Certified Chief Information Security Officer | CCISO Certification

CCISO

Certified Chief Information Security Officer | CCISO Certification

EC-Council’s Certified Chief Information Security Officer (CCISO) Program has certified leading information security professionals around the world. A core group of high-level information security executives, the CCISO Advisory Board, formed the foundation of the program and outlined the content covered by the exam, body of knowledge, and training. Some members of the Board contributed as authors, others as exam writers, others as quality assurance checks, and still others as instructors. Each segment of the program was developed with the aspiring and sitting CISO in mind and looks to transfer the knowledge of seasoned executives to the next generation of leaders in the areas that are most critical in the development and maintenance of a successful information security program.

About the Certified Chief Information Officer (CCISO) Course

Description

The CCISO Certification is an industry-leading, security certification program that recognizes the real-world experience necessary to succeed at the highest executive levels of information security. Bringing together all the components required for a C-Level position, the CCISO program combines audit management, governance, IS controls, human capital management, strategic program development, and the financial expertise vital to leading a highly successful information security program. The job of the CISO is far too important to be learned by trial and error. Executive-level management skills are not areas that should be learned on the job.

The material in the CCISO Program assumes a high-level understanding of technical topics and doesn’t spend much time on strictly technical information, but rather on the application of technical knowledge to an information security executive’s day-to-day work. The CCISO aims to bridge the gap between the executive management knowledge that CISOs need and the technical knowledge that many sitting and aspiring CISOs have. This can be a crucial gap as a practitioner endeavors to move from mid-management to upper, executive management roles. Much of this is traditionally learned as on the job training, but the CCISO Training Program can be the key to a successful transition to the highest ranks of information security management.

Outline

Course Outline

Domain 1 Domain 2 Domain 3 Domain 4 Domain 5

Domain 1: Governance and Risk Management

1. Define, Implement, Manage, and Maintain an Information Security Governance Program

2. Information Security Drivers

3. Establishing an information security management structure

4. Laws/Regulations/Standards as drivers of Organizational Policy/Standards/Procedures

5. Managing an enterprise information security compliance program

6. Introduction to Risk Management

Domain 2: Information Security Controls, Compliance, and Audit Management

1. Information Security Controls

2. Compliance Management

3. Guidelines, Good and Best Practices

4. Audit Management

5. Summary

Domain 3: Security Program Management & Operations

1. Program Management

2. Operations Management

3. Summary

Domain 4: Information Security Core Competencies

1. Access Control

2. Physical Security

3. Network Security

4. Certified Chief

5. Endpoint Protection

6. Application Security

7. Encryption Technologies

8. Virtualization Security

9. Cloud Computing Security

10. Transformative Technologies

11. Summary

Domain 5: Strategic Planning, Finance, Procurement and Vendor Management

1. Strategic Planning

2. Designing, Developing, and Maintaining an Enterprise Information Security Program

3. Understanding the Enterprise Architecture (EA)

4. Finance

5. Procurement

6. Vendor Management