Book description
A fully updated self-study guide for the industry-standard information technology risk certification, CRISCWritten by information security risk experts, this complete self-study system is designed to help you prepare for—and pass—ISACA’s CRISC certification exam. CRISC Certified in Risk and Information Systems Control All-in-One Exam Guide, Second Edition features learning objectives, explanations, exam tips, and hundreds of practice questions. Beyond exam prep, this practical guide serves as an ideal on-the-job reference for risk management and IT security professionals.
Covers all exam topics, including:
- IT and cybersecurity governance
- Enterprise risk management and risk treatment
- IT risk assessments and risk analysis
- Controls and control frameworks
- Third-party risk management
- Risk metrics, KRIs, KCIs, and KPIs
- Enterprise architecture
- IT operations management
- Business impact analysis
- Business continuity and disaster recovery planning
- Data privacy
- 300 practice exam questions
- Test engine that provides full-length practice exams and customizable quizzes by exam topic
Table of contents
- Cover
- Title Page
- Copyright Page
- Dedication
- About the Authors
- Contents at a Glance
- Contents
- Introduction
- Chapter 1 Governance
- Chapter 2 IT Risk Assessment
- Chapter 3 Risk Response and Reporting
-
Chapter 4 Information Technology and Security
- Enterprise Architecture
- IT Operations Management
- Project Management
- Business Continuity and Disaster Recovery Management
- Data Lifecycle Management
- Systems Development Life Cycle
- Emerging Technologies
-
Information Security Concepts, Frameworks, and Standards
- Confidentiality, Integrity, and Availability
- Access Control
- Data Sensitivity and Classification
- Identification and Authentication
- Authorization
- Accountability
- Non-Repudiation
- Frameworks, Standards, and Practices
- NIST Risk Management Framework
- ISO 27001/27002/27701/31000
- COBIT 2019 (ISACA)
- The Risk IT Framework (ISACA)
- Security and Risk Awareness Training Programs
- Data Privacy and Data Protection Principles
- Chapter Review
- Appendix A Implementing and Managing a Risk Management Program
- Appendix B About the Online Content
- Glossary
- Index
Product information
- Title: CRISC Certified in Risk and Information Systems Control All-in-One Exam Guide, Second Edition, 2nd Edition
- Author(s):
- Release date: May 2022
- Publisher(s): McGraw-Hill
- ISBN: 9781260473346
You might also like
book
CRISC Certified in Risk and Information Systems Control All-in-One Exam Guide
An all-new exam guide for the industry-standard information technology risk certification, Certified in Risk and Information …
book
CISA Certified Information Systems Auditor All-in-One Exam Guide, Fourth Edition, 4th Edition
Publisher's Note: Products purchased from Third Party sellers are not guaranteed by the publisher for quality, …
book
ISACA Certified in Risk and Information Systems Control (CRISC®) Exam Guide
Prepare to pass the ISACA CRISC exam with confidence, gain high-value skills, and propel yourself toward …
book
CISA – Certified Information Systems Auditor Study Guide - Second Edition
Master the practical aspects of information systems auditing to pass the CISA exam and accelerate your …