課程資料
課程簡介
Learn how to manage IT risk the ISACA way with this course based on The ISACA IT Risk Fundamentals Certificate
Every organisation experiences risk. ISACA’s IT Risk Fundamentals Certificate is perfect for anyone wanting to learn about information and technology (I&T)-related risk. Our IT Risk Fundamentals course covers the fundamentals of risk management; from identifying and prioritising risk to responding and communicating the risk to management. You’ll learn about six functions throughout the course:
Domain 1 - Risk Introduction and Overview (5%): We start by setting a strong foundation and understanding of risk. In this domain we will cover fundamental concepts of IT risk management. We will discuss how risks links to business functions, the importance of the three lines of defense and the role of IT controls.
Domain 2 - Risk Governance and Management (15%): We will explain the structure of risk governance and management and how it's used to set a direction for a business. We will discuss risk appetite, risk tolerance, and risk capacity and introduce the risk management cycle.
Domain 3 - Risk Identification (20%): Risk identification is the process of spotting and documenting the risks a business faces. It is crucial because only identified risks can be assessed and responded to. In this domain we will talk about assets, threats, and vulnerabilities and how we can use them to identify risk.
Domain 4 - Risk Assessment and Analysis (25%): After identifying risk, the next step is to understand its impact on the business. In this domain, we will discuss the different approaches to risk assessments, how to use risk registers to document risks, and the importance of risk aggregation.
Domain 5 - Risk Response (15%): After risk has been identified and assessed, decisions need to be made about the appropriate risk response. In this domain we will discuss risk response strategies, control design and implementation and other response approaches.
Domain 6 - Risk Monitoring, Reporting and Communication (20%): The monitoring and reporting of risk play an important role in the risk management process. Indicators for risk and performance should be considered carefully and chosen deliberately, based on their alignment with enterprise goals. Because of the changing nature of risk and associated controls, ongoing monitoring and reporting are essential steps in the risk management process.
課程章節
- 7 個章節
- 34 堂課
- 第 1 章 Risk Introduction and Overview
- 第 2 章 Risk Governance and Management
- 第 3 章 Risk Identification
- 第 4 章 Risk Assessment and Analysis
- 第 5 章 Risk Response
- 第 6 章 Risk Monitoring, Reporting and Communication
- 第 7 章 Conclusions and Next Steps
課程內容
- Prepare for and pass the ISACA IT Risk Fundamentals exam first time
- Gain a clear understanding of all the ISACA IT Risk Fundamentals Domains
- Understand IT Security and Cyber Security from a management-level perspective
- Learn what the IT Risk Fundamentals certificate can do for your career
此課程所涵蓋的技能
評價
-
HHerman DeSouza
A summarized version of the ISACA exam topics which is presented in an easy to understand manner. You will need more material if you're planning on taking the exam, but this course is definitely a great starting point. Great presentation!
-
JJames West
Love the course, it cleared several things up for me regarding Risk Management
-
hhans terlouw
Finally a simple, concise and visual explanation without the boringdom of slides. Well done! Really liked the analogies and the illustrations.
-
EEnyuan Wu
The teacher is quite experienced in explanation. It would be better to add more PDF files about the IT Risk Fundamentals for download and printout.