Course ID: #N/A

Certified Information Systems Auditor (CISA)

Duration: 5 days Dates: 26 July 2027 26 April 2027 25 January 2027 26 October 2026

CISA is ISACA's certification for professionals who audit, control and monitor information systems. The course follows the exam outline with five domains that has been in effect since 1 August 2024 and covers governance, systems development, IT operations, business resilience and the protection of information assets in addition to the audit process. The course prepares you for the CISA exam (the "Certified Information Systems Auditor" certification).

Domain 1: Information Systems Auditing Process

  • Planning: IS audit standards, guidelines and code of professional ethics; types of audits, assessments and reviews
  • Risk-based audit planning and types of controls
  • Execution: audit project management, testing and sampling methodologies, evidence collection techniques
  • Audit data analysis, reporting and communication techniques, quality assurance and improvement of the audit process

Domain 2: Governance and Management of IT

  • Laws, regulations and industry standards; organisational structure, IT governance and IT strategy
  • IT policies, standards, procedures and practices; enterprise architecture
  • Enterprise risk management, privacy programme and principles, data governance and data classification
  • IT management: resource and vendor management, performance monitoring and reporting, quality assurance and quality management

Domain 3: Information Systems Acquisition, Development and Implementation

  • Project governance and project management; business case and feasibility analysis
  • System development methodologies; identification and design of controls
  • Implementation: system readiness and implementation testing, configuration and release management
  • System migration, infrastructure deployment and data conversion; post-implementation review

Domain 4: Information Systems Operations and Business Resilience

  • IT components, IT asset management, job scheduling and automation of production processes, system interfaces
  • Shadow IT and end-user computing; availability and capacity management
  • Problem and incident management; change, configuration and patch management; management of operational logs
  • IT service level management and database management
  • Business resilience: business impact analysis, system and operational resilience, data backup, storage and restoration, business continuity and disaster recovery plans

Domain 5: Protection of Information Assets

  • Frameworks, standards and guidelines for the security of information assets; physical and environmental controls
  • Identity and access management, network and endpoint security, data loss prevention
  • Data encryption and Public Key Infrastructure (PKI); cloud and virtualised environments; mobile devices, wireless networks and the Internet of Things
  • Security event management: awareness programmes, attack methods and techniques, security testing and monitoring tools
  • Security incident response, evidence preservation and forensics
Learning Solution

Blended Learning, Firmenseminar, Individualcoaching, Klassenraumtraining, Online Live Webinar

Language

Deutsch, Englisch, Französisch, Italienisch

Dates

2026/10/26, 2027/01/25, 2027/04/26, 2027/07/26, flexibel, auf Anfrage

IT auditors, internal auditors, information security, risk management and compliance professionals, and consultants who audit information systems or design controls for them.

Basic knowledge of IT operations, information security and internal controls is required. For certification, ISACA requires five years of professional experience in IS audit, control, assurance or security after passing the exam; part of this can be substituted with education.

After the course you will be able to:

  • plan and perform risk-based IS audits and report in accordance with ISACA standards
  • assess an organisation’s IT governance, IT strategy, risk management and data protection
  • review the acquisition, development and implementation of information systems for effective controls
  • evaluate IT operations, change and incident management, and business continuity and disaster recovery arrangements
  • assess controls for access, network, encryption, cloud and security monitoring

CHF4'230 excl. VAT

Clear

SIGN UP

Newsletter

Receive news about new courses, offers and promotions by email.

← Back

Thank you for your response. ✨

Email Subscription
Amazon
VMware and Virtualisation