User Tools

Site Tools


products:ict:cisa:course_outline

This is an old revision of the document!


Certified Information Systems Auditor (CISA) certification program

The Certified Information Systems Auditor (CISA) certification program covers a range of topics related to auditing, control, assurance, and governance of information systems. Here's a general overview of what you might expect to learn in a CISA course:

1. Introduction to Information Systems Auditing

  1. Overview of information systems auditing
  2. Role and responsibilities of IS auditors
  3. Professional standards and guidelines for IS auditing

2. Governance and Management of IT

  1. IT governance frameworks and principles
  2. IT strategy, policies, and procedures
  3. Organizational structures and roles in IT governance

3. Information Systems Acquisition, Development, and Implementation

  1. Project management methodologies
  2. Systems development life cycle (SDLC)
  3. Acquisition and development controls

4. Information Systems Operations, Maintenance, and Support

  1. IT service management (ITSM) frameworks (e.g., ITIL)
  2. Change management and configuration management
  3. Incident management and problem management

5. Protection of Information Assets

  1. Information security concepts and principles
  2. Access controls and authentication mechanisms
  3. Encryption and cryptography

6. Risk Management and Compliance

  1. Risk management frameworks and methodologies
  2. Compliance requirements and regulations (e.g., GDPR, HIPAA, SOX)
  3. Internal control frameworks (e.g., COSO, COBIT)

7. Business Continuity and Disaster Recovery

  1. Business impact analysis (BIA)
  2. Business continuity planning (BCP) and disaster recovery planning (DRP)
  3. Testing and maintenance of business continuity and disaster recovery plans

8. Auditing Tools and Techniques

  1. Audit planning and risk assessment
  2. Audit sampling methodologies
  3. Audit evidence collection and documentation

9. Reporting and Communication

  1. Audit findings and recommendations
  2. Audit reports and communication with stakeholders
  3. Follow-up and monitoring of audit recommendations

10. Ethics and Professional Conduct

  1. Professional ethics for IS auditors
  2. Confidentiality, integrity, and objectivity
  3. Ethical dilemmas and responsibilities

The course also includes practice exams, case studies, and real-world scenarios to help students apply their knowledge and prepare for the CISA certification exam. Instructors can also incorporate guest lectures, workshops, or hands-on exercises to enhance the learning experience.

products/ict/cisa/course_outline.1713716014.txt.gz · Last modified: 2024/04/21 21:13 by wikiadmin