ISACA’s expert guidance gives professionals and enterprises the tools, techniques and understanding to manage 它的风险.

The Promise and Peril of the AI Revolution

The Promise and Peril of the AI Revolution

AI is rapidly sweeping through our businesses and our world. 对ciso的需求, IT风险经理, executives and IT senior management to keep pace with the rapidly evolving risk landscape is urgent.

Using Risk Tolerance to Support 澳门赌场官方下载 Strategy

Using Risk Tolerance to Support 澳门赌场官方下载 Strategy

有效的澳门赌场官方下载风险管理需要所有利益相关者一致地理解和沟通风险术语.

Risk Scenarios Toolkit

Risk Scenarios Toolkit

风险场景的使用可以通过帮助风险团队理解并向业务流程所有者和其他涉众解释风险来增强风险管理工作.

Risk Scenarios Starter Pack

Risk Scenarios Starter Pack

此工具包, 免费提供给ISACA澳门赌场官方软件, 包括10个示例风险场景,从业者可以使用这些场景,并根据其澳门赌场官方下载中的特定上下文进行调整. 风险情景通过构建能够激励人们采取行动的叙述,促进了风险管理中的沟通.

风险入门工具包

风险入门工具包

ISACA created the IT 风险入门工具包 to help users develop an 它的风险 Program at their organization. Through detailed templates and guides you’ll be able to:

  • Establish a consistent, disciplined, and integrated approach to risk management.
  • Formalize a governance structure for risk oversight which includes the policies, 流程, and control systems that support risk-related decision making.
  • 和更多的...
WHPEUFS

Digital Operational Resilience in the EU Financial Sector: A Risk-Based

2008年的金融危机是现代史上最具破坏性、影响最深远的全球衰退之一. While the reforms that followed strengthened the resilience of the financial sector, 它们仅间接涉及信息和通信技术(ICT),未完全涉及数字业务弹性.

WHPORR

Optimizing Risk Response

Risk is a part of everyday life, from transportation and travel to business and financial decisions. The digital world is no exception. 信息技术推动了创新,为全球澳门赌场官方下载创造了新的机遇, they are not without peril.

MD-EPUBITRG

IT风险基础 Study Guide

A comprehensive study aid that will help to prepare learners for the IT风险基础 Certificate exam. 本课程提供信息技术相关风险管理的基础知识和方法,包括风险识别, 评价, 和响应.

RITF2

风险IT框架

The 风险IT框架 fills the gap between generic risk management concepts and detailed IT risk management. It provides an end-to-end, comprehensive view of risks related to the use of IT and a similarly thorough treatment of risk management, from the tone and culture at the top, 对于操作问题. 总之, the framework will enable enterprises to understand and manage significant IT risk types, building upon the existing risk related components within the current ISACA frameworks.

RITPG2

Risk IT Practitioner Guide

The Risk IT Practitioner Guide provides practical guidance for risk professionals. 该指南包括大量可立即实施的实用风险管理技术.

通过IT风险专家开发和提供的培训,提高您的专业知识,增加您的职业潜力或澳门赌场官方下载技能.

IT-Risk_fundamentals

IT风险基础 Certificate

Ideal for professionals who wish to learn about risk and information and technology (I&T)有关的风险, whom currently interact with risk professionals, or are new to risk and interested in working as a risk or 它的风险 profession. Affirm your foundational knowledge of risk that is related to I&T.

CPE on Demand: Risk Essentials Bundle

IT风险视频

IT风险管理要点视频使您能够获得IT风险概念的关键基础知识, practices and impacts on IT and business. This essential primer for IS/IT and business managers, practitioners and anyone interested in a risk management career is accessible on-demand, 在任何地方. 它的风险 Assessment Video will help you further your 它的风险 learning with the 它的风险 Assessment Video. This learning enhancement for IS/IT and business managers, practitioners and anyone interested in a risk management career is accessible on-demand, 在任何地方.

RISK MANAGEMENT ESSENTIALS   It风险评估   PURCHASE BOTH TOGETHER

CRISC

(CRISC) Certified in Risk and Information Systems Control

ISACA’s Certified in Risk and Information Systems Control (CRISC)® 认证表明在识别和管理澳门赌场官方下载IT风险以及实现和维护信息系统控制方面具有专业知识. Gain instant recognition and credibility with CRISC and boost your career.

CPE on Demand: Risk Essentials Bundle

CPE on Demand: Risk Management

The CPE on Demand: Risk Management collection provides timely, valuable insights for 它的审计, 安全, 和风险专业人士, and enables you to learn on your schedule while earning up to 5.5 ISACA cpe. 所有录音都是在ISACA北美CACS 2020会议上录制的,在90天内无限制,包括可下载的演示文稿.

When you want guidance, insight, tools and more, you’ll find them in the resources ISACA offers.

MD-WCB19IRFA

COBIT Focus Area: Information & 技术风险

COBIT Focus Area: Information & 技术风险 provides guidance related to information and technology (I&T) risk and how to apply COBIT to I&风险实践.

白皮书

Getting Started With Risk Management

我们的免费白皮书, Getting Started With Risk Management, 在解决组织中可能存在的任何独特因素时,探索必须达到的谨慎平衡. In formulating a business strategy, the enterprise may decide to accept some level of risk in exchange for pursuing business goals and objectives. This paper discusses various options and considerations.

白皮书

Bridging the Digital Risk Gap

To help improve communication and effectiveness between Risk management and IT professionals, ISACA and RIMS have partnered on a FREE white paper, Bridging the Digital Risk Gap, 哪些概述了将这些专业人员整合到整体数字战略团队中以创造价值并抵消不必要的风险和结果的最佳实践.

Supply Chain Resilience and Continuity

Supply Chain Resilience and Continuity

随着我们面临的每一场重大灾难——包括当前的大流行——业务连续性管理必须继续发展. 在新的免费白皮书中了解如何:供应链弹性和连续性:弥合全球大流行中暴露的差距.

dots in a circle - ISACA's CMMI Cybermaturity Platform

The CMMI Cybermaturity Platform

The CMMI Cybermaturity Platform features custom risk profiling, 评估, 差异分析, 以及路线图功能, and is in use across multiple sectors including financial services, healthcare and manufacturing. It addresses industry concerns and organizational challenges, including confidence in cybersecurity initiatives and prioritizing security programs. The platform gives businesses real-time knowledge of best cybersecurity practices, so organizations can make evidence-based decisions on how to improve cybersecurity programs.

View Risk Management Publications and 资源

在利用IT风险框架来创建和维护最有效的技术和理解来管理IT风险方面获得额外的见解和指导.

Collaborative Mindset Change from Compliance to Risk
博客

Collaborative Mindset Change from Compliance to Risk

澳门赌场官方下载的目标是在现代业务和监管环境中最好地调整资源时,从基于合规性的关注点过渡到基于风险的方法是很有用的.

2023年10月23日
姗姗爸爸
博客

Balancing the Risks and Rewards of AI

可以理解的是,许多澳门赌场官方下载在建立自己的人工智能方法时采取了谨慎的态度, but delaying on meaningful action comes with its own set of risks.

2023年9月15日