CISA ® – Certified Information Systems Auditor
IS governance, audit, control and security
Training Courses and Certification Exam Preparation (Bootcamp)
We also deliver all our courses online through live interactive video sessions. Discover our Certifying Training Options.
We have advised more than 400 companies and trained over 1500 professionals. Will you be next?
Next courses (more below)
Course dates can be based on your requirements. Please contact us for the corresponding in-house or public session trainings, so that we can propose sessions taking into account your availability.
IS governance, audit, control and security
CISA is the only globally recognized certification in the fields of IS governance, audit, control and security. It has earned a great reputation internationally for many years, as it sets a high and consistent standard worldwide.
The CISA Job Practice Area consists of five “domains”, 38 “tasks” and 80 “knowledge statements”. Because the different tasks refer to the relevant COBIT processes, COBIT is an integral part of the CISA training and certification.
This training is organized by ACTAGIS with the support of Swiss Chapter of ISACA (www.isaca.ch).
CISA ISACA Training
ACTAGIS, based on a long term partnership with the ISACA Swiss Chapter, proposes learning and preparation classes for all ISACA certifications (also worldwide for in-house trainings).
We guarantee your exam success
Nearly 100% success rate!
We will support you until you pass the exam of the course in which you enroll (some conditions apply). We offer the official mock exams to help you prepare.
Swiss Quality around the world
Our attention to detail, staying up to date, all reflect our commitment to quality. Our trainers bring real-life project experience in implementing frameworks and programs in large organizations.
Free consulting session included
Most of our training programs include a supplementary free online consulting session to help you implement your project in your organisation.
Competitive pricing
To ensure that our courses are available to all sizes of companies, we practice competitive pricing.
Learn from where you are
Our courses are delivered in a traditional classroom setting, as well as live online with an instructor. Certain courses are also available in a self-study format.
Exam Bootcamp
A 4 day exam preparation session
- Why should I obtain the CISA certification?
- Course content
- Course Objectives
- Target Audience
- Requirements
- Exam
- Our added value
The CISA certification demonstrates your knowledge and experience in Information Systems Auditing, Control, and Security. This is a qualification that is globally recognized as a mark of excellence for the IS audit professional.
This certification benefits you as well as your employer:
For employees:
- Confirms knowledge and experience of IS auditing and security
- Provides a competitive advantage to stand out in a crowded marketplace
- Validates your experience and knowledge in the field
- Markets and quantifies expertise
- Competitive advantage over peers
- Credibility in the job market
- High professional standard
- High salary
For employers:
- Gives the assurance that your employees are highly qualified professionals in their field
- Provides your business with credibility, as clients will recognize the expertise which CISA demonstrates
- Ensures your enterprise is up to date with the latest auditing standards, due to the re-certification requirement every three years
Certified Information Security Auditor (CISA) is a globally acknowledged certification, which builds upon the previous experience of IS professionals. The course delivers exceptional knowledge of Information Systems Auditing, Control, and Security.
The first three days of the course consist of an intensive and systematic review of all tasks within the CISA Job Practice Area. Here the aspects which are important from the examination perspective are presented, without going into the details of each task, which is why some level of expertise is required. Those who would like to study all CISA tasks in detail should join our advanced course.
Following the initial phase, a realistic test examination is organized (in English). After this test exam, we will discuss the results during the last day of the training.
The domains covered by this certification are:
- Information Systems Auditing Process
- Governance and Management of IT
- Information Systems Acquisition, Development and Implementation
- Information Systems Operations and Business Resilience
- Protection of Information Assets
Each domain is quite extensive, covering several topics, which, all combined, provide the full coverage of the given domain. This intensive training course is delivered by exceptional, experienced CISA trainers, over the course of just four days, covering all theoretical, as well as practical, hands-on aspects. Each domain is detailed below:
Domain 1: Information Systems Auditing Process (21%)
Providing audit services in accordance with standards to assist organizations in protecting and controlling information systems. Domain 1 affirms your credibility to offer conclusions on the state of an organization’s IS/IT security, risk and control solutions.
A. Planning
- IS Audit Standards, Guidelines, and Codes of Ethics
- Business Processes
- Types of Controls
- Risk-Based Audit Planning
- Types of Audits and Assessments
B. Execution
- Audit Project Management
- Sampling Methodology
- Audit Evidence Collection Techniques
- Data Analytics
- Reporting and Communication Techniques
- Quality Assurance and Improvement of the Audit Process
Domain 2: Governance and Management of IT (17%)
Domain 2 confirms to stakeholders your abilities to identify critical issues and recommend enterprise-specific practices to support and safeguard the governance of information and related technologies.
A. IT Governance
- IT Governance and IT Strategy
- IT-Related Frameworks
- IT Standards, Policies, and Procedures
- Organizational Structure
- Enterprise Architecture
- Enterprise Risk Management
- Maturity Models
- Laws, Regulations, and Industry Standards affecting the Organization
B. IT Management
- IT Resource Management
- IT Service Provider Acquisition and Management
- IT Performance Monitoring and Reporting
- Quality Assurance and Quality Management of IT
Domain 3: Information Systems Acquisition, Development, and Implementation (12%)
A. Information Systems Acquisition and Development
- Project Governance and Management
- Business Case and Feasibility Analysis
- System Development Methodologies
- Control Identification and Design
B. Information Systems Implementation
- Testing Methodologies
- Configuration and Release Management
- System Migration, Infrastructure Deployment, and Data Conversion
- Post-implementation Review
Domain 4: Information Systems Operations and Business resilience (23%)
Domains 3 and 4 offer proof not only of your competency in IT controls, but also your understanding of how IT relates to business.
A. Information Systems Operations
- Common Technology Components
- IT Asset Management
- Job Scheduling and Production Process Automation
- System Interfaces
- End-User Computing
- Data Governance
- Systems Performance Management
- Problem and Incident Management
- Change, Configuration, Release, and Patch Management
- IT Service Level Management
- Database Management
B. Business Resilience
- Business Impact Analysis (BIA)
- System Resiliency
- Data Backup, Storage, and Restoration
- Business Continuity Plan (BCP)
- Disaster Recovery Plans (DRP)
Domain 5: Protection of Information Assets:
Cybersecurity now touches virtually every information systems role, and understanding its principles, best practices and pitfalls is a major focus within Domain 5.
A. Information Asset Security and Control
- Information Asset Security Frameworks, Standards, and Guidelines
- Privacy Principles
- Physical Access and Environmental ControlsIdentity and Access Management
- Network and End-Point Security
- Data Classification
- Data Encryption and Encryption-Related Techniques
- Public Key Infrastructure (PKI)
- Web-Based Communication Techniques
- Virtualized Environments
- Mobile, Wireless, and Internet-of-Things (IoT) Devices
B. Security Event Management
- Security Awareness Training and Programs
- Information System Attack Methods and Techniques
- Security Testing Tools and Techniques
- Security Monitoring Tools and Techniques
- Incident Response Management
- Evidence Collection and Forensics
Building on pre-course preparation work, we will go through all the CISA domains and conclude the course with a realistic test examination followed by an evaluation and discussions. With the appropriate level of personal preparation, you will acquire the necessary knowledge to be able to pass the CISA exam. Our aim is to optimally prepare you for this challenging test, by going through the Job Practice Area and by offering a realistic test exam.
You will learn how to:
- Develop and implement a risk-based IT audit strategy in compliance with IT audit standards
- Evaluate the effectiveness of an IT governance structure
- Ensure that the IT organizational structure and human resources (personnel) management support the organization’s strategies and objectives
- Review the information security policies, standards, and procedures for completeness and alignment with generally accepted practices
This training is intended to professionals who have already IT experience. It is recommended for the participants to have the knowledge of the CISA Job Practice Area and having read through the CISA Review Manual prior to taking the course and, ideally, to have several years of professional experience in different areas of IT.
The CISA exam preparation course is aimed at all persons who deal with the governance, audit or security of information systems, such as:
- Chief Information Officers
- Security Officers
- Compliance Officers
- IT Auditors
- IT project managers
- IT managers
- IT operations officers
- Security consultants
- Consultants and project managers
Participants wishing to achieve CISA certification must meet the following requirements:
- Successful completion of the CISA exam
- At least 5 years of experience in information security
- Comply with ISACA’s «Information Systems Auditing Standards»
- Agree to the «Continuing Education Policy»
The CISA exam is booked separately through ISACA.
It lasts 4 hours (240 minutes) and contains 150 multiple-choice questions.
The cost is US$ 575 for ISACA members and US$ 760 for non-members.
Our instructors are all certified professionals, who bring with them over 20 years of field experience in the domain of IT security.
Our course can be given in English, and includes realistic exam simulations (in English).
This is an intensive 4-days course for advanced participants who have already gone through the CISA Job Practice Area and the CISA Review Manual.
Days
Courses highlighted in green are rapidly filling up.
Don't miss out.
The training is a combination of directly applicable theory, hands-on exercises, feedback from experience and class interaction.
%
Exam pass rate
You will be well prepared for the exam. Counting all our students, almost 100% have been successful.
All our courses are up to date. They have been adapted to the latest changes of the different exams. We are in constant contact with each certification organisation.
The training is a combination of directly applicable theory, hands-on exercises, feedback from experience and class interaction.
You will be well prepared for the exam. Counting all our students, almost 100% have been successful.
All our courses are up to date. They have been adapted to the latest changes of the different exams. We are in constant contact with each certification organisation.
Interested? Ask us more!