cisa

Certified Information Systems Auditor

cisa

Certified Information Systems Auditor® (CISA®), world-renowned as the standard of achievement for auditing, monitoring, and assessing IT and business systems, also acknowledges the importance of emerging technologies. Achieving a CISA certification showcases your expertise and asserts your ability to apply a risk-based approach to audit engagements. Addressing innovations like AI and blockchain, CISA ensures that IT audit professionals stay current on the latest technology trends and advancements.

Course Content

Domain 1: The Process of Auditing Information Systems
Module 1.1: Audit Planning & Strategy
4 Topics
1 Quiz
IT Audit Standards, Guidelines, and Codes of Ethics
Business Processes and Their Impact on Audit Risk
Developing a Risk-Based IT Audit Strategy
Types of Audits (Internal, External, Integrated)
Quiz: Module 1.1 – Audit Planning & Strategy
Module 1.2: Audit Execution
5 Topics
1 Quiz
Internal Control Principles and Objectives
Audit Methodology and Application Controls
Sampling Techniques and Methodologies
Data Analytics and CAATs (Computer-Assisted Audit Techniques)
Gathering and Evaluating Audit Evidence
Quiz: Module 1.2 – Audit Execution
Module 1.3: Reporting & Communication
3 Topics
1 Quiz
Writing Effective Audit Reports
Communicating Results and Recommendations to Stakeholders
Management Follow-up and Corrective Action Implementation
Quiz: Module 1.3 – Reporting & Communication
Module 1.4: Audit Quality Assurance
1 Topic
1 Quiz
Quality Assurance and Improvement of the Audit Function
Quiz: Module 1.4 – Audit Quality Assurance
Domain 2: Governance and Management of IT
Module 2.1: IT Governance Framework
4 Topics
1 Quiz
IT Strategy, Policies, and Standards
IT Governance Frameworks (e.g., COBIT 2019)
Organizational Structure, Roles, and Responsibilities
IT Resource and Portfolio Management
Quiz: Module 2.1 – IT Governance Framework
Module 2.2: IT Management Practices
4 Topics
1 Quiz
IT Performance Monitoring and Reporting (KPIs, KRIs)
IT Human Resource Management and Competency Development
Sourcing Strategies and Third-Party Service Management
Organizational Change Management
Quiz: Module 2.2 – IT Management Practices
Module 2.3: IT Risk and Compliance
3 Topics
1 Quiz
IT Integration with Enterprise Risk Management (ERM)
IT Risk Management Frameworks and Methodologies
Legal, Regulatory, and Contractual Compliance
Quiz: Module 2.3 – IT Risk and Compliance
Domain 3: Information Systems Acquisition, Development, and Implementation
Module 3.1: Project Management & Governance
3 Topics
1 Quiz
IT Project Management Practices (Agile, Waterfall)
Project Governance and Business Case Development
Feasibility Analysis and ROI Calculations
Quiz: Module 3.1 – Project Management & Governance
Module 3.2: System Development Life Cycle (SDLC)
3 Topics
1 Quiz
SDLC Phases and Related Controls
Development Methodologies (e.g., DevOps, Prototyping)
Configuration and Release Management
Quiz: Module 3.2 – System Development Life Cycle (SDLC)
Module 3.3: Testing & Implementation
3 Topics
1 Quiz
Testing Methodologies (Unit, Integration, UAT)
Application Controls (Input, Processing, Output)
System Implementation Strategies (Pilot, Parallel, Cutover)
Quiz: Module 3.3 – Testing & Implementation
Domain 4: Information Systems Operations and Business Resilience
Module 4.1: IT Service Management
3 Topics
1 Quiz
IT Service Management Frameworks (e.g., ITIL)
Infrastructure and IT Operations Management
Database Management and Data Quality
Quiz: Module 4.1 – IT Service Management
Module 4.2: Business Resilience & Continuity
3 Topics
1 Quiz
Business Impact Analysis (BIA)
Disaster Recovery Plan (DRP) Development
Business Continuity Plan (BCP) Development and Testing
Quiz: Module 4.2 – Business Resilience & Continuity
Module 4.3: Systems & Infrastructure
4 Topics
1 Quiz
System Hardening and Vulnerability Management
Patch and Release Management
Network Security Controls (Firewalls, IDS/IPS)
Log Management and Monitoring (SIEM)
Quiz: Module 4.3 – Systems & Infrastructure
Domain 5: Protection of Information Assets
Module 5.1: Security Fundamentals & Identity Management
4 Topics
1 Quiz
Identity and Access Management (IAM) Lifecycle
Logical Access Controls (Passwords, MFA, Tokens)
Quiz: Module 5.1 – Security Fundamentals & Identity Management
Module 5.2: Network Security & Cryptography
4 Topics
1 Quiz
Network Security Protocols and Services
Encryption Concepts and Cryptographic Techniques
Public Key Infrastructure (PKI) and Key Management
Virtual Private Networks (VPNs) and Wireless Security
Quiz: Module 5.2 – Network Security & Cryptography
Module 5.3: Physical Security & Incident Management
4 Topics
1 Quiz
Physical Access and Environmental Controls
Security Incident Response and Handling
Digital Forensics and Evidence Collection
Threat and Vulnerability Management
Quiz: Module 5.3 – Physical Security & Incident Management