Certified Information Security Manager (CISM) (CISM-101)
Prepare for the ISACA CISM exam with expert-led training in security governance, risk management, program development, and incident management.
Register or Request Training
- Private class for your team
- Live expert instructor
- Online or on‑location
- Customizable agenda
- Proposal turnaround within 1–2 business days
Course Overview
This expert-led course helps experienced information security professionals prepare for the ISACA Certified Information Security Manager (CISM) certification exam. You will review the four CISM domains, including information security governance, risk management, program development and management, and incident management and response.
Course Benefits
- Develop, implement, and manage an enterprise information security program
- Establish governance frameworks for information security policies and procedures
- Conduct risk assessments and apply risk mitigation strategies
- Address legal, regulatory, and contractual compliance requirements
- Oversee security incident management and response planning
- Align information security strategy with business objectives and IT governance
Delivery Methods
Live expert-led online training from anywhere. Guaranteed to run .
Delivered for your team at your site or online.
Course Outline
- Domain 1: Information Security Governance
- Enterprise Governance Overview
- Organizational Culture, Structures, Roles and Responsibilities
- Legal, Regulatory and Contractual Requirements
- Information Security Strategy
- Information Governance Frameworks and Standards
- Strategic Planning
- Domain 2: Information Security Risk Management
- Risk and Threat Landscape
- Vulnerability and Control Deficiency Analysis
- Risk Assessment, Evaluation and Analysis
- Information Risk Response
- Risk Monitoring, Reporting and Communication
- Domain 3: Information Security Program
- IS Program Development and Resources
- IS Standards and Frameworks
- Defining an IS Program Road Map
- IS Program Metrics
- IS Program Management
- IS Awareness and Training
- Integrating the Security Program with IT Operations
- Program Communications, Reporting and Performance Management
- Domain 4: Incident Management
- Incident Management and Incident Response Overview
- Incident Management and Response Plans
- Incident Classification/Categorization
- Incident Management Operations, Tools and Technologies
- Incident Investigation, Evaluation, Containment and Communication
- Incident Eradication, Recovery and Review
- Business Impact and Continuity
- Disaster Recovery Planning
- Training, Testing and Evaluation
Class Materials
Each student receives a comprehensive set of materials, including course notes and all class examples.
Class Prerequisites
Experience in the following is required for this Cybersecurity class:
At least five years of relevant information security work experience, including at least three years in an information security manager role.
Have questions about this course?
We can help with curriculum details, delivery options, pricing, or anything else. Reach out and we’ll point you in the right direction.
