Course information

Certified Information Security Manager (CISM) Training Course Outline

Domain 1: Information Security Governance

Module 1: Introduction to Information Security Governance

  • About Information Security Governance
  • Reason for Security Governance
  • Security Governance Activities and Results
  • Risk Appetite
  • Organization Culture

Module 2: Legal, Regulatory and Contractual Requirements

  • Introduction
  • Requirements for Content and Retention of Business Records

Module 3: Organizational Structures, Roles and Responsibilities

  • Roles and Responsibilities
  • Monitoring Responsibilities
  • Module 4: Information Security Strategy Development
  • Introduction
  • Business Goals and Objectives
  • Information Security Strategy Objectives
  • Ensuring Objective and Business Integration
  • Avoiding Common Pitfalls and Bias
  • Desired State
  • Elements of a Strategy

Module 5: Information Governance Frameworks and Standards

  • Security Balanced Scorecard
  • Architectural Approaches
  • Enterprise Risk Management Framework
  • Information Security Management Frameworks and Models

Module 6: Strategic Planning

  • Workforce Composition and Skills
  • Assurance Provisions
  • Risk Assessment and Management
  • Action Plan to Implement Strategy
  • Information Security Program Objectives

Domain 2: Information Security Risk Management

Module 7: Emerging Risk and Threat Landscape

  • Risk Identification
  • Threats
  • Defining a Risk Management Framework
  • Emerging Threats
  • Risk, Likelihood and Impact
  • Risk Register

Module 8: Vulnerability and Control Deficiency Analysis

  • Introduction
  • Security Control Baselines
  • Events Affecting Security Baselines

Module 9: Risk Assessment and Analysis

  • Introduction
  • Determining the Risk Management Context
  • Operational Risk Management
  • Risk Management Integration with IT Life Cycle Management Processes
  • Risk Scenarios
  • Risk Assessment Process
  • Risk Assessment and Analysis Methodologies
  • Other Risk Assessment Approaches
  • Risk Analysis
  • Risk Evaluation
  • Risk Ranking

Module 10: Risk Treatment or Risk Response Options

  • Risk Treatment/Risk Response Options
  • Determining Risk Capacity and Acceptable Risk
  • (Risk Appetite)
  • Risk Response Options
  • Risk Acceptance Framework
  • Inherent and Residual Risk
  • Impact
  • Controls
  • Legal and Regulatory Requirements
  • Costs and Benefits

Module 11: Risk and Control Ownership

  • Risk Ownership and Accountability
  • Risk Owner
  • Control Owner

Module 12: Risk Monitoring and Reporting

  • Risk Monitoring
  • Key Risk Indicators
  • Reporting Changes in Risk
  • Risk Communication, Awareness and Consulting
  • Documentation

Domain 3: Information Security Program Development and Management

Module 13: Information Security Program Resources

  • Introduction
  • Information Security Program Objectives
  • Information Security Program Concepts
  • Common Information Security Program Challenges
  • Common Information Security Program Constraints

Module 14: Information Asset Identification and Classification

  • Information Asset Identification and Valuation
  • Information Asset Valuation Strategies
  • Information Asset Classification
  • Methods to Determine Criticality of Assets and Impact of Adverse Events

Module 15: Industry Standards and Frameworks for Information Security

  • Enterprise Information Security Architectures
  • Information Security Management Frameworks
  • Information Security Frameworks Components

Module 16: Information Security Policies, Procedures, and Guidelines

  • Policies
  • Standards
  • Procedures
  • Guidelines

Module 17: Information Security Program Metrics

  • Introduction
  • Effective Security Metrics
  • Security Program Metrics and Monitoring
  • Metrics Tailored to Enterprise Needs

Module 18: Information Security Control Design and Selection

  • Introduction
  • Managing Risk Through Controls
  • Controls and Countermeasures
  • Control Categories
  • Control Design Considerations
  • Control Methods

Module 19: Security Program Management

  • Risk Management
  • Risk Management Program
  • Risk Treatment
  • Audit and Reviews
  • Third-Party Risk Management

Module 20: Security Program Operations

  • Event Monitoring
  • Vulnerability Management
  • Security Engineering and Development
  • Network Protection
  • Endpoint Protection and Management
  • Identity and Access Management
  • Security Incident Management
  • Security Awareness Training
  • Managed Security Service Providers
  • Data Security
  • Cryptography
  • Symmetric Key Algorithms

Module 21: IT Service Management

  • Service Desk
  • Incident Management
  • Problem Management
  • Change Management
  • Configuration Management
  • Release Management
  • Service Levels Management
  • Financial Management
  • Capacity Management
  • Service Continuity Management
  • Availability Management
  • Asset Management

Module 22: Controls

  • Internal Control Objectives
  • Information Systems Control Objectives
  • General Computing Controls
  • Control Frameworks
  • Controls Development
  • Control Assessment

Module 23: Metrics and Monitoring

  • Types of Metrics
  • Audiences
  • Continuous Improvement

Domain 4: Information Security Incident Management

Module 24: Security Incident Response Overview

  • Phases of Incident Response

Module 25: Incident Response Plan Development

  • Objectives
  • Maturity
  • Resources
  • Roles and Responsibilities
  • Gap Analysis
  • Plan Development

Module 26: Responding to Security Incidents

  • Detection
  • Initiation
  • Evaluation
  • Recovery
  • Remediation
  • Closure
  • Post-Incident Review

Module 27: Business Continuity and Disaster Recovery Planning

  • Business Continuity Planning
  • Disaster
  • Disaster Recovery Planning
  • Testing BC and DR Planning

Show moredowndown

Who should attend this CISM Certified Information Security Manager Training Course?

The CISM Course in Washington D.C. is a globally recognized certification focusing on developing a professional’s expertise in managing Information Security systems and practices. This course can be beneficial for professionals, including:

  • Information Security Managers
  • Internal Auditors
  • Risk Management Specialists
  • Compliance Officers
  • Security Analysts
  • IT Consultants
  • Data Protection Officers

 Prerequisites of the CISM Certified Information Security Manager Training Course

There are no formal prerequisites for this CISM Certified Information Systems Manager Course. However, a basic understanding of Information Security and experience in job roles related to it can be beneficial for delegates.

Certified Information Security Manager Training Course Overview

The Certified Information Security Manager (CISM) Training in Washington D.C. equips professionals with the skills and knowledge to safeguard valuable information assets. It is a highly relevant and crucial discipline in a technology-driven landscape. Certified Information Security Manager, offered by ISACA, is a globally recognized certification that ensures individuals are well-versed in managing and governing an organization's information security.

Acquiring the CISM Certification in Washington D.C. is vital as it empowers professionals to navigate the complex landscape of Information Security, ensuring the confidentiality, integrity, and availability of data. IT and Cybersecurity Experts, Risk Managers, Compliance Officers, and those aspiring to lead and manage information security teams should aim to master Certified Information Security Manager.

This intensive 4-day Certified Information Security Manager Training by The Knowledge Academy in Washington D.C. gives delegates a comprehensive understanding of Information Security Management. Delegates will gain expertise in risk management, governance, incident response, and security development. Through real-world case studies and practical exercises, delegates will learn how to apply their knowledge effectively, making them invaluable assets to their organizations. 

Course Objectives:

  • To understand the core principles of Information Security governance
  • To learn to develop and manage an Information Security aligned with business objectives
  • To master risk management processes to safeguard an organization's assets
  • To acquire skills for incident response and recovery
  • To gain the ability to establish and maintain Information Security policies and procedures
  • To develop the competence to align Information Security with regulatory and compliance requirements
  • To learn how to manage and govern Information Security teams effectively
  • To prepare for the CISM exam and enhance their career prospects

After completing this training and passing the certification exam in Washington D.C., delegates will be recognized as Certified Information Security Managers. This globally respected certification demonstrates their expertise in Information Security management and opens up numerous career opportunities.

Show moredowndown

What’s included in this CISM Certified Information Security Manager Training Course?

  • World-Class Training Sessions from Experienced Instructors
  • CISM Certificate
  • Digital Delegate Pack

Why choose us

Our Washington D.C. venue

Includes..

Free Wi-Fi

To make sure you’re always connected we offer completely free and easy to access wi-fi.

Air conditioned

To keep you comfortable during your course we offer a fully air conditioned environment.

Full IT support

IT support is on hand to sort out any unforseen issues that may arise.

Video equipment

This location has full video conferencing equipment.

Washington D.C is the capital of the United States and is a federal district. Washington has around 660,000 inhabitants living in the area.

Washington D.C is the home to a variety of universities such as the American University which is a private research university. The university is affiliated with the United Methodist Church. The university was established in 1893 and was approved by former President Benjamin Harrison. The university enrols around 13,000 students a year who are either undergraduate or graduate students. Students at American University have backgrounds of more than 150 nationalities. The American University is also very well known for its study abroad programs in which students can participate in a number of programs around the world.

The George Washington University is another university located in Washington D.C. The university is a private research university and is the largest institution in the District of Columbia. The George Washington University was established in 1821. The university currently has around 25,300 students in attendance with the majority of those studying postgraduate degrees. Some of the courses available at the George Washington University include; Arts, Science, Business, International Affairs, Public Health, Professional Studies, Engineering, Applied Sciences, Nursing and Medicine, Politics and Law.

Another university located in Washington D.C is the Gallaudet University which is a private university for deaf and hard of hearing students. The university has around 2,000 students in attendance. Gallaudet was established in 1864 and was originally a grammar school for deaf and blind children until it became the university. Gallaudet is famous for being the only university that primarily teaches classes specifically accommodated to deaf and hard of hearing students. The university is bilingual using American Sign Language (ASL) and English.

Georgetown University is a private research university in Washington and was established in 1789 making it the oldest catholic and Jesuit institute in the United States. There are around 18,000 students who attend the university each year and study a variety of degrees. Some notable alumni from Georgetown University include eight former heads of state, Bill Clinton, Bradley Cooper and a variety of others. 

Show moredown

Address

AdvantEdge Business Centres,

5335 Wisconsin Avenue,

Suite 650,

Washington D.C

United States

T: +1 7204454674

Ways to take this course

Experience live, interactive learning from home with The Knowledge Academy's Online Instructor-led CISM Training | Certified Information Security Manager Training in Washington D.C.. Engage directly with expert instructors, mirroring the classroom schedule for a comprehensive learning journey. Enjoy the convenience of virtual learning without compromising on the quality of interaction.

Unlock your potential with The Knowledge Academy's CISM Training | Certified Information Security Manager Training in Washington D.C., accessible anytime, anywhere on any device. Enjoy 90 days of online course access, extendable upon request, and benefit from the support of our expert trainers. Elevate your skills at your own pace with our Online Self-paced sessions.

Streamline large-scale training requirements with The Knowledge Academy's In-house/Onsite at your business premises. Experience expert-led classroom learning from the comfort of your workplace and engage professional development.

tailored_learning_experience

Tailored learning experience

Leverage benefits offered from a certification that fits your unique business or project needs

budget

Maximise your training budget

Cut unnecessary costs and focus your entire budget on what really matters, the training.

team_building

Team building opportunity

Our offers a unique chance for your team to bond and engage in discussions, enriching the learning experience beyond traditional classroom settings

monitor_progress

Monitor employees progress

The course know-how will help you track and evaluate your employees' progression and performance with relative ease

What our customers are saying

CISM Training | Certified Information Security Manager Training in Washington D.C. FAQs

CISM Training is a comprehensive course designed to equip professionals with the knowledge and skills needed to excel in information security management. It covers critical aspects of cybersecurity governance, risk management, and program development.
The CISM Training Course is suitable for IT professionals, security managers, and individuals aspiring to lead and manage information security teams. It caters to those seeking to enhance their expertise in cybersecurity governance and risk management.
In this CISM Course, delegates will have a 4-day training with our experienced instructors, a digital delegate pack consisting of important notes related to this course, and a certificate after course completion.
There are no formal prerequisites for this CISM Certified Information Systems Manager Course.
No, the exam is not included. Delegates need to book their exam through the ISACA website.
Delegates in the Certified Information Security Manager course gain a globally recognized certification, validating their proficiency in information security management. The course enhances career prospects, providing the skills needed to protect organizations from evolving cyber threats.
The Certified Information Security Manager Certification covers key domains including Information Security Governance, Risk Management, Information Security Program Development, Information Security Incident Management, ensuring a holistic understanding of information security principles and practices.
A Certified Information Security Manager monitors all operations and infrastructure, maintain all security tools and technology, monitor internal and external policy compliance, monitor regulation compliance, ensure cybersecurity stays on the organizational radar, etc., are the main roles and responsibilities of the information security manager.
During the CISM (Certified Information Security Manager) Training course, you will learn various essential topics such as disaster recovery planning, risk assessment and analysis, plan development, maturity, types of metrics, incident management tools and technologies configuration management, capacity management, business alignment, and many more.
CISM Course cultivates advanced skills in cybersecurity governance, risk management, and information security program development. Delegates acquire expertise in establishing and managing robust security frameworks, enhancing their ability to lead and protect organizations against evolving cyber threats.
The Knowledge Academy is a coveted training provider which offers multiple courses, comprehensive course content, experienced instructors, flexible learning options, and industry recognition, making it a reliable choice for attending this training course.
The training fees for CISM Certified Information Security Manager certification in Washington D.C. starts from $2895
The Knowledge Academy is the Leading global training provider for CISM Certified Information Security Manager.
Please see our CISM Training courses available in Washington D.C.
Show more down

Why choose us

icon

Best price in the industry

You won't find better value in the marketplace. If you do find a lower price, we will beat it.

icon

Many delivery methods

Flexible delivery methods are available depending on your learning style.

icon

High quality resources

Resources are included for a comprehensive learning experience.

barclays Logo
deloitte Logo
Thames Water Logo

"Really good course and well organised. Trainer was great with a sense of humour - his experience allowed a free flowing course, structured to help you gain as much information & relevant experience whilst helping prepare you for the exam"

Joshua Davies, Thames Water

santander logo
bmw Logo
Google Logo
backBack to course information

Security Certification

Save upto 25%
4 courses

Total without package:  $13680

Package price:  $10295 (Save $3385)

Purchase now

Information Security Bundle

Save upto 40%
3 courses

Total without package:  $10785

Package price:  $6495 (Save $4290)

Purchase now
cross

OUR BIGGEST SPRING SALE!

Special Discounts

red-starWHO WILL BE FUNDING THE COURSE?

close

close

Thank you for your enquiry!

One of our training experts will be in touch shortly to go over your training requirements.

close

close

Press esc to close

close close

Back to course information

Thank you for your enquiry!

One of our training experts will be in touch shortly to go overy your training requirements.

close close

Thank you for your enquiry!

One of our training experts will be in touch shortly to go over your training requirements.