CISM Certified Information Security Manager Study Guide

Book description

Sharpen your information security skills and grab an invaluable new credential with this unbeatable study guide

As cybersecurity becomes an increasingly mission-critical issue, more and more employers and professionals are turning to ISACA's trusted and recognized Certified Information Security Manager qualification as a tried-and-true indicator of information security management expertise.

In Wiley's Certified Information Security Manager (CISM) Study Guide, you'll get the information you need to succeed on the demanding CISM exam. You'll also develop the IT security skills and confidence you need to prove yourself where it really counts: on the job.

Chapters are organized intuitively and by exam objective so you can easily keep track of what you've covered and what you still need to study. You'll also get access to a pre-assessment, so you can find out where you stand before you take your studies further.

Sharpen your skills with Exam Essentials and chapter review questions with detailed explanations in all four of the CISM exam domains: Information Security Governance, Information Security Risk Management, Information Security Program, and Incident Management.

In this essential resource, you'll also:

  • Grab a head start to an in-demand certification used across the information security industry
  • Expand your career opportunities to include rewarding and challenging new roles only accessible to those with a CISM credential
  • Access the Sybex online learning center, with chapter review questions, full-length practice exams, hundreds of electronic flashcards, and a glossary of key terms

Perfect for anyone prepping for the challenging CISM exam or looking for a new role in the information security field, the Certified Information Security Manager (CISM) Study Guide is an indispensable resource that will put you on the fast track to success on the test and in your next job.

Table of contents

  1. Cover
  2. Title Page
  3. Copyright
  4. Dedication
  5. Acknowledgments
  6. About the Author
  7. About the Technical Editor
  8. Introduction
    1. The CISM Exam
    2. CISM Exam Objectives
    3. CISM Certification Exam Objective Map
    4. Assessment Test
    5. Answers to Assessment Test
  9. Chapter 1: Today's Information Security Manager
    1. Information Security Objectives
    2. Role of the Information Security Manager
    3. Information Security Risks
    4. Building an Information Security Strategy
    5. Implementing Security Controls
    6. Data Protection
    7. Summary
    8. Exam Essentials
    9. Review Questions
  10. Chapter 2: Information Security Governance and Compliance
    1. Governance
    2. Understanding Policy Documents
    3. Complying with Laws and Regulations
    4. Adopting Standard Frameworks
    5. Security Control Verification and Quality Control
    6. Summary
    7. Exam Essentials
    8. Review Questions
  11. Chapter 3: Information Risk Management
    1. Analyzing Risk
    2. Risk Treatment and Response
    3. Risk Analysis
    4. Disaster Recovery Planning
    5. Privacy
    6. Summary
    7. Exam Essentials
    8. Review Questions
  12. Chapter 4: Cybersecurity  Threats
    1. Exploring Cybersecurity  Threats
    2. Threat Data and Intelligence
    3. Summary
    4. Exam Essentials
    5. Review Questions
  13. Chapter 5: Information Security Program Development and Management
    1. Information Security Programs
    2. Security Awareness and Training
    3. Managing the Information Security Team
    4. Managing the Security Budget
    5. Integrating Security with Other Business Functions
    6. Summary
    7. Exam Essentials
    8. Review Questions
  14. Chapter 6: Security Assessment and Testing
    1. Vulnerability Management
    2. Security Vulnerabilities
    3. Penetration  Testing
    4. Training and Exercises
    5. Summary
    6. Exam Essentials
    7. Review Questions
  15. Chapter 7: Cybersecurity  Technology
    1. Endpoint Security
    2. Network Security
    3. Cloud Computing Security
    4. Cryptography
    5. Code Security
    6. Identity and Access Management
    7. Summary
    8. Exam Essentials
    9. Review Questions
  16. Chapter 8: Incident Response
    1. Security Incidents
    2. Phases of Incident Response
    3. Building the Incident Response Plan
    4. Creating an Incident Response Team
    5. Coordination and Information Sharing
    6. Classifying Incidents
    7. Conducting Investigations
    8. Plan Training, Testing, and Evaluation
    9. Summary
    10. Exam Essentials
    11. Review Questions
  17. Chapter 9: Business Continuity and Disaster Recovery
    1. Planning for Business Continuity
    2. Project Scope and Planning
    3. Business Impact Analysis
    4. Continuity Planning
    5. Plan Approval and Implementation
    6. The Nature of Disaster
    7. System Resilience, High Availability, and Fault Tolerance
    8. Recovery Strategy
    9. Recovery Plan Development
    10. Training, Awareness, and Documentation
    11. Testing and Maintenance
    12. Summary
    13. Exam Essentials
    14. Review Questions
  18. Appendix: Answers to the Review Questions
    1. Chapter 1: Today's Information Security Manager
    2. Chapter 2: Information Security Governance and Compliance
    3. Chapter 3: Information Risk Management
    4. Chapter 4: Cybersecurity  Threats
    5. Chapter 5: Information Security Program Development and Management
    6. Chapter 6: Security Assessment and Testing
    7. Chapter 7: Cybersecurity  Technology
    8. Chapter 8: Incident Response
    9. Chapter 9: Business Continuity and Disaster Recovery
  19. Index
  20. End User License Agreement

Product information

  • Title: CISM Certified Information Security Manager Study Guide
  • Author(s): Mike Chapple
  • Release date: May 2022
  • Publisher(s): Sybex
  • ISBN: 9781119801931