CRISC - Certified IT Risk Management Specialist
The training prepares participants for the CRISC (Certified in Risk and Information Systems Control) exam, an internationally recognized certification in IT risk management. The program includes practical workshops and theoretical lectures, during which participants learn about methodologies for identifying, assessing and controlling risks in information systems. Classes are conducted in the form of interactive workshops using real cases and scenarios.
Issues
-
IT risk management methodologies
-
ISO 31000 and ISO 27005 standards.
-
COBIT 2019 Framework
-
Qualitative and quantitative risk analysis
-
Security control design
-
Metrics and KPIs in risk management
-
Governance of IT risks
-
Business Impact Analysis
-
Risk Assessment Methodology
-
Risk management documentation
-
Security control audit
-
Business continuity
Benefits
- The participant will gain the ability to conduct professional risk assessment in an IT environment in accordance with international standards
- Will develop the ability to design and implement effective controls in IT systems
- Will learn methodologies for managing an organization's IT risk program
- Will learn how to effectively communicate IT risk issues to stakeholders at various levels of the organization
- Will receive thorough preparation for the CRISC certification exam
- Will gain a working knowledge of the latest trends and challenges in IT risk management
- Will be able to integrate IT risk management with the organization's business objectives
- Will develop skills in building a culture of risk awareness in the organization
Who is this training for?
Prerequisites
- Minimum 3 years of experience in IT risk management or audit
- Knowledge of basic concepts of information security
- Understand business processes and how they relate to IT
- Basic knowledge of internal control
Training program
Key concepts and definitions in risk management
- Risk management standards and frameworks
- Risk management processes in the organization
- The role of CRISC in organizational structures
Risk identification and assessment
- Methodologies for identifying threats and vulnerabilities
- Qualitative and quantitative risk analysis techniques
- Determining the level of risk and its acceptability
- Documenting the risk assessment process
Risk response and control
- Strategies for dealing with risk
Control design and implementation
- Monitoring the effectiveness of controls
Risk reporting and communication
- IT risk program management
- Integration of risk management with business processes
- Building risk awareness in the organization
- Metrics and KPIs in risk management
- Preparing for CRISC certification
Delivery Methods
Online
- Convenience of participating from anywhere
- Interactive live sessions with trainer
- Materials available for 30 days
- No travel costs
On-site
- Direct contact with trainer and group
- Intensive hands-on workshops
- Networking with other participants
- Full focus on learning
Frequently asked questions
What are the prerequisites for this training?
For CRISC - Certified IT Risk Management Specialist we recommend: Minimum 3 years of experience in IT risk management or audit; Knowledge of basic concepts of information security; Understand business processes and how they relate to IT.
What is the format and duration of this training?
The training lasts 3 days and is available in online and on-site format. Sessions run from 9:00 AM to 4:00 PM. We can also customize the schedule to fit your team's needs.
Who is this training designed for?
This training is designed for: Information security and IT risk managers; Information systems auditors; Compliance and internal control specialists.
Request a quote
Funding Options
Check funding options for your company
Development Services Database
Up to 80% funding for SMEs from EU funds
Check availabilityNational Training Fund
Up to 100% funding for employers
Learn moreTrusted by
We train teams at Poland's largest companies
Interested in this training?
Contact us - we'll prepare an offer tailored to your organization's needs.