You are on page 1of 6

CERTIFIED INFORMATION SECURITY MANAGER

(CISM)

Kelly Handerhan, Instructor,


CISM, CISSP, PMP
Course Outline
●What is CISM and what to expect from the exam?
●The Five Domains
1.Information Security Governance
2.Risk Management
3.Information Security Program Management
4.Information Security Management
5.Response Management
What is CISM?

• The management-focused CISM certification promotes


international security practices and recognizes the
individual who manages, designs, and oversees and
assesses an enterprise’s information security.

• Geared towards professionals who have Five (5) or


more years of experience in information security
management. Waivers are available for a maximum of
two (2) years
The Breakdown:

● Domain 1: Information Security Governance (23% of the exam or 46 questions)

● Domain 2: Information Risk Management (22% of the exam or 44 questions)


● Domain 3: Information Security Program Development (17% of the exam or 34 questions)
● Domain 4: Information Security Program Management (24% of the exam or 48 questions)

● Domain 5: Incident Management and Response (14% of the exam or 28 questions)


Exam Specifics

ISACA (Information Security Audit and Control Association)


www.isaca.org
Offered Only Three Times Per Year
200 Questions
Four Hour Time Limit
Multiple Choice
Choose the Credited Response
Passing score is 450 on a scale of 200-800
What is next?
How Do I Pass the First Time?

● Review Cybrary Slides


● Study the Material
● Think Like a Manager
● Find the Credited Response
● Think: Cost/Benefit Analysis

You might also like