AI Icon Cybersecurity

Course Details Image

Limited Time Offer

Enrol now and save $0 on your course fee

03 Days 03 Hours 03 Minutes 03 Seconds

Managing IT risk is no longer a technical task—it is a business-critical discipline. This course provides participants with the ability to identify, assess, and manage enterprise risks while implementing effective information systems controls. It develops cross-functional insight into how governance, risk, and control mechanisms support decision-making and resilience.

Learning Outcomes:

  • Identify and assess IT and enterprise risk

  • Evaluate risk management strategies and controls

  • Implement and monitor risk responses

  • Align information systems controls with business objectives

Key Topics:

  • Risk identification and evaluation techniques

  • Control design and implementation

  • Governance and compliance frameworks

  • Information systems audit and assurance

  • Certification preparation for ISACA® Certified in Risk and Information Systems Control (CRISC) certification

 

Exam Details

This course is designed to build participants’ understanding of key concepts and domains covered in the ISACA® Certified in Risk and Information Systems Control™ (CRISC™) certification.

The CRISC exam validates the ability to identify, assess, and manage IT and enterprise risks. It is intended for IT and business professionals responsible for implementing information system controls and managing risk.

The course includes official ISACA courseware:

The CRISC exam covers the following four domains:

DomainWeightage
Governance26%
IT Risk Assessment20%
Risk Response and Reporting32%
Information Technology and Security22%

To maximise success, participants are strongly encouraged to complement the course with additional self-study, revision of course materials, and dedicated practice before attempting the exam.

Introduction to Certified in Risk and Information Systems Control (CRISC)

  • Examination information and preparation techniques
  • Understand how questions are structured
  • Preparing for CRISC examination
  • Certification Prerequisites, Application, Maintenance and Renewal

Domain 1 Governance

  1. Organisational Governance
  • Organizational Strategy, Goals, and Objectives
  • Organizational Structure, Roles, and Responsibilities
  • Organizational Culture
  • Policies and Standards
  • Business Processes
  • Organizational Assets
  1. Risk Governance
  • Enterprise Risk Management and Risk Management Framework
  • Three Lines of Defense
  • Risk Profile
  • Risk Appetite and Risk Tolerance
  • Legal, Regulatory, and Contractual Requirements
  • Professional Ethics of Risk Management

 

Domain 2 IT Risk Assessment

  1. IT Risk Identification
  • Risk Events
  • Threat Modelling and Threat Landscape
  • Vulnerability and Control Deficiency Analysis
  • Risk Scenario Development
  1. IT Risk Analysis, Evaluation & Assessment
  • Risk Assessment Concepts, Standards, and Frameworks
  • Risk Register
  • Risk Analysis Methodologies
  • Business Impact Analysis
  • Inherent, Current and Residual Risk

 

Domain 3 Risk Response and Reporting

  1. Risk Response
    • Risk and Control Ownership
    • Risk Treatment / Risk Response Options
    • Third-Party Risk Management
    • Issue, Finding, and Exception Management
    • Management of Emerging Risk
  2. Control Design and Implementation
  • Control Types, Standards, and Frameworks
  • Control Design, Selection, and Analysis
  • Control Implementation
  • Control Testing and Effectiveness Evaluation
  1. Risk Monitoring and Reporting
  • Risk Treatment Plans
  • Data Collection, Aggregation, Analysis, and Validation
  • Risk and Control Monitoring Techniques
  • Risk and Control Reporting Techniques
  • Key Performance Indicators
  • Key Risk Indicators
  • Key Control Indicators

 

Domain 4 Information Technology and Security

  1. Information Technology Principles
  • IT Operations Management  
  • Enterprise Resiliency
  • Project Management
  • Data Lifecycle Management
  • System Development Life Cycle  
  • Emerging Trends in Technology
  1. Information Security Principles
  • Information Security Concepts, Frameworks, and Standards
  • Information Security Awareness Training
  • Data Privacy and Principles of  Data Protection
*Important Note : Fees are subject to Singapore's prevailing Goods and Services Tax (GST).
Course Details Image
[Course Title]

Explore Other Courses

We couldn’t find any result
based on your selection.
Please wait a moment
while we retrieve the data

Have Question?

We’re here to help — reach out anytime.

By submitting this form, you consent to be contacted via email and/or your mobile number regarding your enquiry. You consent to the collection, use, disclosure and processing of your personal data in accordance with our Personal Data Policy.