I was in Japan for 6 months and listened to your videos while I would run in the evenings. I studied significantly at night but your videos helped me approach the exam appropriately. I passed it on the first try.
Hello Kelly, I am starting my pursuit for CISM and CCSP. I took a bootcamp with you in 2014 and successfully passed my CISSP. I have followed you since then and judged to check in and say hello. Back then I was a PM now I am a CISO for a health system. Much continued success.
It's kind of interesting that the CISO is not a "doer" - but that depends on the size of the organization. I'm the CIO, but also serve as the ISO, but I also have to fix computers, admin servers, and so much more as I simply do not have enough staff. I'd love to be hands off, but I'm always forced to run with minimal IT staff and in my 20+ years in CIO level positions, I have always had to do hands on because the companies will not hire enough staff. Does anyone work somewhere that has sufficient staffing?
Hi, Kelly Do you have PDF material or any other type of notes your way of discussion is awesome just like my University professors I am from the Canadian University of Toronto. I would appreciate it if you provided the right Book reference or note material. Thanks
I was in Japan for 6 months and listened to your videos while I would run in the evenings. I studied significantly at night but your videos helped me approach the exam appropriately. I passed it on the first try.
Enjoy. It is not perfect but this helps give an overview and section times
Introdcution and Overview - 0:26
* Exam Material - 8:49
* CISM Domain Structure - 15:27
* Exam Format - 16:28
* Certification Process - 18:29
INFORMATION SECURITY GOVERNANCE - 20:14
* Information Seucrity Manager - 43:11
* Data Owners and Data custodians - 46:05
* Principles of Corporate Governance - 1:05:22
* Benefits of Information Security Governance - 1:09:56
* Governance - 1:12:40
FRAMEWORKS - 1:16:25
* Information Security Governance Frameworks - 1:16:48
* COBIT 2019 - 1:18:52
* ISO27001 - 1:29:27
* Control Families - 1:33:48
* ISO 27001 Standards - 1:36:01
* Best Practices - Start with Security Culture - 1:52:32
* General Data Protection Regulation (GDPR) - 1:56:00
* Capability Maturity Model Integration (CMMI) - 2:01:55
LEGAL AND COMPLIANCE - 2:08:36
* Legal and Regulatory Requirements - 2:09:16
* Data Retention/Archival Policy - 2:14:47
* Removing Remnants of Sensitive Data - 2:18:06
* E-Discovery - 2:19:06
* Physical Considerations - 2:19:48
* Information Security Strategy Overview - 2:24:08
* Strategy Objectives - 2:24:42
* Pitfalls of Security Strategy Development - 2:29:43
* Gap Analysis - 2:31:50
* Information Security Roadmap - 2:32:11
* Closing the Gap - 2:32:33
* SWOT Analysis - 2:33:35
* Assessing the Program with a Balanced Scorecard - 2:33:46
* Information Security Roadmap - 2:35:39
ORGANIZATONAL CULTURE
* Organizational Culture - 2:36:27
* Information Security Culture - 2:39:06
* Goals of an Information Security Aware Culture - 2:41:05
* Best Practices Start with Security Culture - 2:44:49
* Domain 1 Summary - 2:46:51
Many thanks
Perfect!!!!Thanks a lot for this!
Thank you for the sharing insight!
Hello Kelly, I am starting my pursuit for CISM and CCSP. I took a bootcamp with you in 2014 and successfully passed my CISSP. I have followed you since then and judged to check in and say hello. Back then I was a PM now I am a CISO for a health system. Much continued success.
Passed the exam yesterday thanks for the videos
Amazing. Congrats. I will have my exam soon. These videos are great!
Kelly, good explanation. Thanks.
Hi, Kelly, your summary slide listed GRC but I didn't see you talk about it. Did I miss it?
It's kind of interesting that the CISO is not a "doer" - but that depends on the size of the organization. I'm the CIO, but also serve as the ISO, but I also have to fix computers, admin servers, and so much more as I simply do not have enough staff. I'd love to be hands off, but I'm always forced to run with minimal IT staff and in my 20+ years in CIO level positions, I have always had to do hands on because the companies will not hire enough staff. Does anyone work somewhere that has sufficient staffing?
I doubt it LOL.
They must love overloading you with work and only paying one salary.
can you share the high level of the prerequisite and requirement before we can take the exam?
www.isaca.org/-/media/files/isacadp/project/isaca/certification/exam-candidate-guides/2022/exam-candidate-guide.pdf
Is it possible to receive the presentation?
Hi, Kelly Do you have PDF material or any other type of notes your way of discussion is awesome just like my University professors I am from the Canadian University of Toronto. I would appreciate it if you provided the right Book reference or note material. Thanks
Downloadable PDF version of the 15th and 16th manual is available in the internet as well as Orielly version of CISM is also available
Do you have CISM text materials to learn? Is there any relevant network disk link to share?
Data architecture…. Who is the owner for this piece of work? Data owner or Information Security Manager?
Great explanation!! Thanks
Do i need to take the CISA examination first before CISM?
Not necessarily. I just passed CISM yesterday, I didn't have CISA
The two exams are not dependent on each other
me too
MY BEST REGARDS
Hello Kelly, can one earn CEUs watching this video series?
😂
CISM stands for what?!
google it. smh
@@adele-claricevlogs7154 Probably, he was asking in a sarcastic way because at start of the video she said 'Management' instead of 'Manager'.
Certified Information Security Manager
Nice explanation, will it be possible to share the presentation to my email id.