ISACA Certified in Risk and Information Systems Control (CRISC®) Exam Guide - Shobhit Mehta

ISACA Certified in Risk and Information Systems Control (CRISC®) Exam Guide

A primer on GRC and an exam guide for the most recent and rigorous IT risk certification

(Autor)

Buch | Softcover
316 Seiten
2023
Packt Publishing Limited (Verlag)
978-1-80323-690-2 (ISBN)
54,85 inkl. MwSt
Prepare to pass the ISACA CRISC exam with confidence, gain high-value skills, and propel yourself toward IT risk management mastery

Key Features

Gain end-to-end coverage of all the topics assessed in the ISACA CRISC exam
Apply and embed your learning with the help of practice quizzes and self-assessment questions
Have an in-depth guide handy as you progress in your enterprise IT risk management career
Purchase of the print or Kindle book includes a free PDF eBook

Book DescriptionFor beginners and experienced IT risk professionals alike, acing the ISACA CRISC exam is no mean feat, and the application of this advanced skillset in your daily work poses a challenge. The ISACA Certified in Risk and Information Systems Control (CRISC®) Certification Guide is a comprehensive guide to CRISC certification and beyond that’ll help you to approach these daunting challenges with its step-by-step coverage of all aspects of the exam content and develop a highly sought-after skillset in the process.
This book is divided into six sections, with each section equipped with everything you need to get to grips with the domains covered in the exam. There’ll be no surprises on exam day – from GRC to ethical risk management, third-party security concerns to the ins and outs of control design, and IDS/IPS to the SDLC, no stone is left unturned in this book’s systematic design covering all the topics so that you can sit for the exam with confidence. What’s more, there are chapter-end self-assessment questions for you to test all that you’ve learned, as well as two book-end practice quizzes to really give you a leg up.
By the end of this CRISC exam study guide, you’ll not just have what it takes to breeze through the certification process, but will also be equipped with an invaluable resource to accompany you on your career path.What you will learn

Adopt the ISACA mindset and learn to apply it when attempting the CRISC exam
Grasp the three lines of defense model and understand risk capacity
Explore the threat landscape and figure out vulnerability management
Familiarize yourself with the concepts of BIA, RPO, RTO, and more
Get to grips with the four stages of risk response
Manage third-party security risks and secure your systems with ease
Use a full arsenal of InfoSec tools to protect your organization
Test your knowledge with self-assessment questions and practice quizzes

Who this book is forIf you are a GRC or a risk management professional with experience in the management of IT audits or in the design, implementation, monitoring, and maintenance of IS controls, or are gearing up to take the CRISC exam, then this CRISC book is for you. Security analysts, penetration testers, SOC analysts, PMs, and other security or management professionals and executives will also benefit from this book. The book assumes prior experience of security concepts.

Shobhit Mehta is the Security and Compliance Director at Headspace, an on-demand mental health company in San Francisco, CA. Previously, he worked in different facets of security and assurance with HSBC, Deutsche Bank, Credit Suisse, PayPal, and Fidelity Investments. He also works with ISACA to develop exam questions for CISA, CISM, and CGEIT, served as the technical reviewer for the CGEIT and CISA review manuals, and is a published author for the COBIT 5 journal. He completed his MS in cybersecurity at Northeastern University, Boston, and holds CRISC, CISM, CISA, CGEIT, CISSP, and CCSP certifications. In his spare time, he likes to explore the inclined trails of the Bay Area, complete ultramarathons, and blog on GRCMusings.

Table of Contents

Governance, Risk, and Compliance
CRISC Practice Areas and the ISACA Mindset
Organizational Governance, Policies, and Risk Management
The Three Lines of Defense and Cybersecurity
Legal Requirements and the Ethics of Risk Management
Risk Management Life Cycle
Threat, Vulnerability, and Risk
Risk Assessment Concepts, Standards, and Frameworks
Business Impact Analysis, and Inherent and Residual Risk
Risk Response and Control Ownership
Third-Party Risk Management
Control Design and Implementation
Log Aggregation, Risk and Control Monitoring, and Reporting
Enterprise Architecture and Information Technology
Enterprise Resiliency and Data Life Cycle Management
The System Development Life Cycle and Emerging Technologies
Information Security and Privacy Principles
Practice Quiz - Part 1
Practice Quiz - Part 2

Erscheinungsdatum
Vorwort Vikas Yadav
Verlagsort Birmingham
Sprache englisch
Maße 191 x 235 mm
Themenwelt Informatik Netzwerke Sicherheit / Firewall
Informatik Weitere Themen Zertifizierung
ISBN-10 1-80323-690-6 / 1803236906
ISBN-13 978-1-80323-690-2 / 9781803236902
Zustand Neuware
Haben Sie eine Frage zum Produkt?
Mehr entdecken
aus dem Bereich
Das Lehrbuch für Konzepte, Prinzipien, Mechanismen, Architekturen und …

von Norbert Pohlmann

Buch | Softcover (2022)
Springer Vieweg (Verlag)
34,99
Management der Informationssicherheit und Vorbereitung auf die …

von Michael Brenner; Nils gentschen Felde; Wolfgang Hommel

Buch (2024)
Carl Hanser (Verlag)
69,99

von Chaos Computer Club

Buch | Softcover (2024)
KATAPULT Verlag
28,00