Skip to content
Security / Governance, Risk & Compliance

CRISC - Certified IT Risk Management Specialist

The training prepares participants for the CRISC (Certified in Risk and Information Systems Control) exam, an internationally recognized certification in IT risk management. The program includes practical workshops and theoretical lectures, during which participants learn about methodologies for identifying, assessing and controlling risks in information systems. Classes are conducted in the form of interactive workshops using real cases and scenarios.

Issues

  • IT risk management methodologies

  • ISO 31000 and ISO 27005 standards.

  • COBIT 2019 Framework

  • Qualitative and quantitative risk analysis

  • Security control design

  • Metrics and KPIs in risk management

  • Governance of IT risks

  • Business Impact Analysis

  • Risk Assessment Methodology

  • Risk management documentation

  • Security control audit

  • Business continuity

Benefits

  • The participant will gain the ability to conduct professional risk assessment in an IT environment in accordance with international standards
  • Will develop the ability to design and implement effective controls in IT systems
  • Will learn methodologies for managing an organization's IT risk program
  • Will learn how to effectively communicate IT risk issues to stakeholders at various levels of the organization
  • Will receive thorough preparation for the CRISC certification exam
  • Will gain a working knowledge of the latest trends and challenges in IT risk management
  • Will be able to integrate IT risk management with the organization's business objectives
  • Will develop skills in building a culture of risk awareness in the organization

Who is this training for?

Information security and IT risk managers
Information systems auditors
Compliance and internal control specialists
IT systems security architects
Risk management consultants
IT project managers responsible for security aspects
Business continuity specialists
Employees of compliance departments

Prerequisites

  • Minimum 3 years of experience in IT risk management or audit
  • Knowledge of basic concepts of information security
  • Understand business processes and how they relate to IT
  • Basic knowledge of internal control

Training program

01

Key concepts and definitions in risk management

  • Risk management standards and frameworks
  • Risk management processes in the organization
  • The role of CRISC in organizational structures
02

Risk identification and assessment

  • Methodologies for identifying threats and vulnerabilities
  • Qualitative and quantitative risk analysis techniques
  • Determining the level of risk and its acceptability
  • Documenting the risk assessment process
03

Risk response and control

  • Strategies for dealing with risk
04

Control design and implementation

  • Monitoring the effectiveness of controls
05

Risk reporting and communication

  • IT risk program management
  • Integration of risk management with business processes
  • Building risk awareness in the organization
  • Metrics and KPIs in risk management
  • Preparing for CRISC certification

Delivery Methods

Online

  • Convenience of participating from anywhere
  • Interactive live sessions with trainer
  • Materials available for 30 days
  • No travel costs

On-site

  • Direct contact with trainer and group
  • Intensive hands-on workshops
  • Networking with other participants
  • Full focus on learning

Frequently asked questions

What are the prerequisites for this training?

For CRISC - Certified IT Risk Management Specialist we recommend: Minimum 3 years of experience in IT risk management or audit; Knowledge of basic concepts of information security; Understand business processes and how they relate to IT.

What is the format and duration of this training?

The training lasts 3 days and is available in online and on-site format. Sessions run from 9:00 AM to 4:00 PM. We can also customize the schedule to fit your team's needs.

Who is this training designed for?

This training is designed for: Information security and IT risk managers; Information systems auditors; Compliance and internal control specialists.

Kamil Gabryszewski
Kamil Gabryszewski Opiekun szkolenia

Request a quote

Funding Options

Check funding options for your company

Up to 80%

Development Services Database

Up to 80% funding for SMEs from EU funds

Check availability
Up to 100%

National Training Fund

Up to 100% funding for employers

Learn more

Trusted by

We train teams at Poland's largest companies

ING Bank - EITT client
mBank - EITT client
PKO Bank Polski - EITT client
PZU - EITT client
Allianz - EITT client
T-Mobile - EITT client
KGHM - EITT client
PGE - EITT client
IKEA - EITT client
InPost - EITT client
Leroy Merlin - EITT client
ZUS - EITT client

Interested in this training?

Contact us - we'll prepare an offer tailored to your organization's needs.

500+ experts
2500+ trainings available
ISO 9001 quality certified
Request Training
Call us +48 22 487 84 90