{"product_id":"isaca-cism-training-boot-camp","title":"ISACA CISM Training Boot Camp","description":"\u003cp class=\"course-intro\"\u003eInfosec's Certified Information Security Manager (CISM) Boot Camp is a five-day training course focused on preparing you for the ISACA CISM exam. You will leave with the knowledge and domain expertise needed to pass the CISM exam the first time you take it.\u003c\/p\u003e\u003cul class=\"course-facts\"\u003e\n\u003cli\u003eCode LBC109\u003c\/li\u003e\n\u003cli\u003eOpen enrollment\u003c\/li\u003e\n\u003cli\u003eSelf paced\u003c\/li\u003e\n\u003c\/ul\u003e\u003cnav class=\"course-nav\"\u003e\u003ca href=\"#overview\"\u003eOverview\u003c\/a\u003e\u003ca href=\"#objective\"\u003eObjective\u003c\/a\u003e\u003ca href=\"#outline\"\u003eOutline\u003c\/a\u003e\u003ca href=\"#requirements\"\u003eRequirements\u003c\/a\u003e\u003ca href=\"#prerequisites\"\u003ePrerequisites\u003c\/a\u003e\u003ca href=\"#instructor\"\u003eInstructor\u003c\/a\u003e\u003ca href=\"#faqs\"\u003eFAQs\u003c\/a\u003e\u003c\/nav\u003e\u003ch3 id=\"overview\"\u003eOverview\u003c\/h3\u003e\u003cdiv class=\"course-sec\"\u003e\n\u003cp\u003eThis CISM Boot Camp is designed for experienced information security managers and other professionals who manage, design, oversee or assess an enterprise's information security.\u003c\/p\u003e\n\u003cp\u003eThe training prepares you for the CISM certification exam by testing your knowledge and your ability to apply it to real-world scenarios. You will gain in-depth knowledge of security governance, risk management, security program development and management, and security incident management.\u003c\/p\u003e\n\u003cp\u003eThe boot camp has been updated to align with the new CISM job practice areas and is designed to fully prepare you to pass the challenging CISM exam. You will receive an exam voucher for the ISACA CISM certification exam with your enrollment.\u003c\/p\u003e\n\u003cp\u003eOur Certification Success Program, paired with our provided prep materials, boot camp sessions, and post-work, is designed to ease any concerns you may have when taking the certification exam. If your first attempt is unsuccessful, this program provides peace of mind that you may be eligible to take the certification exam a second time (if needed) at no additional fee.\u003c\/p\u003e\n\u003cp\u003e*To qualify for a second certification exam voucher, students must:\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003eAttend at least 85% of each day of class\u003c\/li\u003e \u003cli\u003eScore a 90% or higher on their final practice exam\u003c\/li\u003e \u003cli\u003eTake the first exam within 90 days of class completion\u003c\/li\u003e \u003cli\u003eUpload your exam failure notice from your first exam attempt\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003c\/div\u003e\u003ch3 id=\"objective\"\u003eObjective\u003c\/h3\u003e\u003cdiv class=\"course-sec\"\u003e\n\u003cp\u003e\u003cstrong\u003eWhat you will learn\u003c\/strong\u003e\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003eInformation security governance\u003c\/li\u003e \u003cli\u003eSecurity metrics and measuring the effectiveness\u003c\/li\u003e \u003cli\u003eManaging acquisitions, implementations, incidents, and more\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003e\u003cstrong\u003eHow you will benefit\u003c\/strong\u003e\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003ePrepare for the CISM examination\u003c\/li\u003e \u003cli\u003eGain in-depth knowledge of industry concepts and best practices\u003c\/li\u003e \u003cli\u003eAccelerate your career growth by getting an in-demand credential that employers desire\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003c\/div\u003e\u003ch3 id=\"outline\"\u003eOutline\u003c\/h3\u003e\u003cdiv class=\"course-sec\"\u003e\u003col style=\"list-style-type: upper-roman;\"\u003e \u003cli\u003eInformation Security Governance \u003col style=\"list-style-type: upper-alpha;\"\u003e \u003cli\u003eInformation security concepts\u003c\/li\u003e \u003cli\u003eRelationship between information security and business operations\u003c\/li\u003e \u003cli\u003eTechniques used to secure senior management commitment and support of information security management\u003c\/li\u003e \u003cli\u003eMethods of integrating information security governance into the overall enterprise governance framework\u003c\/li\u003e \u003cli\u003ePractices associated with an overall policy directive that captures senior management\u003c\/li\u003e \u003cli\u003eLevel direction and expectations for information security in laying the foundation for information security management within an organization\u003c\/li\u003e \u003cli\u003eAn information security steering group function\u003c\/li\u003e \u003cli\u003eInformation security management roles, responsibilities and organizational structure\u003c\/li\u003e \u003cli\u003eAreas of governance (e.g., risk management, data classification management, network security, system access)\u003c\/li\u003e \u003cli\u003eCentralized and decentralized approaches to coordinating information security\u003c\/li\u003e \u003cli\u003eLegal and regulatory issues associated with internet businesses, global transmissions and transborder data flows (e.g., privacy, tax laws and tariffs, data import\/export restrictions, restrictions on cryptography, warranties, patents, copyrights, trade secrets, national security)\u003c\/li\u003e \u003cli\u003eCommon insurance policies and imposed conditions (e.g., crime or fidelity insurance, business interruption)\u003c\/li\u003e \u003cli\u003eRequirements for the content and retention of business records and compliance\u003c\/li\u003e \u003cli\u003eProcess for linking policies to enterprise business objectives\u003c\/li\u003e \u003cli\u003eFunction and content of essential elements of CISM details\u003c\/li\u003e \u003cli\u003eTechniques for developing an information security process improvement model for sustainable and repeatable information security policies and procedures\u003c\/li\u003e \u003cli\u003eInformation security process improvement and its relationship to traditional process management, security architecture development and modeling, and security infrastructure\u003c\/li\u003e \u003cli\u003eGenerally accepted international standards for information security management and related process improvement models\u003c\/li\u003e \u003cli\u003eThe key components of cost benefit analysis and enterprise transformation\/ migration plans (e.g., architectural alignment, organizational positioning, change management, benchmarking, market\/competitive analysis)\u003c\/li\u003e \u003cli\u003eMethodology for business case development and computing enterprise value propositions\u003c\/li\u003e \u003c\/ol\u003e \u003c\/li\u003e \u003cli\u003eRisk Management \u003col style=\"list-style-type: upper-alpha;\"\u003e \u003cli\u003eInformation resources used in support of business processes\u003c\/li\u003e \u003cli\u003eInformation resource valuation methodologies\u003c\/li\u003e \u003cli\u003eInformation classification\u003c\/li\u003e \u003cli\u003eThe principles of development of baselines and their relationship to risk-based assessments of control requirements\u003c\/li\u003e \u003cli\u003eLife-cycle-based risk management principles and practices\u003c\/li\u003e \u003cli\u003eThreats, vulnerabilities and exposures associated with confidentiality, integrity and availability of information resources\u003c\/li\u003e \u003cli\u003eQuantitative and qualitative methods used to determine sensitivity and criticality of information resources and the impact of adverse events\u003c\/li\u003e \u003cli\u003eUse of gap analysis to assess generally accepted standards of good practice for information security management against current state\u003c\/li\u003e \u003cli\u003eRecovery time objectives (RTO) for information resources and how to determine RTO\u003c\/li\u003e \u003cli\u003eRTO and how it relates to business continuity and contingency planning objectives and processes\u003c\/li\u003e \u003cli\u003eRisk mitigation strategies used in defining security requirements for information resources supporting business applications\u003c\/li\u003e \u003cli\u003eCost benefit analysis techniques in assessing options for mitigating risks threats and exposures to acceptable levels\u003c\/li\u003e \u003cli\u003eManaging and reporting status of identified risks\u003c\/li\u003e \u003c\/ol\u003e \u003c\/li\u003e \u003cli\u003eInformation Security Program Development \u0026amp; Management \u003col style=\"list-style-type: upper-alpha;\"\u003e \u003cli\u003eMethods to develop an implementation plan that meets security requirements identified in risk analyses\u003c\/li\u003e \u003cli\u003eProject management methods and techniques\u003c\/li\u003e \u003cli\u003eThe components of an information security governance framework for integrating security principles, practices, management and awareness into all aspects and all levels of the enterprise\u003c\/li\u003e \u003cli\u003eSecurity baselines and configuration management in the design and management of business applications and the infrastructure\u003c\/li\u003e \u003cli\u003eInformation security architectures (e.g., single sign-on, rules-based as opposed to list-based system access control for systems, limited points of systems administration)\u003c\/li\u003e \u003cli\u003eInformation security technologies (e.g., cryptographic techniques and digital signatures, enabling management to select appropriate controls)\u003c\/li\u003e \u003cli\u003eSecurity procedures and guidelines for business processes and infrastructure activities\u003c\/li\u003e \u003cli\u003eSystems development life cycle methodologies (e.g., traditional SDLC, prototyping)\u003c\/li\u003e \u003cli\u003ePlanning, conducting, reporting and follow-up of security testing\u003c\/li\u003e \u003cli\u003eAssessing and authorizing the compliance of business applications and infrastructure to the enterprise's information security governance framework\u003c\/li\u003e \u003cli\u003eTypes, benefits and costs of physical, administrative and technical controls\u003c\/li\u003e \u003cli\u003ePlanning, designing, developing, testing and implementing information security requirements into an enterprise's business processes\u003c\/li\u003e \u003cli\u003eSecurity metrics design, development, and implementation\u003c\/li\u003e \u003cli\u003eAcquisition management methods and techniques (e.g., evaluation of vendor service level agreements, preparation of contracts)\u003c\/li\u003e \u003cli\u003eHow to interpret information security policies into operational use\u003c\/li\u003e \u003cli\u003eInformation security administration process and procedures\u003c\/li\u003e \u003cli\u003eMethods for managing the implementation of the enterprise's information security program through third parties, including trading partners and security services providers\u003c\/li\u003e \u003cli\u003eContinuous monitoring of security activities in the enterprise's infrastructure and business applications\u003c\/li\u003e \u003cli\u003eMethods used to manage success\/failure in information security investments through data collection and periodic review of key performance indicators\u003c\/li\u003e \u003cli\u003eChange and configuration management activities\u003c\/li\u003e \u003cli\u003eInformation security management due diligence activities and reviews of the infrastructure\u003c\/li\u003e \u003cli\u003eLiaison activities with internal\/external assurance providers performing information security reviews\u003c\/li\u003e \u003cli\u003eDue diligence activities, reviews and related standards for managing and controlling access to information resources\u003c\/li\u003e \u003cli\u003eExternal vulnerability reporting sources, which provide information that may require changes to the information security in applications and infrastructure\u003c\/li\u003e \u003cli\u003eEvents affecting security baselines that may require risk reassessments and changes to information security requirements in security plans, test plans and reperformance\u003c\/li\u003e \u003cli\u003eInformation security problem management practices\u003c\/li\u003e \u003cli\u003eInformation security manager facilitative roles as change agents, educators and consultants\u003c\/li\u003e \u003cli\u003eWays in which cultural and socially acceptable differences affect the behavior of staff\u003c\/li\u003e \u003cli\u003eActivities that can change cultural and socially acceptable behavior of staff\u003c\/li\u003e \u003cli\u003e Methods and techniques for security awareness training and education\u003c\/li\u003e \u003c\/ol\u003e \u003c\/li\u003e \u003cli\u003eInformation Security Incident Management \u003col style=\"list-style-type: upper-alpha;\"\u003e \u003cli\u003eComponents of an incident response capability\u003c\/li\u003e \u003cli\u003eInformation security emergency management practices (e.g., production change control activities, development of computer emergency response team)\u003c\/li\u003e \u003cli\u003eDisaster recovery planning and business recovery processes\u003c\/li\u003e \u003cli\u003eDisaster recovery testing for infrastructure and critical business applications\u003c\/li\u003e \u003cli\u003eEscalation processes for effective security management\u003c\/li\u003e \u003cli\u003eIntrusion detection policies and processes\u003c\/li\u003e \u003cli\u003eHelp desk processes for identifying security incidents reported by users and distinguishing them from other issues dealt with the help desks\u003c\/li\u003e \u003cli\u003eNotification process in managing security incidents and recovery (e.g., automated notice and recovery mechanisms in response to virus alerts in a real-time fashion)\u003c\/li\u003e \u003cli\u003eRequirements for collecting and presenting evidence: rules for evidence, admissibility of evidence, quality and completeness of evidence\u003c\/li\u003e \u003cli\u003ePost-incident reviews and follow-up procedures\u003c\/li\u003e \u003c\/ol\u003e \u003c\/li\u003e\n\u003c\/ol\u003e\u003c\/div\u003e\u003ch3 id=\"requirements\"\u003eRequirements\u003c\/h3\u003e\u003cdiv class=\"course-sec\"\u003e\n\u003cp\u003e\u003cstrong\u003eRequirements:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eHardware Requirements:\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003eThis course can be taken on either a PC, Mac, or Chromebook.\u003c\/li\u003e \u003cli\u003eA microphone.\u003c\/li\u003e \u003cli\u003eSpeakers.\u003c\/li\u003e \u003cli\u003eWebcam.\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003eSoftware Requirements:\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003ePC: Windows 7 or later.\u003c\/li\u003e \u003cli\u003eMac: macOS 12 or later.\u003c\/li\u003e \u003cli\u003eBrowser: The latest version of Google Chrome or Mozilla Firefox is preferred. Microsoft Edge and Safari are also compatible.\u003c\/li\u003e \u003cli\u003e Microsoft Word Online .\u003c\/li\u003e \u003cli\u003e Adobe Acrobat Reader .\u003c\/li\u003e \u003cli\u003e Zoom .\u003c\/li\u003e \u003cli\u003eSoftware must be installed and fully operational before the course begins.\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003eOther:\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003eEmail capabilities and access to a personal email account.\u003c\/li\u003e\n\u003c\/ul\u003e\n\u003cp\u003e\u003cstrong\u003eInstructional Material Requirements:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eThe student materials required for this course are included in enrollment and available online.\u003c\/p\u003e\n\u003c\/div\u003e\u003ch3 id=\"prerequisites\"\u003ePrerequisites\u003c\/h3\u003e\u003cdiv class=\"course-sec\"\u003e\n\u003cp\u003e\u003cstrong\u003ePrerequisites:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eThis course is intended for chief information security officers, security systems administrators, information assurance analysts, IT security engineers, senior IT security consultants, senior information security risk officers, or anyone who manages or oversees security strategies.\u003c\/p\u003e\n\u003cp\u003e\u003cstrong\u003eCertification Requirements:\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eTo meet the CISM requirements, you will need the following:\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003eSubmit verified evidence of a minimum of five years of information security work experience, with a minimum of three years of information security management work experience in three or more of the job practice analysis areas. The work experience must be gained within the ten years preceding the application date for certification or within five years from the date of initially passing the exam.\u003c\/li\u003e\n\u003c\/ul\u003e You've got questions.\u003cbr\u003e We're here to help.\u003c\/div\u003e\u003ch3 id=\"instructor\"\u003eInstructor\u003c\/h3\u003e\u003cdiv class=\"course-sec\"\u003e\u003cp\u003eBoot camps are led by instructors that have years of industry experience and are recognized as subject matter experts.\u003c\/p\u003e\u003c\/div\u003e\u003ch3 id=\"faqs\"\u003eFAQs\u003c\/h3\u003e\u003cdiv class=\"course-sec\"\u003e\n\u003cp\u003e\u003cstrong\u003eWhat does this CISM training course provide that others do not? \u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eThe ISACA CISM training course is truly like no other you will find. You will be taught by a live instructor who can answer questions and provide advice. You will receive access to the Skills Library for 12 months after your enrollment into the training course. You will also receive peace of mind from the ISACA Certification Success Program paired with our provided prep materials, boot camp sessions, and post-work. In this program, if your first attempt is unsuccessful, you may be eligible to take the certification exam a second time with no additional fee.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eWhat is a CISM Certification? \u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eThe Certified Information Security Manager (CISM) certification validates your expertise in information security governance, program development and management, incident management, and risk management. It is designed for professionals with technical expertise and experience in IS\/IT security who want to move from an integral team player up to manager. The CISM certification will help you gain credibility and will add confidence to your interactions with stakeholders, regulators, and peers.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eWhat kind of salary can I expect with a CISM Certification?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eThe average certified professional CISM salary ranges. Entry-level positions will garner a salary at the lower end of the spectrum. In contrast, candidates who have successfully handled complex projects and are placed at a senior level can expect a significantly higher five or six-figure salary. According to ZipRecruiter, the average salary for a CISM professional is $130,645 overall, and Glassdoor reports the average compensation for Certified Information Security Managers to be $107,015 as of December 2022. Your relevant work experience and the nature of the IT security projects you have worked on will influence your compensation regardless of your job title.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eWhat are the pre-requirements for taking the CISM? \u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eCISM requirements include a minimum of 5 years of professional information security management work experience—as described in the CISM job practice areas. Any work experience must be acquired within the 10-year period preceding the application for certification. Candidates will have up to 5 years from the date they pass the CISM exam to gain the required work experience and apply for certification.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eWhat kinds of jobs can I get with a CISM Certification? \u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eUpon earning your CISM, you may qualify for additional IT and IS roles, including information security manager, information security consultant, chief information officer, and chief information security officer. The CISM is a great addition to the resume of anyone interested in learning information security management skills and getting certified.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eDoes this course prepare you for a certification?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eYes, you will be prepared for the ISACA CISM – Certified Information Security Manager exam. To sit for the exam, you will need to meet the following requirements:\u003c\/p\u003e\n\u003cul\u003e \u003cli\u003eSubmit verified evidence of a minimum of five years of information security work experience, with a minimum of three years of information security management work experience in three or more of the job practice analysis areas. The work experience must be gained within the ten years preceding the application date for certification or within five years from the date of initially passing the exam.\u003c\/li\u003e\n\u003c\/ul\u003e \u003cp\u003e\u003cstrong\u003eWhen can I start this course?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eYou can register for the boot camp whenever you are ready. Our team will help you select the session that will best fit you.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eHow long does it take to complete this course?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eThe boot camp is 5 days in length. You will have 3 months from the completion of the boot camp to access all boot camp materials.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eWhat kind of support will I receive?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eThe boot camp instructor will be available during the session to answer any questions. You will also have access to the Infosec Skills platform where you will be able to create support requests, as needed.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eWhat happens when I complete the course? \u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eUpon successful completion of your boot camp session, you will be awarded a certificate of completion from Infosec and the school or organization that you registered through.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eAm I guaranteed a job?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eHope Training Academy courses will help you gain the skills and knowledge you need to take the next step in your career and stand out to potential employers. However, you should always research the job market in your area before enrolling.\u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eCan I get financial assistance?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eHope Training Academy courses are non-credit, so they do not qualify for federal aid, FAFSA, and Pell Grant. In some states, vocational rehab or workforce development boards may provide funding to take our courses. Additionally, you may qualify for financial assistance if you meet certain requirements. Learn more about financial assistance. \u003c\/p\u003e \u003cp\u003e\u003cstrong\u003eHow can I get more information about this course?\u003c\/strong\u003e\u003c\/p\u003e\n\u003cp\u003eIf you have questions that are not answered on our website, representatives are available by phone. You can also call us at 1-855-532-7642 during regular business hours to have your questions promptly answered. If you are visiting us during non-business hours, please send us a question using the \"Contact Us.\"\u003c\/p\u003e Reviews \u003cp class=\"quote_block\"\u003e I really appreciate that our instructor was extremely knowledgeable and was able to provide the information in a way that it could be understood. He also provided valuable test-taking strategies that I know not only helped me with this exam, but will help in all exams I take in the future. \u003c\/p\u003e \u003cp class=\"quote_block\"\u003e Excellent! Our instructor had a vast background and related the materials to real life. Much better than just teaching the materials to pass an exam ... but he did that as well. He went out of his way in class. The extra materials really benefited us when we returned to our real jobs! Great experience! \u003c\/p\u003e \u003cp class=\"quote_block\"\u003e Very impressed with Infosec. My instructor did a great job delivering the information strategically and in a way for all to understand. I would definitely take another class\/certification prep course. \u003c\/p\u003e\n\u003c\/div\u003e","brand":"Hope Training Academy","offers":[{"title":"Default Title","offer_id":47318315729084,"sku":"_LBC109","price":4218.0,"currency_code":"USD","in_stock":true}],"thumbnail_url":"\/\/cdn.shopify.com\/s\/files\/1\/0742\/1391\/6860\/files\/Infosec-ISACA-CISM-Training-Boot-Camp-935x572.jpg?v=1787969534","url":"https:\/\/store.hopetrainingacademy.org\/products\/isaca-cism-training-boot-camp","provider":"Hope Training Academy dba Video Game Palooza","version":"1.0","type":"link"}