EC-Council Certified Chief Information Security Officer (C-CISO)

Description

Course Overview

In this course, students will learn in-depth content in each of the 5 CCISO Domains. The CCISO Certification is an industry-leading program that recognizes the real-world experience necessary to succeed at the highest executive levels of information security. Bringing together all the components required for a C-Level positions, the CCISO program combines audit management, governance, IS controls, human capital management, strategic program development, and the financial expertise vital to leading a highly successful IS program. The job of the CISO is far too important to be learned by trial and error. Executive level management skills are not areas that should be learned on the job. Material in the CCISO Program assumes a high-level understanding of technical topics and doesn’t spend much time on strictly technical information, but rather on the application of technical knowledge to an information security executive’s day-to-day work. The CCISO aims to bridge the gap between the executive management knowledge that CISOs need and the technical knowledge that many sitting and aspiring CISOs have. This can be a crucial gap as a practitioner endeavors to move from mid-management to upper, executive management roles. Much of this is traditionally learned as on the job training, but the CCISO Training Program can be the key to a successful transition to the highest ranks of information security management.

Course Objectives

This course is designed for the aspiring or sitting upper-level manager striving to advance his or her career by learning to apply their existing deep technical knowledge to business problems.

Who Should Attend?

The CCISO program is for executives looking to hone their skills & learn to better align their information security programs to the goals of organization as well as aspiring CISOs.

Course Prerequisites

The EC-Council Certified Chief Information Security Officer (CCISO) class does not have any prerequisites to attend the course. However, to take the CCISO exam, you must meet the following requirements.
  • Experience: You must have at least five years of experience in three of the five C|CISO domains.
  • Application: You must submit the EC-Council's exam eligibility application. You can find the application in your online learning environment.
  • Training: If you have experience in three or four of the domains, you must take a training course. If you have experience in all five domains, you do not need to take the training course.

Agenda

Domain 1: Governance & Risk Management (Policy, Legal & Compliance)

  • Define, Implement, Manage, and Maintain an Information Security Governance Program
  • Information Security Drivers
  • Establishing an information security management structure
  • Laws/Regulations/Standards as drivers of Organizational Policy/ Standards/ Procedures
  • Managing an enterprise information security compliance program
  • Risk Management
  • Risk mitigation, risk treatment, and acceptable risk
  • Risk management frameworks
  • NIST
  • Other Frameworks and Guidance (ISO 31000, TARA, OCTAVE, FAIR, COBIT, and ITIL)
  • Risk management plan implementation
  • Ongoing third-party risk management
  • Risk management policies and processes

Domain 2: Information Security Controls, Compliance & Audit Management

  • Information Security Controls
  • Compliance Management
  • Guidelines, Good and Best Practices
  • Audit Management

Domain 3: Security Program Management and Operations

  • Program Management
  • Operations Management

Domain 4: Information Security Core Concepts

  • Access Controls
  • Physical Security
  • Network Security
  • Endpoint Protection
  • Application Security
  • Encryption Technologies
  • Virtualization Security
  • Cloud Computing Security
  • Transformative Technologies

Domain 5: Strategic Planning, Finance, Procurement and Vendor Management

  • Strategic Planning
  • Designing, Developing, and Maintaining an Enterprise Information Security Program
  • Understanding the Enterprise Architecture (EA)
  • Finance
  • Procurement
  • Vendor Management

Similar courses

This class is a special offering run in conjunction with AIS. Course pricing includes CISSP exam voucher, supporting resources, practice tests, and Logical Operations test pass guarantee.

More Information

This is a 10 day CompTIA Security+ course. The first day and a half will be spent reviewing networking fundamentals content, and the remaining eight and a half days are spent doing a deeper dive into Security+ than the average CompTIA Security+ available in today's market.

More Information

This class is a special offering run in conjunction with AIS. Course pricing includes CISSP exam voucher, supporting resources, practice tests, and Logical Operations test pass guarantee.

More Information