IT17A10: ISACA CERTIFIED IN RISK AND INFORMATION SYSTEMS CONTROL (CRISC) (SF) (SYNCHRONOUS ELEARNING)
ISACA CERTIFIED IN RISK AND INFORMATION SYSTEMS CONTROL (CRISC) (SF) (SYNCHRONOUS ELEARNING)
Course Duration
Mode of Assessment
Written Assessment, Oral Questioning, Written Test
Who Should Attend
- Risk and Security Manager
- IS or Business Analyst
- IS Manager
- Operations Manager
- Information Control Manager
- Chief Information Security or Compliance Officer
What's In It for Me
- It is a concrete indicator of your expertise and knowledge as a risk professional
- Increases your worth for any organization which wants to manage IT risk efficiently
- It gives you an edge over other contenders looking for a position or applying for a promotion.
- Allows you access to the ISACA community, including the most up to date ideas concerning IT risk management
- It helps you gain and sustain a high yardstick of professional conduct via ISACA’s requirements for continued education and ethics.
-
As a part of the course, learners will receive this courseware:
- Official Digital CRISC review manual (12 months access)
- Digital QAE <questions, answers, enquiries> (12 months access)
Course Overview
The ISACA Certified in Risk and Information Systems Control (CRISC) course is a specialized training program designed for professionals seeking expertise in the field of risk management and information systems control. This comprehensive course begins by providing participants with a solid foundation in risk management principles, enabling them to identify, assess, and respond to risks effectively within the context of information systems. The curriculum covers the integration of risk management with information systems control, ensuring a holistic approach to safeguarding organizational assets.
The CRISC course places a strong emphasis on risk response and mitigation strategies, equipping participants with the skills needed to develop and implement risk treatment plans. Real-world case studies and practical scenarios are integrated throughout the course to enhance the application of theoretical concepts. The program concludes with a thorough review of key topics, preparing participants for the CRISC certification exam and providing them with a valuable credential in the field of risk and information systems control.
CRISC four-day course will prepare participants to sit for the CRISC certification examination.
Course Schedule
Next available schedule
Course Objectives
Upon completing this course, participants will gain a comprehensive, up-to-date and in-depth knowledge of the following:
- An understanding of the format and structure of the CRISC certification exam
- A knowledge of the various topics and technical areas covered by the exam
- Practice with specific strategies, tips and techniques for taking and passing the exam
- Opportunities to execute practice questions with debriefs of answers
Pre-requisites
Below are the certification requirements, if you are taking the course just for knowledge it is not mandatory to possess the below requirements:
- 1-3 years of experience in IT risk and/or security and audit
- Recommended to have Early career candidates: IT Risk Fundamentals certificate and CISA certification a plus before starting
- Appropriate managerial skills with knowledge of relevant tools and techniques
- Proficiency in English language equivalent to the GCE O Level is expected
*To find out more about certification, go to: https://www.isaca.org/credentialing/crisc/get-crisc-certified
- Hardware & Software
- This course will be conducted as a Virtual Live Class (VLC) via Zoom platform.
- Participants must own a Zoom account and have a laptop or a desktop with “Zoom Client for Meetings” installed. Download from zoom.us/download.
System Requirement |
Must-have: Please ensure that your computer or laptop meets the following requirements.
Good-to-have:
Not recommended: |
Course Outline
Introduction to Certified in Risk and Information Systems Control (CRISC)
- Examination information and preparation techniques
- Understand how questions are structured
- Preparing for CRISC examination
- Certification Prerequisites, Application, Maintenance and Renewal
Domain 1 Governance
- Organisational Governance
- Organizational Strategy, Goals, and Objectives
- Organizational Structure, Roles, and Responsibilities
- Organizational Culture
- Policies and Standards
- Business Processes
- Organizational Assets
- Risk Governance
- Enterprise Risk Management and Risk Management Framework
- Three Lines of Defense
- Risk Profile
- Risk Appetite and Risk Tolerance
- Legal, Regulatory, and Contractual Requirements
- Professional Ethics of Risk Management
Domain 2 IT Risk Assessment
- IT Risk Identification
- Risk Events
- Threat Modelling and Threat Landscape
- Vulnerability and Control Deficiency Analysis
- Risk Scenario Development
- IT Risk Analysis, Evaluation & Assessment
- Risk Assessment Concepts, Standards, and Frameworks
- Risk Register
- Risk Analysis Methodologies
- Business Impact Analysis
- Inherent, Current and Residual Risk
Domain 3 Risk Response and Reporting
- Risk Response
- Risk and Control Ownership
- Risk Treatment / Risk Response Options
- Third-Party Risk Management
- Issue, Finding, and Exception Management
- Management of Emerging Risk
- Control Design and Implementation
- Control Types, Standards, and Frameworks
- Control Design, Selection, and Analysis
- Control Implementation
- Control Testing and Effectiveness Evaluation
- Risk Monitoring and Reporting
- Risk Treatment Plans
- Data Collection, Aggregation, Analysis, and Validation
- Risk and Control Monitoring Techniques
- Risk and Control Reporting Techniques
- Key Performance Indicators
- Key Risk Indicators
- Key Control Indicators
Domain 4 Information Technology and Security
- Information Technology Principles
- IT Operations Management
- Enterprise Resiliency
- Project Management
- Data Lifecycle Management
- System Development Life Cycle
- Emerging Trends in Technology
- Information Security Principles
- Information Security Concepts, Frameworks, and Standards
- Information Security Awareness Training
- Data Privacy and Principles of Data Protection
Certificate Obtained and Conferred by
- Upon meeting the attendance and assessment(s) criteria, participants will be awarded with a digital Statement of Attainment (SOA), accredited by SkillsFuture Singapore. SOA will be reflected as [code name, ICT-SNA-4005-1.1 Business Risk Management].
- Upon meeting the attendance and assessment(s) criteria, participants will be awarded with a digital Certificate of Completion from NTUC LearningHub.
Additional Details
Medium of Instruction: English
Trainer to trainee ratio: 1:20
Mode of Delivery: <Virtual Live Class (VLC) via Zoom> or <Physical class>
Price
Course Fee and Government Subsidies |
||||||
|
Individual Sponsored |
Company Sponsored |
||||
|
Non-SME |
SME |
||||
Before GST |
With GST |
Before GST |
With GST |
Before GST |
With GST |
|
Full Course Fee
|
$2,250.00 |
$2,452.50 |
$2,250.00 |
$2,452.50 |
$2,250.00 |
$2,452.50 |
For Singapore Citizens aged 39 years and below
|
$675.00 |
$735.75 |
$675.00 |
$735.75 |
$225.00 |
$285.75 |
For Singapore Citizens aged 40 years and above |
$225.00 |
$285.75 |
$225.00 |
$285.75 |
$225.00 |
$285.75 |
Funding Eligibility Criteria
Individual Sponsored Trainee |
Company Sponsored Trainee |
|
|
Remarks
Individual Sponsored Trainee |
Company Sponsored Trainee |
SkillsFuture Credit:
UTAP:
PSEA:
|
Absentee Payroll (AP) Funding:
|
Terms & Conditions apply. NTUC LearningHub reserves the right to make changes or improvements to any of the products described in this document without prior notice.
Prices are subject to other LHUB miscellaneous fees.
Batch ID | Course Period | Course Title | Funding Available |
Duration (Hours) |
Session (Hours) |
Venue | Available Seats |
Online Payment |
---|