information Systems Control
Österreich - CRISC - Certified in Risk and Information Systems Control
Schweiz - CRISC - Certified in Risk and Information Systems Control
Deutschland - CRISC - Certified in Risk and Information Systems Control
Czech Republic - CRISC - Certified in Risk and Information Systems Control
Denmark - CRISC - Certified in Risk and Information Systems Control
Estonia - CRISC - Certified in Risk and Information Systems Control
Finland - CRISC - Certified in Risk and Information Systems Control
Greece - CRISC - Certified in Risk and Information Systems Control
Magyarország - CRISC - Certified in Risk and Information Systems Control
Ireland - CRISC - Certified in Risk and Information Systems Control
Luxembourg - CRISC - Certified in Risk and Information Systems Control
Latvia - CRISC - Certified in Risk and Information Systems Control
España - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Italia - CRISC - Certified in Risk and Information Systems Control
Lithuania - CRISC - Certified in Risk and Information Systems Control
Nederland - CRISC - Certified in Risk and Information Systems Control
Norway - CRISC - Certified in Risk and Information Systems Control
Portugal - CRISC - Certified in Risk and Information Systems Control
România - CRISC - Certified in Risk and Information Systems Control
Sverige - CRISC - Certified in Risk and Information Systems Control
Türkiye - CRISC - Certified in Risk and Information Systems Control
Malta - CRISC - Certified in Risk and Information Systems Control
Belgique - CRISC - Certified in Risk and Information Systems Control
France - CRISC - Certified in Risk and Information Systems Control
日本 - CRISC - Certified in Risk and Information Systems Control
Australia - CRISC - Certified in Risk and Information Systems Control
Malaysia - CRISC - Certified in Risk and Information Systems Control
New Zealand - CRISC - Certified in Risk and Information Systems Control
Philippines - CRISC - Certified in Risk and Information Systems Control
Singapore - CRISC - Certified in Risk and Information Systems Control
Thailand - CRISC - Certified in Risk and Information Systems Control
Vietnam - CRISC - Certified in Risk and Information Systems Control
India - CRISC - Certified in Risk and Information Systems Control
Argentina - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Chile - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Costa Rica - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Ecuador - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Guatemala - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Colombia - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
México - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Panama - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Peru - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Uruguay - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Venezuela - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Polska - CRISC - Certified in Risk and Information Systems Control
United Kingdom - CRISC - Certified in Risk and Information Systems Control
South Korea - CRISC - Certified in Risk and Information Systems Control
Pakistan - CRISC - Certified in Risk and Information Systems Control
Sri Lanka - CRISC - Certified in Risk and Information Systems Control
Bulgaria - CRISC - Certified in Risk and Information Systems Control
Bolivia - Certificado en Control de Riesgos y Sistemas de Información (CRISC)
Indonesia - CRISC - Certified in Risk and Information Systems Control
Kazakhstan - CRISC - Certified in Risk and Information Systems Control
Moldova - CRISC - Certified in Risk and Information Systems Control
Morocco - CRISC - Certified in Risk and Information Systems Control
Tunisia - CRISC - Certified in Risk and Information Systems Control
Kuwait - CRISC - Certified in Risk and Information Systems Control
Oman - CRISC - Certified in Risk and Information Systems Control
Slovakia - CRISC - Certified in Risk and Information Systems Control
Kenya - CRISC - Certified in Risk and Information Systems Control
Nigeria - CRISC - Certified in Risk and Information Systems Control
Botswana - CRISC - Certified in Risk and Information Systems Control
Slovenia - CRISC - Certified in Risk and Information Systems Control
Croatia - CRISC - Certified in Risk and Information Systems Control
Serbia - CRISC - Certified in Risk and Information Systems Control
Bhutan - CRISC - Certified in Risk and Information Systems Control
Nepal - CRISC - Certified in Risk and Information Systems Control
Uzbekistan - CRISC - Certified in Risk and Information Systems Control