Your IT Audit and Information Security Partner. CISA Exam Preparation June 2015 Session 1 : 10 March 2015

Similar documents
Your IT Audit and Information Security Partner. CISA Exam Preparation June 2015 Session 6 : 14 April 2015 Starting around 4:45pm..

2018 CALENDAR OF ACTIVITIES

ISACA MANILA CHAPTER CALENDAR OF ACTIVITIES

ISACA MANILA CHAPTER CALENDAR OF ACTIVITIES

BECOME TOMORROW S LEADER, TODAY. SEE WHAT S NEXT, NOW

Download Free PDF Full Version here!

CISA Course. Course Details: iathena.com, a Navitus Education Venture

ISACA Webcram CISA & CISM. Sean Hanna

building for my Future 2013 Certification

Welcome October, 2013 INSIDE THIS ISSUE. Jesse A. Hanford Greater Cincinnati ISACA President

2017 PORT SECURITY SEMINAR & EXPO. ISACA/CISM Information Security Management Training for Security Directors/Managers

Strategies for Deriving Maximum Benefit From Audit. Allan Boardman CyberAdvisor.London

ISACA International Perspective

COURSE BROCHURE CISA TRAINING

Invest in. ISACA-certified professionals, see the. rewards.

Northeast Ohio Chapter Annual General Meeting

ISACA Certifications Overview

COBIT 5 Foundation Workshop

Implementation PREVIEW VERSION

The President s Message 3. ISACA Karachi Chapter AGM & Elections Members Event: Cloud Adoption & (Secaas) 11. ISACA Book Store Update 11

Cisa Review Manual 2015 Free Download Wordpress READ ONLINE

INCREASE YOUR CHANCES OF PASSING THE CIA EXAM

CISA: CERTIFIED INFORMATION SYSTEMS AUDITOR STUDY GUIDE BY DAVID L. CANNON

INFORMATION SYSTEMS AUDITOR EXAM PREPARATION COURSE NICOSIA LIVE ON-LINE. 1 P a g e

Les joies et les peines de la transformation numérique

THE ISACA CURACAO CHAPTER IS ORGANIZING FOLLOWING INFORMATION SECURITY AND TECHNOLOGY SESSIONS ON MAY 15-MAY :

MY CERTIFICATION HELPED ME GET HERE. MY MEMBERSHIP HELPS KEEP ME HERE.

TRAINING SEMINAR COURSE OUTLINE October

Report of the Nominating Committee

Study Resources. AWT Certification Committee Study Resources. Certified Water Technologist (CWT) Exam. CWT Exam Handbook

CISA Training.

CISA EXAM PREPARATION - Weekend Program

Cheetah Exam Prep for the PMP Virtual Live Course Syllabus

THE OFFICIAL (ISC)2 GUIDE TO THE CCSP CBK FROM SYBEX DOWNLOAD EBOOK : THE OFFICIAL (ISC)2 GUIDE TO THE CCSP CBK FROM SYBEX PDF

ISSP Sustainability Professional Certifications UPDATE: November 20, 2017

Business Process Design and Internal Audit UNIVERSITY OF TEXAS AT DALLAS Course Syllabus Spring 2005

The President s Message 3. ISACA Karachi Chapter Presentation Flyer 5. ISACA Karachi Chapter Presentation Report 6. ISACA Book Store Update 9

Exploring the CRA, CPRA, CFRA ORED Seminar Series November 21, 2016

Exam Requirements v4.1

2018 HIPAA One All Rights Reserved. Beyond HIPAA Compliance to Certification

IT SECURITY OFFICER. Department: Information Technology. Pay Range: Professional 18

Top Business/Technology Issues Survey 2011

CTY Testing CTY Johns Hopkins University

The Experience of Generali Group in Implementing COBIT 5. Marco Salvato, CISA, CISM, CGEIT, CRISC Andrea Pontoni, CISA

ASQ Certification Benefits and Preparation. Presented March 14, 2017 by R.Gryniewicz and A.Ochoa-Lions Revised 2017-Mar-12

BRING EXPERT TRAINING TO YOUR WORKPLACE.

THE KERNEL. Our in-house professional team is highly skilled in delivering cutting-edge solutions to our clients.

Certified Cyber Security Specialist

CYBERSECURITY HOW IT IS TRANSFORMING THE IT ASSURANCE FIELD

Training + Information Sharing: Pillars of enhancing cybersecurity posture

COSS and COSM Recertification Guide

January 2011 PMP Study Group Overview

Welcome March, Greetings Fellow Cincinnati ISACA Members,

Cyber Security: It s all about TRUST

comprehensive guide toı ACCOUNTINGı CERTIFICATIONSı cpa, cfe, cia, cisa & more ı The Bean Counter, LLC All Rights Reservedı

IT Auditing and IT Fraud Detection

The Data Catalog The Key to Managing Data, Big and Small. April Reeve May

Solutions to the Top 5 PM P

Updated: 2014 January. Continuing Professional Education (CPE) Policy

Predstavenie štandardu ISO/IEC 27005

Information Technology Education and Training For the Lifelong Learner. Program Catalog. Effective 9/1/2016

Training Catalog. Decker Consulting GmbH Birkenstrasse 49 CH 6343 Rotkreuz. Revision public. Authorized Training Partner

Business Context: Key for Successful Risk Management

Mr. Brian D Souza. . Thought Leadership Article: Blockchain Fundamentals. . Upcoming Events. Kenya Chapter Newsletter Vol 2/2018 Apr-June 2018

PECB Certified ISO Lead Auditor. Master the Audit of Occupational Health and Safety Management System (OHSMS) based on ISO 45001

DOWNLOAD OR READ : CIA EXAM REVIEW COURSE STUDY GUIDE PART 2 INTERNAL AUDIT PRACTICECIA REVIEW PART I TEXT PDF EBOOK EPUB MOBI

Application for Certification

PRINCE2 Update. PRINCE2 Membership FAQs. AXELOS.com PUBLIC

IT in Healthcare Day

IIA Academy YOUR PARTNER IN PROFESSIONAL DEVELOPMENT

CYBER FRAUD & DATA BREACHES 16 CPE s May 16-17, 2018

Master the Audit of Information Security Management Systems (ISMS) based on ISO/IEC 27001

ISACA Enterprise. Solutions and Resources

CISA Certified Information Systems Auditor All-in- One Exam Guide 2nd (second) Edition By Peter Gregory

August Objectives. Agenda. Promoting Your Professional Development with ACMPE. Describe the foundation and value of certification and fellowship

INFORMATION TECHNOLOGY AUDIT &

THE LIFE AND TIMES OF CYBERSECURITY PROFESSIONALS

Certified Information Systems Auditor Training and Certification

CISM - Certified Information Security Manager. Course Outline. CISM - Certified Information Security Manager.

International Auditing and Assurance Standards Board (IAASB) International Federation of Accountants 545 Fifth Avenue, 14 th Floor New York, NY 10017

Volume 2014, Number 4. Volunteers Needed!

CISM - Certified Information Security Manager. Course Outline. CISM - Certified Information Security Manager. 22 Mar

Isaca 2017 Cism Review Manual READ ONLINE

Professional Evaluation and Certification Board Frequently Asked Questions

Access Control and Physical Security Management. Contents are subject to change. For the latest updates visit

Hearing Voices: The Cybersecurity Pro s View of the Profession

Implementing an ISMS: Stories from the Trenches. Peter H. Gregory, CISA, CISSP, DRCE

No IT Audit Staff? How to Hack an IT Audit. Presenters. Mark Bednarz, Partner-In-Charge, Risk Advisory PKF O Connor Davies, LLP

Advancement Information Session

Certified in the Governance of Enterprise IT Training - Brochure

A Global Look at IT Audit Best Practices

Unlocking Potential Through Learning

COURSE LISTING. Courses Listed. with SAP Hybris Marketing Cloud. 24 January 2018 (23:53 GMT) HY760 - SAP Hybris Marketing Cloud

Management Accoun-ng/ Corporate Finance Employers at BYU

DUNS CAGE 5T5C3

COURSE LISTING. Courses Listed. with Governance, Risk and Compliance (GRC) SAP BusinessObjects. 19 February 2018 (15:13 GMT) GRC100 -

ISACA MOSCOW CHAPTER Chapter meeting 22 September 2016

Position Description IT Auditor

CERTIFIED IN THE GOVERNANCE OF ENTERPRISE IT CGEIT AFFIRM YOUR STRATEGIC VALUE AND CAREER SUCCESS

Operationalizing Cybersecurity in Healthcare IT Security & Risk Management Study Quantitative and Qualitative Research Program Results

Transcription:

www.itsec.org.za Your IT Audit and Information Security Partner CISA Exam Preparation June 2015 Session 1 : 10 March 2015

Agenda Introductions Facilitator Participants Expectations Why are we all here? CISA What is the CISA exam all about? Approach to studies Timing Commitment Self Assessment Next Week What you need to do Questions And contacts

Introductions Facilitator Justin Williams B.Com, B.Compt (Hons), CA(SA), MBA, CISSP, CGEIT, CRISC, CISA 1 st in the World, CISA Dec 2014 Director at ITSec Previously Head of Risk, Security, Governance and Compliance for Transnet Group Participants Name Where you work Where and what you have studied

Expectations Why are we here? Justin Williams (Director at ITSec) Passionate about studying Enjoy helping others Want the ITSec team to succeed Participants Name Why you signed up for CISA How you think CISA will help you Have your written CISA or an ISACA exam before What you hope to get out of the sessions

CISA Exam CISA Certified Information Systems Auditor What is the exam all about? 13 June 2015 Four hour exam 200 multiple choice questions Five practice domains Task statements (what you need to know how to do) Knowledge statements (things you need to know) The five job practice domains: Domain 1 The Process of Auditing Information Systems Domain 2 Governance and Management of IT Domain 3 Information Systems Acquisition, Development and Implementation Domain 4 Information Systems Operations, Maintenance and Support Domain 5 Protection of Information Assets

Ten steps to acing the exam 1. Read up on learning styles and figure out what works best for you. Study how to study. 2. View your studies as part of your wider professional development. CISM is a way point, not an endpoint. 3. Don't try to do it alone become a member of ISACA and join your local chapter. Take advantage of the resources available. Find a mentor. 4. Read the ISACA CISM Review Manual but realise it is not a comprehensive body of knowledge. More (much more) reading will be required. 5. Build your own glossary whenever you come across a concept that you are not completely familiar with and that is not fully explained in the manual, jot it down, Google for information and write your own definition. 6. Use the ISACA sample exam questions study the questions you get wrong and use those to guide further review. 7. Prepare a plan and stick to it, lest you risk spending your last week cramming and walking into the exam a nervous wreck. After reading the first few sections of the Review Manual and doing related reading (plan on four hours of outside reading for every hour spent reading the manual), estimate the total hours needed to complete the manual; add twenty hours for practice questions and then map it out on a calendar. 8. Reduce stress by stopping studying two days before the exam. Get plenty of sleep for several nights before the exam. Eat regularly in the days before and have a healthy, moderately-sized breakfast on the morning of the exam.

Ten steps to acing the exam 9. Write the exam in four passes: Go through and answer every tenth question (maximum one minute per question) this is to avoid off-by-one transcription errors Try to answer all remaining questions, one minute per question at most Go through and answer all questions you skipped or marked for review in the first two passes (maximum two minutes) Spend whatever time is left reviewing questions you were not sure about; guess if necessary 10. Attack each question methodically: Read the question and all the answers very carefully Eliminate the obviously wrong answers Pick the most general, correct answer from a management perspective (or the least worst answer) Making the commitment to become a Certified Information Security Manager is worthy and laudatory for many reasons. It forces you to study your known unknowns. It helps you discover your unknown unknowns. It brings discipline and completeness to your work. And it lends you credibility. Good luck! George Pajari, CISM, CISSP, CCSK

Approach to studies What you need CISA 2014 / 2015 Study guide Extra questions Timing Weekly sessions, same time and place? How much time? Estimated 16 hours per week Commitment Read the chapters Do the sample questions in the study guide and Do the extra Q&A questions Get through as much as you can Even if you don t get through it all, come to the study session

Approach to studies Dom Description % Start End Pages Marks/Page 1 The Process of Auditing Information Systems 14% 29 62 33 0,42 2 Governance and Management of IT 14% 78 124 46 0,30 3 Information Systems Acquisition, Development and Implementation 19% 141 219 78 0,24 4 Information Systems Operations, Maintenance and Support 23% 234 290 56 0,41 5 Protection of Information Assets 30% 306 375 69 0,43

Approach to studies 10-Mar-15Tonight -Introduction 17-Mar-15Chapter 1 24-Mar-15Chapter 1 31-Mar-15Chapter 2 07-Apr-15Chapter 2 14-Apr-15Chapter 3 21-Apr-15Chapter 3 28-Apr-15Chapter 4 05-May-15Chapter 4 12-May-15Chapter 5 19-May-15Chapter 5 26-May-15Revision 02-Jun-15Sample Exam 09-Jun-15Final Exam Techniques 13-Jun-15Exam Date

Approach to studies Self Assessment 50 questions Should take an hour Do as small teams (of two or three) http://www.isaca.org/certification/cisa-certified-information-systems- Auditor/Prepare-for-the-Exam/Pages/CISASelfAssessment.aspx?id=100002

Extra material Study Materials ISACA has prepared a variety of study resources in various languages to fully prepare for your CISA Exam. These include primary references, publications, articles, the ISACA Journal and other links. Online Learning ISACA elearning Campus offers a variety of online learning courses for certification exam preparation and continuing professional education. Review Courses ISACA chapters in numerous countries offer CISA Review courses. View the Review Course list to determine if there is a course in your area, or contact your local chapter for additional courses. There will be courses in Durban, CapeTown & Jhb if demand exists. Exam Preparation Community ISACA created the CISA exam preparation community as a place for current CISA exam registrants to collaborate and study with other registrants within the ISACA environment. Free online CISA Course Cybrary has just launched a CISA online course, its free http://www.cybrary.it/

Questions and Contacts Questions? Justin Williams jwilliams@itsec.org.za or Justin.j.Williams@gmail.com +27 82 772 9881 or +27 83 279 0998 @itsecza @jjza www.itsec.org.za www.j-j.co.za

www.itsec.org.za Your IT Audit and Information Security Partner CISA Exam Preparation June 2015 Session 2 : 17 March 2015

Prep for Next Week (17/3/2015) What you need to do Read Chapter 1 (aim for the whole chapter) Make notes of things you don t quite understand Do the sample questions Flag those you get wrong, even if you know why you got them wrong Self Assessment 50 questions Should take an hour http://www.isaca.org/certification/cisa-certified-information-systems- Auditor/Prepare-for-the-Exam/Pages/CISASelfAssessment.aspx?id=100002 Arrive on time (4:45pm Tuesday 17/3/2015) At ITSec offices, Forest Office 6, 15 Summit Drive, Sherwood, Durban Re-assess See how things are going See how all doing with the time commitment Decide if continue with two weeks per chapter or cover some chapters in one week

Provisional Schedule 10-Mar-15 Introduction (Complete) 17-Mar-15 Chapter 1 The Process of Auditing Information Systems 24-Mar-15 Chapter 1 31-Mar-15 Chapter 2 Governance and Management of IT 07-Apr-15 Chapter 2 14-Apr-15 Chapter 3 Information Systems Acquisition, Development and Implementation 21-Apr-15 Chapter 3 28-Apr-15 Chapter 4 Information Systems Operations, Maintenance and Support 05-May-15 Chapter 4 12-May-15 Chapter 5 Protection of Information Assets 19-May-15 Chapter 5 26-May-15 Revision 02-Jun-15 Sample Exam 09-Jun-15 Final Exam Techniques 13-Jun-15 Exam Date

Location of ITSec Forest Office 6 15 Summit Drive Sherwood Durban