Skip to main content

Certified in Risk and Information Systems Control (CRISC) by ISACA

A Certified in Risk and Information Systems Control® (CRISC®) demonstrates your IT risk management expertise. By taking a proactive approach, you will learn how to enhance your organization’s business resilience, deliver stakeholder value and optimize risk management across the enterprise. As a CRISC, you will be ready to address emerging technology, including AI risk assessment and general best practices for risk management and mitigation related to AI data governance and ethics.

The CRISC pathway by ISACA is the #4 top-paying certification worldwide and 52% of CRISC certificate holders experienced on-the-job improvement.

ABOUT THIS COURSE

The Certified in Risk and Information Systems Control (CRISC) certification, offered by ISACA, is designed for professionals who manage IT risks and oversee information systems controls. The CRISC exam evaluates candidates across four key domains: Governance; IT Risk Assessment; Risk Response and Reporting; and Information Technology and Security.

Successful students will receive an internationally recognized badge from ISACA.

Additional Resources

Overview

Modality

Online

Format

Asynchronous

Pricing

$1979.00

Partner

RevU

Topic

Cybersecurity

Information Technology and Engineering

Risk Management

Price Includes

  • ISACA Student Membership
  • Certificate Exam
  • Review Manual
  • Online Review Course

COURSE REQUIREMENTS

There are no prerequisites for this course.

COURSE SYLLABUS

The Certified in Risk and Information Systems Control (CRISC) certification, offered by ISACA, is designed for professionals who manage IT risks and oversee information systems controls. The CRISC exam evaluates candidates across four key domains: Governance; IT Risk Assessment; Risk Response and Reporting; and Information Technology and Security.

  • Governance: This domain assesses understanding of organizational governance, including strategy, structure, policies, and risk management frameworks.
  • IT Risk Assessment: Focuses on identifying and evaluating threats and vulnerabilities to an organization’s IT infrastructure.
  • Risk Response and Reporting: Covers the development and management of risk treatment plans, control design and implementation, and effective communication of risk and control information.
  • Information Technology and Security: Examines alignment of business practices with IT and security standards, promoting a risk-aware culture, and implementing security awareness training.