COURSE DESCRIPTION
By managing, advising and assessing the enterprise's IT infrastructure and processes, individuals play a role in IT governance and provide significant support to the board of directors and executive management. The Certified in the Governance of Enterprise ITTM (CGEITTM) certification program recognizes those who demonstrate a visible commitment to excellence in IT governance practices.
MANAGING THE FORCES OF TRANSITION
IT systems are continually evolving to ensure competitiveness, enable reach to global markets and handle external pressures such as regulation. To support increasing business demands and recognize the wide range of professionals whose knowledge and application of IT governance principles are key to managing the forces of transition, ISACA® offers a certification for these ever-evolving professionals: CGEIT.
THE CGEIT DESIGNATION MEETS THE NEEDS OF:
Individuals by recognizing and elevating the expertise, skill sets,
abilities and experiences of those performing IT governance work
n Enterprises by identifying those who have made a tangible
commitment to excellence in IT governance practices
n The profession by supporting the increasing global trends toward
IT governance activities
n Business by improving the awareness of IT governance good
practices and issues
CGEIT Job Practice Domains
Supported by the IT Governance Institute® (ITGITM) and built on proven
frameworks, good practices and input from subject matter experts from around
the world, the CGEIT designation covers pertinent IT governance frameworks
and the five focus areas of IT governance. The CGEIT job practice domains are:
n IT Governance Framework
Defining, establishing and maintaining an IT governance framework
(leadership, organizational structures and processes)
n Strategic Alignment
Ensuring the link between business objectives and IT plans and operations
n Value Delivery
Optimizing expenses and proving the value of IT throughout its life cycle
n Risk Management
Identifying, assessing, mitigating, managing, communicating and monitoring
significant enterprise risks
n Resource Management
Optimizing the allocation of IT resources and maximizing their efficiency
n Performance Measurement
Tracking the delivery of IT projects and monitoring IT services
DURING THE COURSE,YOU WILL LEARN :
Information Security Governance
- Develop information security strategy to align with business strategy and direction.
- Obtain senior management commitment and support for information security across the entire enterprise.
- Define information security governance roles and responsibilities.
- Establish reporting and communication channels regarding information security governance activities.
- Develop a systematic, analytical, and continuous risk management process.
- Understand and implement risk identification, analysis, and mitigation activities.
- Define and prioritize risk mitigation strategies.
- Appropriately report changes in risk to the correct levels of management on a periodic and event-driven basis.
- Create and maintain plans for implementing a carefully designed information security governance framework.
- Develop information security baselines from organizational needs, as well as international standards.
- Develop guidelines and procedures for integrating security risk management into business processes.
- Develop procedures and guidelines for the IT infrastructure that comply with senior - level information security policies.
- Ensure security is effectively incorporated into the organizations established change management processes.
- Effectively integrate information security policies, guidelines, procedures, and accountability into the organization's culture.
- Manage security risk from contracts; transfer risk with contracts
- Understand information security compliance issues resulting from Sarbanes-Oxley.
- Properly align IT strategic planning with organizational strategic planning.
- Control risk within software development or acquisition projects.
- How to position information security management within the organization.
- Control IT security risk relating to IT funding.
- Manage risk associated with social engineering, physical infrastructure threats, malicious code, and software vulnerabilities.
- Develop and implement processes for identifying, detecting, and analyzing security - related events procedures.
- Organize, train, and properly equip response teams.
WHAT'S INCLUDED?
Our package includes 1 x lunch and 2 x coffee break, and full course materials, certificate of attendance, souvenir, Bandung city tour.


ISACA AND ISC²
