Classes Security
ISACA Partner Delivered
Certified Information Security Manager (CISM)
- 4 days
- 2 upcoming dates
- 2 guaranteed to run
- May qualify for CEU/PDU credit
Upcoming dates
All times shown in the class's own timezone. 2 of 2 are guaranteed to run, meaning they go ahead regardless of enrollment.
| Dates | Starts | Where | Status | Seat | Book |
|---|---|---|---|---|---|
| Nov 18-20 | 9:00 AM to 5:00 PM EST | Live virtual | GUARANTEED | $1,995 | |
| Jan 25-27 | 9:00 AM to 5:00 PM EST | Live virtual | GUARANTEED | $1,995 |
About this class
We have 2 scheduled dates of Certified Information Security Manager (CISM), from Nov 18-20 through Jan 25-27. Every one is guaranteed to run regardless of enrollment. Seats are $1,995 each over 4 days, courseware included. Book online with a card, or send a purchase order and we will invoice on net 30 terms.
This four-day exam preparation course equips learners with the essential knowledge and concepts needed to succeed on the CISM certification exam. Participants explore key domains, including Information Security Governance, Risk Management, Security Program Development, and Incident Management, strengthening their understanding of enterprise-level security practices. Case studies and targeted practice questions reinforce learning and help participants confidently apply concepts in ways that directly support exam readiness.
What you'll be able to do
By the end of this course, participants will be able to:
-
Develop, implement, and manage an enterprise information security program.
-
Establish governance frameworks for information security policies and procedures.
-
Conduct risk assessments and implement risk mitigation strategies.
-
Ensure compliance with industry regulations and legal requirements.
-
Oversee security incident management and response strategies.
-
Align information security with business objectives and IT governance.
Course outline
Domain 1: Information Security Governance
- Organizational Purpose and Culture
- Legal, Regulatory, and Contractual Requirements
- Organizational Structures, Roles, and Responsibilities
- Information Security Strategy Development
- Enterprise Architecture
- Information Governance Frameworks and Standards
- Strategic Planning
Domain 2: Information Security Risk Management
- Emerging Risk and Threat Landscape
- Vulnerability and Control Deficiency Analysis
- Risk Assessment and Analysis
- Risk Treatment/Risk Response Options
- Risk and Control Ownership
- Risk Monitoring and Reporting
Domain 3: Information Security Program
- Information Security Architecture
- Information Security Program Resources
- Information Security Industry Standards and Frameworks
- Information Security Policies, Standards, Procedures, and Guidelines
- Information Asset Identification and Classification
- Information Security Control Design and Selection
- Information Security Program Metrics Development
- Information Security Control Implementation and Integrations
- Information Security Control Testing and Evaluation
- Information Security Awareness and Training
- Management of External Services
- Information Security Program Metrics, Communications, and Reporting
Domain 4: Incident Management
- Incident Response Plan
- Business Impact Analysis (BIA)
- Business Continuity Plan (BCP)
- Disaster Recovery Plan (DRP)
- Incident Classification/Categorization
- Incident Management Training, Testing, and Evaluation
- Incident Management Tools and Techniques
- Incident Investigation and Evaluation
- Incident Containment Methods
- Incident Response Communications
- Incident Eradication and Recovery
- Post-incident Review Practice
Before you attend
CISM is intended for information security professionals with at least five years of relevant work experience and at least three years in the role of information security manager.
Who this is for
The intended audience for this course is information security and IT professionals, such as network administrators and engineers, IT managers, and IT auditors, and other individuals who want to learn more about information security, who are interested in learning in-depth information about information security management, who are looking for career advancement in IT security, or who are interested in earning the CISM certification.
How reserving works. Your card is authorized, not charged. We confirm the seat with the training center, usually within one business day, and take payment only once it is held. If the class turns out to be full we release the authorization and you are not charged.
Request a quote
Tell us how many people and roughly when. We'll come back with dates, seat price, and a total by the end of the next business day.