[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"doc-detail-202477-en":3,"doc-seo-202477-105":29,"detail-sidebar-cat-0-en-105":88},{"code":4,"msg":5,"data":6},0,"success",{"doc_id":7,"user_id":8,"nickname":9,"user_avatar":10,"doc_module":4,"category_id":11,"category_name":12,"doc_title":13,"doc_description":14,"doc_content":15,"file_id":16,"file_url":17,"file_type":18,"file_size":19,"view_count":4,"is_deleted":4,"is_public":20,"is_downloadable":20,"audit_status":20,"page_count":20,"language":21,"language_code":22,"site_id":23,"html_lang":22,"table_of_contents":24,"faqs":25,"seo_title":26,"seo_description":14,"update_tm":27,"read_time":28},202477,1374402524268,"Berry Peter","https://ap-avatar.wpscdn.com/davatar_3d24733baf745e90a7e4bdd5f77d97b2",4,"Exam","CISM Course Outline - 202204","Course outline for CISM certification aimed at IT and information security professionals transitioning from individual contributor to management. Emphasizes information security governance, program development and management, incident management, and risk management, and explains exam structure and delivery options. Defines eligibility expectations (work experience and security manager role). Covers CPE requirements to maintain certification, estimated course duration for online and in-person/VILT formats, and a domain-by-domain topic map across governance, risk, security program, and incident management.","Course Description  \nGeneral Information  \nDesigned for IT professionals with technical expertise and experience in IS/IT security and control looking to transition from team player to manager. CISM can add credibility and confidence to interactions with internal and external stakeholders, peersand regulators.  \nThis certification indicates expertise in information security governance, program development and management, incident management and risk management. If you are a mid-career IT professional aspiring to senior management roles in IT security and control, CISM can get you the visibility you need.  \nThere are 150 Questions on the exam which must be completed in four hours. It is available online via remote proctoring and at in-person testing centers where available.  \nCISM Certification Candidates  \nCISM is intended for information security professionals with at least five years of relevant work experience and at least three years in the role of information security manager. Job titles include:  \n􀂄 CISO  \n􀂄 CSO  \n􀂄 Security Director/Manager/Consultant  \n􀂄 IT Director/Manager/Consultant  \n􀂄 Compliance/Risk/Privacy Director and Manager  \nCPE Overview  \nTo maintain your CISM, you must earn and report a minimum of 120 CPE hours every three-year reporting cycle and at least 20 hours annually. CISM awards up to one hour of CPE for everyone hour of instructor led training. Online review course earns 20 CPEs and Virtual Instructor-Led Training (VILT) earns 14 CPEs.  \nCourse Duration  \n􀂄 Online Course: Approximately 16 hours  \n􀂄 In-person training or VILT: 2–4 days  \nCourse Topics  \nDomain 1: Information Security Governance  \n􀂄 Enterprise Governance Overview  \n􀂄 Organizational Culture, Structures, Roles and Responsibilities  \n􀂄 Legal, Regulatory and Contractual Requirements  \n􀂄 Information Security Strategy  \n􀂄 Information Governance Frameworks and Standards  \n􀂄 Strategic Planning  \nDomain 2: Information Security Risk Management  \n􀂄 Risk and Threat Landscape  \n􀂄 Vulnerability and Control Deficiency Analysis  \n􀂄 Risk Assessment, Evaluation and Analysis  \n􀂄 Information Risk Response  \n􀂄 Risk Monitoring, Reporting and Communication Domain 3: Information Security Program  \n􀂄 IS Program Development and Resources  \n􀂄 IS Standards and Frameworks  \n􀂄 Defining an IS Program Road Map  \nDomain 3: Information Security Program, continued  \n􀂄 IS Program Metrics  \n􀂄 IS Program Management  \n􀂄 IS Awareness and Training  \n􀂄 Integrating the Security Program with IT Operations  \n􀂄 Program Communications, Reporting and Performance Management  \nDomain 4: Incident Management  \n􀂄 Incident Management and Incident Response Overview  \n􀂄 Incident Management and Response Plans  \n􀂄 Incident Classification/Categorization  \n􀂄 Incident Management Operations, Tools and Technologies  \n􀂄 Incident Investigation, Evaluation, Containment and Communication  \n􀂄 Incident Eradication, Recovery and Review  \n􀂄 Business Impact and Continuity  \n􀂄 Disaster Recovery Planning  \n􀂄 Training, Testing and Evaluation  \nIS ACA G LO BA L | 1700 E. Golf Road | Suite 400 | Schaumburg, [IL 60173 | USA |](IL 60173 | USA | isaca.org)[ isaca.org](IL 60173 | USA | isaca.org)  \n© 2022 ISACA. All Rights Reserved.  \nR2022-04","cbCaiiLPrCckudSm","https://ap.wps.com/l/cbCaiiLPrCckudSm","pdf",161484,1,"English","en",105,"# Course Description\n# General Information\n# CISM Certification Candidates\n# CPE Overview\n# Course Duration\n# Course Topics\n## Domain 1: Information Security Governance\n## Domain 2: Information Security Risk Management\n## Domain 3: Information Security Program\n## Domain 4: Incident Management","[{\"question\":\"Who is the CISM course designed for?\",\"answer\":\"The course is designed for IT professionals with experience in IS/IT security and control who want to move from individual contribution to management. It targets information security managers and leaders in governance, program development, risk, and incident management.\"},{\"question\":\"What are the exam requirements mentioned in the outline?\",\"answer\":\"The outline states the exam has 150 questions to be completed in four hours. It is available online with remote proctoring and at in-person testing centers where available.\"},{\"question\":\"How does CISM require candidates to maintain certification?\",\"answer\":\"Candidates must earn and report a minimum of 120 CPE hours every three-year reporting cycle, including at least 20 hours annually. The outline also specifies CPE allocations for instructor-led training, online review courses, and VILT.\"}]","CISM Course Outline - 202204 | PDF",1788547277,3,{"code":4,"msg":30,"data":31},"ok",{"site_id":23,"language":22,"slug":32,"title":13,"keywords":33,"description":14,"schema_data":34,"social_meta":83,"head_meta":85,"extra_data":87,"updated_unix":27},"cism-course-outline-202204","",{"@graph":35,"@context":82},[36,51,65],{"@type":37,"itemListElement":38},"BreadcrumbList",[39,43,47,49],{"item":40,"name":41,"@type":42,"position":20},"https://docshare.wps.com","Home","ListItem",{"item":44,"name":45,"@type":42,"position":46},"https://docshare.wps.com/document/","Document",2,{"item":48,"name":12,"@type":42,"position":28},"https://docshare.wps.com/document/exam/",{"item":50,"name":13,"@type":42,"position":11},"https://docshare.wps.com/document/cism-course-outline-202204/202477/",{"url":50,"name":13,"@type":52,"author":53,"headline":13,"publisher":55,"fileFormat":58,"inLanguage":22,"description":14,"dateModified":59,"datePublished":59,"encodingFormat":58,"isAccessibleForFree":60,"interactionStatistic":61},"DigitalDocument",{"name":9,"@type":54},"Person",{"url":40,"name":56,"@type":57},"DocShare","Organization","application/pdf","2026-09-04",true,{"@type":62,"interactionType":63,"userInteractionCount":4},"InteractionCounter",{"@type":64},"ViewAction",{"@type":66,"mainEntity":67},"FAQPage",[68,74,78],{"name":69,"@type":70,"acceptedAnswer":71},"Who is the CISM course designed for?","Question",{"text":72,"@type":73},"The course is designed for IT professionals with experience in IS/IT security and control who want to move from individual contribution to management. It targets information security managers and leaders in governance, program development, risk, and incident management.","Answer",{"name":75,"@type":70,"acceptedAnswer":76},"What are the exam requirements mentioned in the outline?",{"text":77,"@type":73},"The outline states the exam has 150 questions to be completed in four hours. It is available online with remote proctoring and at in-person testing centers where available.",{"name":79,"@type":70,"acceptedAnswer":80},"How does CISM require candidates to maintain certification?",{"text":81,"@type":73},"Candidates must earn and report a minimum of 120 CPE hours every three-year reporting cycle, including at least 20 hours annually. The outline also specifies CPE allocations for instructor-led training, online review courses, and VILT.","https://schema.org",{"og:url":50,"og:type":84,"og:title":13,"og:site_name":56,"og:description":14},"article",{"robots":86,"canonical":50},"index,follow",{"doc_id":7,"site_id":23},{"code":4,"msg":5,"data":89},[90,94,98,101,106,111,116,121,126,129,133],{"id":20,"doc_module":4,"doc_module_name":45,"category_name":91,"show_sort_weight":92,"slug":93},"Story & Novel",90,"story-novel",{"id":46,"doc_module":4,"doc_module_name":45,"category_name":95,"show_sort_weight":96,"slug":97},"Literature",80,"literature",{"id":11,"doc_module":4,"doc_module_name":45,"category_name":12,"show_sort_weight":99,"slug":100},70,"exam",{"id":102,"doc_module":4,"doc_module_name":45,"category_name":103,"show_sort_weight":104,"slug":105},5,"Comic",60,"comic",{"id":107,"doc_module":4,"doc_module_name":45,"category_name":108,"show_sort_weight":109,"slug":110},6,"Technology",50,"technology",{"id":112,"doc_module":4,"doc_module_name":45,"category_name":113,"show_sort_weight":114,"slug":115},7,"Healthcare",40,"healthcare",{"id":117,"doc_module":4,"doc_module_name":45,"category_name":118,"show_sort_weight":119,"slug":120},8,"Research & Report",30,"research-report",{"id":122,"doc_module":4,"doc_module_name":45,"category_name":123,"show_sort_weight":124,"slug":125},9,"Religion & Spirituality",20,"religion-spirituality",{"id":124,"doc_module":4,"doc_module_name":45,"category_name":127,"show_sort_weight":124,"slug":128},"World Cup","world-cup",{"id":130,"doc_module":4,"doc_module_name":45,"category_name":131,"show_sort_weight":130,"slug":132},10,"Lifestyle","lifestyle",{"id":134,"doc_module":4,"doc_module_name":45,"category_name":135,"show_sort_weight":102,"slug":136},19,"General","general"]