CISM Review
Chapter 1: Information Security Governance
-Definition
-Objectives
-Tasks
-Information Security Governance Overview
-Effective Information Security Governance
-Information Security Concepts
-Information Security Manager
-Scope and Charter of Information Security Governance
-Information Security Governance Metrics
-Information Security Strategy
-Developing an Information Security Strategy
-Information Security Strategy Objectives
-Determining Current State of Security
-Information Security Strategy
-Strategy Resources
-Strategy Constraints
-Action Plan for Strategy
-Implementing Security Governance—Example
-Action Plan Intermediate Goals
-Information Security Program Objectives
-Chapter 1 Practice Questions
-Chapter 1 Answers to Practice Questions
-Chapter 1 Suggested Resources for Reference
Chapter 2: Information Risk Management
-Definition
-Objective
-Tasks
-Risk Management Overview
-Effective Information Security Risk Management
-Information Security Risk Management Concepts
-Implementing Risk Management
-Chapter 2 Practice Questions
-Chapter 2 Answers to Practice Questions
-Chapter 2 Suggested Resources for Reference
Chapter 3: Information Security Program Development
-Definition
-Objectives
-Tasks
-Information Security Program Development Overview
-Effective Information Security Program Development
-information Security Program Development Concepts
-Information Security Manager
-Scope and Charter of Information Security Program Development
-Information Security Program Development Objectives
-Defining an Information Security Program Development Road Map
-Information Security Program Resources
-Implementing an Information Security Program
-Information Infrastructure
-Physical and Environmental Controls
-Information Security Program Integration
-Information Security Program Development Metrics
-Chapter 3 Practice Questions
-Chapter 3 Answers to Practice Questions
-Chapter 3 Suggested Resources for Reference
Chapter 4: Information Security Program Management
-Definition
-Objective
-Tasks
-Information Security Management Overview
-Organizational Roles and Responsibilities
-Information Security Management Program Components
-Measuring Information Security Management Success
-Common Information Security Management Challenges
-Determining the State of Information Security Management
-Information Security Management Program Resources
-Other Information Security Management Considerations
-Implementing Information Security Management
-Chapter 4 Practice Questions
-Chapter 4 Answers to Practice Questions
-Chapter 4 Suggested Resources for Reference
Chapter 5: Incident Management And Response
-Definition
-Objective
-Tasks
-Incident Management Overview
-Incident Management Concepts
-Scope and Charter of Incident Management
-Information Security Manager
-Incident Management Objectives
-Incident Management Metrics
-Defining Incident Management Procedures
-Incident Management Resources
-Current State of Incident Response Capability
-Developing an Incident Response Plan
-Developing Response and Recovery Plans
-Testing Response and Recovery Plans
-Executing Response and Recovery Plans
-Documenting Events
-Postevent Reviews
-Chapter 5 Practice Questions
-Chapter 5 Answers to Practice Questions
-Chapter 5 Suggested Resources for Reference