Invest in this CISA Certified Information Systems Auditor certification study guide to equip yourself with the understanding of maintaining, safeguarding, operating, and implementing information systems as per governance compliance. This course includes the ins and outs of five key domains, measured in the ISACA exam. These include the IS auditing process, IT governance & management, IS acquisition, development, & implementation, IS operations & business resilience, and protection of intellectual property.
Introduction
• CISA Exam Objectives
• Objective Map
The Audit Process
• Audit Process
• Auditing Standards and Guidelines
• Audit Management
• Evidence
• Audit Control Evaluation
• Control Self-Assessment
• Summary
Audit Governance and Compliance
• IT Governance and Strategy
• Governance Policies
• Security Policies
• IT Performance
• Summary
System Infrastructure, Project Management, and Testing
• System Availability and Reliability
• Project Management Tools
• Agile Development
• Monitoring and Controlling
• Testing Process Methodologies
• Information Systems Maintenance Practices
• Data Conversion Tools
• Project Review
• Summary
IT Service Level Management
• System Communication and Data Exchange
• Service Level Management Practices
• Operations Management
• Database Management
• Patch Management
• Incident Management
• Hardware Component Types
• Summary
Auditor Technical Overview
• IS Auditor Technical Overview
• Privacy Protection
• Physical Access Exposure and Environmental Security
• Risks to Portable and Wireless Devices
• Information System Attacks, Security Testing, and Monitoring Tools
• Summary
Learn to perform audits based on best practices and identify control weaknesses.
Understand how IT aligns with strategy, security, and compliance.
Evaluate system security, implement project controls, and understand testing methodologies.
Manage IT operations effectively, including databases, service levels, and incidents.
Gain a technical understanding of auditing privacy, physical security, and information system attacks.