Course ID: #N/A

Certified Information Security Manager (CISM)

Duration: 3 days Dates: 16 November 2026 15 February 2027 31 May 2027 16 August 2027

In this course, participants establish processes that ensure information security measures are aligned with defined business requirements.

1 – Information Security Governance

  • Developing an information security strategy
  • Aligning the information security strategy with corporate governance
  • Identifying legal and regulatory requirements
  • Justifying investment in information security
  • Identifying internal and external influences on the organization
  • Obtaining senior management commitment for information security
  • Defining roles and responsibilities for information security
  • Establishing reporting and communication channels

2 – Information Risk Management

  • Implementing an information risk assessment process
  • Determining information asset classification and ownership
  • Conducting ongoing threat and vulnerability assessments
  • Conducting periodic BIAs
  • Identifying and evaluating risk mitigation strategies
  • Integrating risk management into business life cycle processes
  • Reporting changes in information risk

3 – Information Security Programme Development

  • Developing plans to implement an information security strategy
  • Security technologies and controls
  • Specifying information security programme activities
  • Coordinating information security programmes with business assurance functions
  • Identifying resources needed to implement the information security programme
  • Developing information security architectures
  • Developing information security policies
  • Developing information security awareness, training and education programmes
  • Developing supporting documentation for information security policies

4 – Information Security Programme Implementation

  • Integrating information security requirements into organizational processes
  • Integrating information security controls into contracts
  • Creating metrics to evaluate the information security programme

5 – Information Security Programme Management

  • Managing information security programme resources
  • Enforcing compliance with policies and standards
  • Enforcing contractual information security controls
  • Enforcing information security during systems development
  • Maintaining information security within an organization
  • Providing information security advice and guidance
  • Providing information security awareness and training
  • Analysing the effectiveness of information security controls
  • Resolving compliance issues

6 – Incident Management and Response

  • Developing an information security incident response plan
  • Establishing an escalation process
  • Developing a communication process
  • Integrating an IRP
  • Developing IRTs
  • Testing an IRP
  • Managing responses to information security incidents
  • Conducting investigations into information security incidents
  • Conducting post-incident reviews
Learning Solution

Blended Learning, Firmenseminar, Individualcoaching, Klassenraumtraining, Online Live Webinar

Language

Deutsch, Englisch, Französisch, Italienisch

Dates

2026/11/16, 2027/02/15, 2027/05/31, 2027/08/16, flexibel, auf Anfrage

This course is aimed at information security and IT professionals, such as network administrators and engineers, IT managers and IT auditors, as well as anyone else who wants to learn more about information security, is interested in in-depth knowledge of information security management, is seeking career development in IT security, or wants to obtain the CISM certification.

  • Establishing and maintaining a framework to ensure that information security strategies are aligned with business objectives and consistent with applicable laws and regulations.
  • Identifying and managing information security risks to achieve business objectives.
  • Creating a programme to implement the information security strategy.
  • Implementing an information security programme.
  • Overseeing and directing information security activities to execute the information security programme.
  • Planning, developing and managing capabilities to detect, respond to and recover from information security incidents.

CHF2'590 excl. VAT

Clear

SIGN UP

Newsletter

Receive news about new courses, offers and promotions by email.

← Back

Thank you for your response. ✨

Email Subscription
Amazon
VMware and Virtualisation