SlideShare a Scribd company logo
5–Month
Prep Guide
|Prepared by: Wale Micaiah|
Certified in Risk and
Information Systems
Controls
Having successfully attempted CISM and excelled, it became
necessary to share with others some tips I personally
practiced that aided my success.
I shared them in CismPrepGuide I received tremendous
feedbacks, with several downloads, assisted quite a number
responding to questions on grey areas and contributing my
best to help them get certified.
My philosophy is:
When you find something that
works, share with others so
they don’t go through the
troubles you went through.
(http://www.slideshare.net/statisense/cismprepguide)
The first and most important thing to do before paying for
the exam is to establish the reason(s) “why CRISC” among
all the Risk exams! Ask yourself:
Why CRISC?
Is it a job requirement?
Is it for career advancement?
Is it just for professional development
Is it just another conquest?
The stronger your conviction “why CRISC”, the more you
will “find excuse for your excuses” when you start
preparing for the exam…trust me, you will have reasons
not to study and practice but if your “why CRISC” is
stronger, you will always find time to study!
Take some time to establish
“why CRISC”
CRISC
“If there is no reason to start, you
will soon find reason to stop!”
So this year, I attempted CRISC on June 14, 2014, about 45
days later (precisely July 29, 2014) I got this:
…We are pleased to inform you
that you PASSED the exam…
…Again, congratulations on passing the CRISC exam, we look
forward to having you join the more than 16,000 professionals
worldwide who have earned the CRISC credential.
Even though it was a great feeling, it didn’t come to me much
as a surprise…because I had followed some rudimentary
elements of the Psychology of Success coupled with my work
experience, preparation, practice and prayer – yes, I prayed!
…and this is my desire for you too….that ISACA may be
pleased to inform you that you ‘PASSED’ CRISC!
Introduction to CRISC
The CRISC certification, CRISCTM, pronounced “see-risk,” is
designed for IT professionals who have hands-on
experience with:
 risk identification, assessment and evaluation;
 risk response;
 risk monitoring;
 IS control design and implementation; and
 IS control monitoring and maintenance.
Content of the CRISC Exam
The CRISC exam measures an individual’s ability and
knowledge as they pertain to the performance of the CRISC
task statements. The content of the exam is modified to
reflect changes in technology and practices.
CRISC Domains
# DOMAIN % DESCRIPTION
1
Risk Identification,
Assessment and
Evaluation
31
Identify, assess and evaluate risk to enable the execution
of the enterprise risk management strategy.
2 Risk Response 17
Develop and implement risk responses to ensure that
risk factors and events are addressed in a cost-effective
manner and in line with business objectives.
3 Risk Monitoring 17
Monitor risk and communicate information to the
relevant stakeholders to ensure the continued
effectiveness of the enterprise’s risk management
strategy.
4
Information Systems
Control Design and
Implementation
17
Design and implement information systems controls in
alignment with the organization’s risk appetite and
tolerance levels to support business objectives.
5
Information Systems
Control Monitoring
and Maintenance
18
Monitor and maintain information systems controls to
ensure that they function effectively and efficiently.
The percentages listed above with the domains indicate the emphasis or
percentage of questions that will appear on the exam from each domain.
200 Multiple-Choice
Questions – 4hours
1 Question – 72Secs
(1min:12Secs)
A candidate must receive
a scaled score of 450 or
higher to pass the exam
Some questions are
included for research and
analysis purposes only
CRISC QUESTIONS PER DOMAIN
Domain 1: 62 Domain 3: 34 Domain 5: 36
Domain 2: 34 Domain 4: 34
STUDY MATERIALS
 Official ISACA Study materials – Review Manual and
past Questions & Answers
 The Risk IT Framework
 The Risk IT Practitioner Guide
 COBIT 5
Make some more investment - you will need them!
See www.isaca.org/criscbooks
ADDITIONAL STUDY MATERIALS
Here are some of the
additional materials I
used for my CRISC
preparation.
ISACA Study Materials
were my primary and I
refer to these when
necessary
STUDY PLANMonth
1 2 3 4 5Week
1
DOMAIN 12
3
4 Review & Practice
5
DOMAIN 26
7
8 Review & Practice
9
DOMAIN 310
11
12 Review & Practice
13
DOMAIN 4
14
15
16 Review & Practice
17
DOMAIN 518
19
20 Review & Practice
EXAMINATION WEEK
Consult your reference
materials as you study
Remember, this is just a guide! Success is not only in
the PLAN but its EXECUTION!
Each CRISC Domain is divided into:
 Task statements and
 Knowledge Statements
STUDY PLAN EXECUTION
Task Statements:
These are tasks within
this job practice area
that a CRISC candidate
must know how to
perform
Knowledge Statements:
These are areas a CRISC
candidate must have good
understanding of, they are
the basis for the
examination.
The Knowledge Statements are the basis for the exam!
STUDY RECOMMENDATION
 You may start with the Domain you are most familiar with,
but I prefer to start from Domain 1 as they build on one
another.
 Read the Task Statements (TS) and Knowledge Statements
(KS) before reading the rest of the Chapter. You may print
it out from the recent CRISC Exam Candidate Guide
document.
 The TS, KS is your CRISC Syllabus! TS and KS are the
measurement of your understanding of each Domain. Be
sure you understand what you are required to know in
each KS.
 Next, read the Questions corresponding with each
Domain with special attention to understanding the
Questions and logic behind it. For now, do not bother
about getting the answers correctly.
STUDY RECOMMENDATION
 Take note of words like MOST, LEAST, BEST, FIRST,
PRIMARILY, MAIN, MUST, HIGHEST, GREATEST, PRIMARY,
LOWEST, PRIORITY, MAJOR, EXCLUSIVELY, and NEXT.
They are very, very, very vital!
 Refer to other materials of choice, if you need to seek
more clarification.
 You should be able to connect the Review Manual with
the TS and KS before proceeding to the next
section/chapter.
 Go through the CRISC Item Development Guide. It will
help you know how Professionals think when setting
exam questions.
 Stick to what works for you. You know when you
understand better – Morning, Afternoon, Night, with
Music, Low Noise, Library, Room, Public places, etc.
CONTD.
PART I – Risk Management
and Information System Control
Theory and Concepts consists of
the 5 Chapters, each dedicated to
one of the 5 CRISC Domains
PART II – Risk Management
and Information Systems Control
in Practice contains selected
process-specific chapters.
PART I PART II
STUDY RECOMMENDATION
CRISC
REVIEW MANUAL
I suggest you complete Part
I before going on to II
Do YOU have a goal for this
exam?
What is it?
A goal keeps you Focus, on a
Mark!
Let’s see how we can set a
GOAL!
WHAT’S YOUR CRISC GOAL?
I had a goal of the score I want to achieve in CRISC
during preparation, and I wrote it down. In fact, I
placed it where I could see it every time, many
times, everyday!
GOAL SETTING
I went a step further, I set a goal for each DOMAIN,
and I monitor my performance at every practice to
ensure I meet those goals.
Most people set goal, but they don’t take time to
measure (monitor) their goal.
What gets measured (monitored), gets done!
I monitor my performance by keeping a small jotter, I
recorded my performance in each domain and appraised
them against previous perfomance. See Samples
GOAL SETTING
Keeping those records kept me on track,
particularly when I did not perform to expectation.
Sometimes, I surpassed my goals and other times I
fall short (sad face) but the records gave me an
idea of where I was at every time per Domain.
GOAL SETTING
“Even though it was a great feeling, it didn’t come to
me much as a surprise…because I had followed
some rudimentary elements of the Psychology
of Success coupled with my work experience,
preparation, practice and prayer – yes, I prayed!”
Remember what I said earlier:
Again, remember that ISACA does not go by your
raw score – it is a common scale score of 200 to
800. Also, there are some questions that are just
for Research and Analysis purpose – no mark is
awarded to them (I assume).
So, you might want to set your goal higher than
usual…the most important thing is that you work
towards whatever PASSING goal you have set!
GOAL SETTING
“Those who Set Goals, Score Goals”
CONGRATULATE YOURSELF
One last thing I did was to congratulate myself
ahead of time – I pasted this where I could see it
daily: I pasted it where my CRISC goal
was and I saw it every time,
many times, everyday.
It ‘convinced’ my
subconscious mind to accept
the ‘congratulations’, and
today it is real!
ISACA and several people said congratulations,
by mail, SMS, even on Social Media.
As you prepare for this or other
exams, all I can say is:
May the Goal you
have Set and Work
towards be a reality!
Congratulations!
Reference:
- www.isaca.org
- CRISC-Exam-Candidates-Guide-English-2013
Analysis by: Wale Micaiah
e: wm@walemicaiah.com
w. www.statisense.com

More Related Content

What's hot

ISO/IEC 27001:2022 (Information Security Management Systems) Awareness Training
ISO/IEC 27001:2022 (Information Security Management Systems) Awareness TrainingISO/IEC 27001:2022 (Information Security Management Systems) Awareness Training
ISO/IEC 27001:2022 (Information Security Management Systems) Awareness Training
Operational Excellence Consulting
 
Iso 27001 awareness
Iso 27001 awarenessIso 27001 awareness
Iso 27001 awareness
Ãsħâr Ãâlâm
 
NQA ISO 27701 Implementation Guide
NQA ISO 27701 Implementation GuideNQA ISO 27701 Implementation Guide
NQA ISO 27701 Implementation Guide
NA Putra
 
ISO 27001 Benefits
ISO 27001 BenefitsISO 27001 Benefits
ISO 27001 Benefits
Dejan Kosutic
 
What is iso 27001 isms
What is iso 27001 ismsWhat is iso 27001 isms
What is iso 27001 isms
Craig Willetts ISO Expert
 
Performing a Security Assessment of the Cloud using the Risk Management Frame...
Performing a Security Assessment of the Cloud using the Risk Management Frame...Performing a Security Assessment of the Cloud using the Risk Management Frame...
Performing a Security Assessment of the Cloud using the Risk Management Frame...
Amazon Web Services
 
Introduction to Risk Management via the NIST Cyber Security Framework
Introduction to Risk Management via the NIST Cyber Security FrameworkIntroduction to Risk Management via the NIST Cyber Security Framework
Introduction to Risk Management via the NIST Cyber Security Framework
PECB
 
Microsoft Threat Protection
Microsoft Threat ProtectionMicrosoft Threat Protection
Microsoft Threat Protection
Thierry DEMAN
 
ISO 27001 - information security user awareness training presentation - Part 1
ISO 27001 - information security user awareness training presentation - Part 1ISO 27001 - information security user awareness training presentation - Part 1
ISO 27001 - information security user awareness training presentation - Part 1
Tanmay Shinde
 
ISO 27001 - information security user awareness training presentation -part 2
ISO 27001 - information security user awareness training presentation -part 2ISO 27001 - information security user awareness training presentation -part 2
ISO 27001 - information security user awareness training presentation -part 2
Tanmay Shinde
 
ISMS implementation challenges-KASYS
ISMS implementation challenges-KASYSISMS implementation challenges-KASYS
ISMS implementation challenges-KASYS
Reza Teynia ISMS, ITSM, MSc
 
Improve Cybersecurity posture by using ISO/IEC 27032
Improve Cybersecurity posture by using ISO/IEC 27032Improve Cybersecurity posture by using ISO/IEC 27032
Improve Cybersecurity posture by using ISO/IEC 27032
PECB
 
Patch Management Best Practices 2019
Patch Management Best Practices 2019Patch Management Best Practices 2019
Patch Management Best Practices 2019
Ivanti
 
Project plan for ISO 27001
Project plan for ISO 27001Project plan for ISO 27001
Project plan for ISO 27001
technakama
 
Basic introduction to iso27001
Basic introduction to iso27001Basic introduction to iso27001
Basic introduction to iso27001
Imran Ahmed
 
ISO 27001 2002 Update Webinar.pdf
ISO 27001 2002 Update Webinar.pdfISO 27001 2002 Update Webinar.pdf
ISO 27001 2002 Update Webinar.pdf
ControlCase
 
Iso 27001 2013
Iso 27001 2013Iso 27001 2013
ISO 27001 - Information security user awareness training presentation - part 3
ISO 27001 - Information security user awareness training presentation - part 3ISO 27001 - Information security user awareness training presentation - part 3
ISO 27001 - Information security user awareness training presentation - part 3
Tanmay Shinde
 

What's hot (20)

ISO/IEC 27001:2022 (Information Security Management Systems) Awareness Training
ISO/IEC 27001:2022 (Information Security Management Systems) Awareness TrainingISO/IEC 27001:2022 (Information Security Management Systems) Awareness Training
ISO/IEC 27001:2022 (Information Security Management Systems) Awareness Training
 
CismPrepGuide
CismPrepGuideCismPrepGuide
CismPrepGuide
 
Iso 27001 awareness
Iso 27001 awarenessIso 27001 awareness
Iso 27001 awareness
 
NQA ISO 27701 Implementation Guide
NQA ISO 27701 Implementation GuideNQA ISO 27701 Implementation Guide
NQA ISO 27701 Implementation Guide
 
ISO 27001 Benefits
ISO 27001 BenefitsISO 27001 Benefits
ISO 27001 Benefits
 
What is iso 27001 isms
What is iso 27001 ismsWhat is iso 27001 isms
What is iso 27001 isms
 
Performing a Security Assessment of the Cloud using the Risk Management Frame...
Performing a Security Assessment of the Cloud using the Risk Management Frame...Performing a Security Assessment of the Cloud using the Risk Management Frame...
Performing a Security Assessment of the Cloud using the Risk Management Frame...
 
Introduction to Risk Management via the NIST Cyber Security Framework
Introduction to Risk Management via the NIST Cyber Security FrameworkIntroduction to Risk Management via the NIST Cyber Security Framework
Introduction to Risk Management via the NIST Cyber Security Framework
 
Microsoft Threat Protection
Microsoft Threat ProtectionMicrosoft Threat Protection
Microsoft Threat Protection
 
ISO 27001 - information security user awareness training presentation - Part 1
ISO 27001 - information security user awareness training presentation - Part 1ISO 27001 - information security user awareness training presentation - Part 1
ISO 27001 - information security user awareness training presentation - Part 1
 
ISO 27001 - information security user awareness training presentation -part 2
ISO 27001 - information security user awareness training presentation -part 2ISO 27001 - information security user awareness training presentation -part 2
ISO 27001 - information security user awareness training presentation -part 2
 
ISMS implementation challenges-KASYS
ISMS implementation challenges-KASYSISMS implementation challenges-KASYS
ISMS implementation challenges-KASYS
 
Improve Cybersecurity posture by using ISO/IEC 27032
Improve Cybersecurity posture by using ISO/IEC 27032Improve Cybersecurity posture by using ISO/IEC 27032
Improve Cybersecurity posture by using ISO/IEC 27032
 
Patch Management Best Practices 2019
Patch Management Best Practices 2019Patch Management Best Practices 2019
Patch Management Best Practices 2019
 
Cyber Security Management
Cyber Security ManagementCyber Security Management
Cyber Security Management
 
Project plan for ISO 27001
Project plan for ISO 27001Project plan for ISO 27001
Project plan for ISO 27001
 
Basic introduction to iso27001
Basic introduction to iso27001Basic introduction to iso27001
Basic introduction to iso27001
 
ISO 27001 2002 Update Webinar.pdf
ISO 27001 2002 Update Webinar.pdfISO 27001 2002 Update Webinar.pdf
ISO 27001 2002 Update Webinar.pdf
 
Iso 27001 2013
Iso 27001 2013Iso 27001 2013
Iso 27001 2013
 
ISO 27001 - Information security user awareness training presentation - part 3
ISO 27001 - Information security user awareness training presentation - part 3ISO 27001 - Information security user awareness training presentation - part 3
ISO 27001 - Information security user awareness training presentation - part 3
 

Viewers also liked

COBIT®5 - Implementation
COBIT®5 - ImplementationCOBIT®5 - Implementation
COBIT®5 - Foundation
COBIT®5 - FoundationCOBIT®5 - Foundation
Sourcing Governance - Foundation
Sourcing Governance - FoundationSourcing Governance - Foundation
CRISC online review course Spanish / Español (Intro)
CRISC online review course Spanish / Español (Intro)CRISC online review course Spanish / Español (Intro)
CRISC online review course Spanish / Español (Intro)
iTTi Innovation & Technology Trends Institute
 
COBIT®5 - Assessor
COBIT®5 - AssessorCOBIT®5 - Assessor
CISA Training - Chapter 5 - 2016
CISA Training - Chapter 5 - 2016CISA Training - Chapter 5 - 2016
CISA Training - Chapter 5 - 2016
Hafiz Sheikh Adnan Ahmed
 
CISA Training - Chapter 1 - 2016
CISA Training - Chapter 1 - 2016CISA Training - Chapter 1 - 2016
CISA Training - Chapter 1 - 2016
Hafiz Sheikh Adnan Ahmed
 
CRISC sertifikacija
CRISC sertifikacijaCRISC sertifikacija
15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...
15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...
15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...
Cláudio Dodt
 
How to handle multilayered IT security today
How to handle multilayered IT security todayHow to handle multilayered IT security today
How to handle multilayered IT security today
Marc Vael
 
[Cluj] Turn SSL ON
[Cluj] Turn SSL ON[Cluj] Turn SSL ON
[Cluj] Turn SSL ON
OWASP EEE
 
Securing Your Digital Files from Legal Threats
Securing Your Digital Files from Legal ThreatsSecuring Your Digital Files from Legal Threats
Securing Your Digital Files from Legal Threats
Abbie Hosta
 
Información y Formación de la Certificación CRISC 2017
Información y Formación de la Certificación CRISC 2017Información y Formación de la Certificación CRISC 2017
Información y Formación de la Certificación CRISC 2017
ISACA Madrid Chapter
 
Risk Identification Exercise - Vacation to Disneyland
Risk Identification Exercise - Vacation to DisneylandRisk Identification Exercise - Vacation to Disneyland
Risk Identification Exercise - Vacation to Disneyland
Sachin Ghongade
 
Infrastructure Saturday 2011 - Understanding PKI and Certificate Services
Infrastructure Saturday 2011 - Understanding PKI and Certificate ServicesInfrastructure Saturday 2011 - Understanding PKI and Certificate Services
Infrastructure Saturday 2011 - Understanding PKI and Certificate Services
kieranjacobsen
 

Viewers also liked (15)

COBIT®5 - Implementation
COBIT®5 - ImplementationCOBIT®5 - Implementation
COBIT®5 - Implementation
 
COBIT®5 - Foundation
COBIT®5 - FoundationCOBIT®5 - Foundation
COBIT®5 - Foundation
 
Sourcing Governance - Foundation
Sourcing Governance - FoundationSourcing Governance - Foundation
Sourcing Governance - Foundation
 
CRISC online review course Spanish / Español (Intro)
CRISC online review course Spanish / Español (Intro)CRISC online review course Spanish / Español (Intro)
CRISC online review course Spanish / Español (Intro)
 
COBIT®5 - Assessor
COBIT®5 - AssessorCOBIT®5 - Assessor
COBIT®5 - Assessor
 
CISA Training - Chapter 5 - 2016
CISA Training - Chapter 5 - 2016CISA Training - Chapter 5 - 2016
CISA Training - Chapter 5 - 2016
 
CISA Training - Chapter 1 - 2016
CISA Training - Chapter 1 - 2016CISA Training - Chapter 1 - 2016
CISA Training - Chapter 1 - 2016
 
CRISC sertifikacija
CRISC sertifikacijaCRISC sertifikacija
CRISC sertifikacija
 
15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...
15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...
15 dicas essenciais para aprovação nos exames da ISACA - CISA, CISM, CRISC e ...
 
How to handle multilayered IT security today
How to handle multilayered IT security todayHow to handle multilayered IT security today
How to handle multilayered IT security today
 
[Cluj] Turn SSL ON
[Cluj] Turn SSL ON[Cluj] Turn SSL ON
[Cluj] Turn SSL ON
 
Securing Your Digital Files from Legal Threats
Securing Your Digital Files from Legal ThreatsSecuring Your Digital Files from Legal Threats
Securing Your Digital Files from Legal Threats
 
Información y Formación de la Certificación CRISC 2017
Información y Formación de la Certificación CRISC 2017Información y Formación de la Certificación CRISC 2017
Información y Formación de la Certificación CRISC 2017
 
Risk Identification Exercise - Vacation to Disneyland
Risk Identification Exercise - Vacation to DisneylandRisk Identification Exercise - Vacation to Disneyland
Risk Identification Exercise - Vacation to Disneyland
 
Infrastructure Saturday 2011 - Understanding PKI and Certificate Services
Infrastructure Saturday 2011 - Understanding PKI and Certificate ServicesInfrastructure Saturday 2011 - Understanding PKI and Certificate Services
Infrastructure Saturday 2011 - Understanding PKI and Certificate Services
 

Similar to Crisc prep-guide

BEST Practices - Testing & Optimization | Bredan Rendan
BEST Practices - Testing & Optimization | Bredan RendanBEST Practices - Testing & Optimization | Bredan Rendan
BEST Practices - Testing & Optimization | Bredan Rendan
Caleb Whitmore
 
Crafting Product Strategy Blueprint for Success by Atlassian PM.pdf
Crafting Product Strategy Blueprint for Success by Atlassian PM.pdfCrafting Product Strategy Blueprint for Success by Atlassian PM.pdf
Crafting Product Strategy Blueprint for Success by Atlassian PM.pdf
Product School
 
Analysis for Courseware Documentation
Analysis for Courseware DocumentationAnalysis for Courseware Documentation
Analysis for Courseware Documentation
Lifelong Learning
 
Moving Mountains Through Measurement
Moving Mountains Through MeasurementMoving Mountains Through Measurement
Moving Mountains Through Measurement
Jack Nichelson
 
Training needs analysis, skills auditing and training
Training needs analysis, skills auditing and trainingTraining needs analysis, skills auditing and training
Training needs analysis, skills auditing and training
Charles Cotter, PhD
 
How Training Managers Can Use Self-Development to Improve Their Programs
How Training Managers Can Use Self-Development to Improve Their ProgramsHow Training Managers Can Use Self-Development to Improve Their Programs
How Training Managers Can Use Self-Development to Improve Their Programs
BizLibrary
 
Strategic planning
Strategic planningStrategic planning
Strategic planning
Greg Ezeilo
 
Basics of Business Analysis.pdf (tham khao)
Basics of Business Analysis.pdf (tham khao)Basics of Business Analysis.pdf (tham khao)
Basics of Business Analysis.pdf (tham khao)
nguyenanvuong2007
 
Basics of Business Analysis .pdf (tham khao)
Basics of Business Analysis .pdf (tham khao)Basics of Business Analysis .pdf (tham khao)
Basics of Business Analysis .pdf (tham khao)
nguyenanvuong2007
 
360 degree feedback system
360 degree feedback system360 degree feedback system
360 degree feedback systemRajib jena
 
Training Needs Analysis
Training Needs AnalysisTraining Needs Analysis
Training Needs Analysis
Dr. Peeyush Verma
 
Training Needs Analysis, Skills Auditing & Evaluation
Training Needs Analysis, Skills Auditing & EvaluationTraining Needs Analysis, Skills Auditing & Evaluation
Training Needs Analysis, Skills Auditing & Evaluation
Charles Cotter, PhD
 
Training Partnerz - EMPOWERING LEADERS
Training Partnerz - EMPOWERING LEADERS Training Partnerz - EMPOWERING LEADERS
Training Partnerz - EMPOWERING LEADERS
Manish Jhurani
 
Employability skills of young graduates | MCB – An employer of choice
Employability skills of young graduates | MCB – An employer of choiceEmployability skills of young graduates | MCB – An employer of choice
Employability skills of young graduates | MCB – An employer of choice
MCB
 
David Robidas - Mastery Journey timeline
David Robidas - Mastery Journey timelineDavid Robidas - Mastery Journey timeline
David Robidas - Mastery Journey timeline
David Robidas
 

Similar to Crisc prep-guide (20)

BEST Practices - Testing & Optimization | Bredan Rendan
BEST Practices - Testing & Optimization | Bredan RendanBEST Practices - Testing & Optimization | Bredan Rendan
BEST Practices - Testing & Optimization | Bredan Rendan
 
Crafting Product Strategy Blueprint for Success by Atlassian PM.pdf
Crafting Product Strategy Blueprint for Success by Atlassian PM.pdfCrafting Product Strategy Blueprint for Success by Atlassian PM.pdf
Crafting Product Strategy Blueprint for Success by Atlassian PM.pdf
 
Analysis for Courseware Documentation
Analysis for Courseware DocumentationAnalysis for Courseware Documentation
Analysis for Courseware Documentation
 
Moving Mountains Through Measurement
Moving Mountains Through MeasurementMoving Mountains Through Measurement
Moving Mountains Through Measurement
 
Training needs analysis, skills auditing and training
Training needs analysis, skills auditing and trainingTraining needs analysis, skills auditing and training
Training needs analysis, skills auditing and training
 
How Training Managers Can Use Self-Development to Improve Their Programs
How Training Managers Can Use Self-Development to Improve Their ProgramsHow Training Managers Can Use Self-Development to Improve Their Programs
How Training Managers Can Use Self-Development to Improve Their Programs
 
Selection processes
Selection processesSelection processes
Selection processes
 
Strategic planning
Strategic planningStrategic planning
Strategic planning
 
IoP
IoPIoP
IoP
 
Basics of Business Analysis.pdf (tham khao)
Basics of Business Analysis.pdf (tham khao)Basics of Business Analysis.pdf (tham khao)
Basics of Business Analysis.pdf (tham khao)
 
Basics of Business Analysis .pdf (tham khao)
Basics of Business Analysis .pdf (tham khao)Basics of Business Analysis .pdf (tham khao)
Basics of Business Analysis .pdf (tham khao)
 
360 degree feedback system
360 degree feedback system360 degree feedback system
360 degree feedback system
 
Training Needs Analysis
Training Needs AnalysisTraining Needs Analysis
Training Needs Analysis
 
Training Needs Analysis, Skills Auditing & Evaluation
Training Needs Analysis, Skills Auditing & EvaluationTraining Needs Analysis, Skills Auditing & Evaluation
Training Needs Analysis, Skills Auditing & Evaluation
 
Training Partnerz - EMPOWERING LEADERS
Training Partnerz - EMPOWERING LEADERS Training Partnerz - EMPOWERING LEADERS
Training Partnerz - EMPOWERING LEADERS
 
Employability skills of young graduates | MCB – An employer of choice
Employability skills of young graduates | MCB – An employer of choiceEmployability skills of young graduates | MCB – An employer of choice
Employability skills of young graduates | MCB – An employer of choice
 
David Robidas - Mastery Journey timeline
David Robidas - Mastery Journey timelineDavid Robidas - Mastery Journey timeline
David Robidas - Mastery Journey timeline
 
Es
EsEs
Es
 
Es
EsEs
Es
 
Es
EsEs
Es
 

More from statisense

Nigeria health in numbers
Nigeria health in numbersNigeria health in numbers
Nigeria health in numbers
statisense
 
Nigeria Demography - state by state
Nigeria Demography - state by stateNigeria Demography - state by state
Nigeria Demography - state by state
statisense
 
Compendium of courses in nigeria universities
Compendium of courses in nigeria universitiesCompendium of courses in nigeria universities
Compendium of courses in nigeria universities
statisense
 
Plan to pass utme
Plan to pass utmePlan to pass utme
Plan to pass utme
statisense
 
2017 nbs data releases review
2017 nbs data releases review2017 nbs data releases review
2017 nbs data releases review
statisense
 
Analysis of ghana's ministry of health budget
Analysis of ghana's ministry of health budgetAnalysis of ghana's ministry of health budget
Analysis of ghana's ministry of health budget
statisense
 
2018 proposed health budget analysis
2018 proposed health budget analysis2018 proposed health budget analysis
2018 proposed health budget analysis
statisense
 
Local government allocations, may 1999 to june 2017
Local government allocations, may 1999 to june 2017Local government allocations, may 1999 to june 2017
Local government allocations, may 1999 to june 2017
statisense
 
Review of nbs q1 2017 data releases
Review of nbs q1 2017 data releasesReview of nbs q1 2017 data releases
Review of nbs q1 2017 data releases
statisense
 
Ministry of women affairs and women in nigeria politics
Ministry of women affairs and women in nigeria politicsMinistry of women affairs and women in nigeria politics
Ministry of women affairs and women in nigeria politics
statisense
 
Books, newspapers, magazines, periodicals in 2017 proposed budget
Books, newspapers, magazines, periodicals in 2017 proposed budgetBooks, newspapers, magazines, periodicals in 2017 proposed budget
Books, newspapers, magazines, periodicals in 2017 proposed budget
statisense
 
Analysis of npf complaints response unit's reports q4
Analysis of npf complaints response unit's reports q4Analysis of npf complaints response unit's reports q4
Analysis of npf complaints response unit's reports q4
statisense
 
2017 proposed budget analysis - sectoral allocations
2017 proposed budget analysis - sectoral allocations2017 proposed budget analysis - sectoral allocations
2017 proposed budget analysis - sectoral allocations
statisense
 
2017 proposed education budget and the last 2years
2017 proposed education budget and the last 2years2017 proposed education budget and the last 2years
2017 proposed education budget and the last 2years
statisense
 
2016 budget overview appropriated verses released
2016 budget overview appropriated verses released2016 budget overview appropriated verses released
2016 budget overview appropriated verses released
statisense
 
Health sector 2016 budget performance
Health sector 2016 budget performanceHealth sector 2016 budget performance
Health sector 2016 budget performance
statisense
 
Teacher recruitment and retention in O-level subjects
Teacher recruitment and retention in O-level subjectsTeacher recruitment and retention in O-level subjects
Teacher recruitment and retention in O-level subjects
statisense
 
Analysis of npf complaints response unit's reports
Analysis of npf complaints response unit's reportsAnalysis of npf complaints response unit's reports
Analysis of npf complaints response unit's reports
statisense
 
Discrepancy analysis of 2016 health budget (final)
Discrepancy analysis of 2016 health budget (final)Discrepancy analysis of 2016 health budget (final)
Discrepancy analysis of 2016 health budget (final)
statisense
 
2016 health budget analysis
2016 health budget analysis2016 health budget analysis
2016 health budget analysis
statisense
 

More from statisense (20)

Nigeria health in numbers
Nigeria health in numbersNigeria health in numbers
Nigeria health in numbers
 
Nigeria Demography - state by state
Nigeria Demography - state by stateNigeria Demography - state by state
Nigeria Demography - state by state
 
Compendium of courses in nigeria universities
Compendium of courses in nigeria universitiesCompendium of courses in nigeria universities
Compendium of courses in nigeria universities
 
Plan to pass utme
Plan to pass utmePlan to pass utme
Plan to pass utme
 
2017 nbs data releases review
2017 nbs data releases review2017 nbs data releases review
2017 nbs data releases review
 
Analysis of ghana's ministry of health budget
Analysis of ghana's ministry of health budgetAnalysis of ghana's ministry of health budget
Analysis of ghana's ministry of health budget
 
2018 proposed health budget analysis
2018 proposed health budget analysis2018 proposed health budget analysis
2018 proposed health budget analysis
 
Local government allocations, may 1999 to june 2017
Local government allocations, may 1999 to june 2017Local government allocations, may 1999 to june 2017
Local government allocations, may 1999 to june 2017
 
Review of nbs q1 2017 data releases
Review of nbs q1 2017 data releasesReview of nbs q1 2017 data releases
Review of nbs q1 2017 data releases
 
Ministry of women affairs and women in nigeria politics
Ministry of women affairs and women in nigeria politicsMinistry of women affairs and women in nigeria politics
Ministry of women affairs and women in nigeria politics
 
Books, newspapers, magazines, periodicals in 2017 proposed budget
Books, newspapers, magazines, periodicals in 2017 proposed budgetBooks, newspapers, magazines, periodicals in 2017 proposed budget
Books, newspapers, magazines, periodicals in 2017 proposed budget
 
Analysis of npf complaints response unit's reports q4
Analysis of npf complaints response unit's reports q4Analysis of npf complaints response unit's reports q4
Analysis of npf complaints response unit's reports q4
 
2017 proposed budget analysis - sectoral allocations
2017 proposed budget analysis - sectoral allocations2017 proposed budget analysis - sectoral allocations
2017 proposed budget analysis - sectoral allocations
 
2017 proposed education budget and the last 2years
2017 proposed education budget and the last 2years2017 proposed education budget and the last 2years
2017 proposed education budget and the last 2years
 
2016 budget overview appropriated verses released
2016 budget overview appropriated verses released2016 budget overview appropriated verses released
2016 budget overview appropriated verses released
 
Health sector 2016 budget performance
Health sector 2016 budget performanceHealth sector 2016 budget performance
Health sector 2016 budget performance
 
Teacher recruitment and retention in O-level subjects
Teacher recruitment and retention in O-level subjectsTeacher recruitment and retention in O-level subjects
Teacher recruitment and retention in O-level subjects
 
Analysis of npf complaints response unit's reports
Analysis of npf complaints response unit's reportsAnalysis of npf complaints response unit's reports
Analysis of npf complaints response unit's reports
 
Discrepancy analysis of 2016 health budget (final)
Discrepancy analysis of 2016 health budget (final)Discrepancy analysis of 2016 health budget (final)
Discrepancy analysis of 2016 health budget (final)
 
2016 health budget analysis
2016 health budget analysis2016 health budget analysis
2016 health budget analysis
 

Recently uploaded

Monitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR EventsMonitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR Events
Ana-Maria Mihalceanu
 
Encryption in Microsoft 365 - ExpertsLive Netherlands 2024
Encryption in Microsoft 365 - ExpertsLive Netherlands 2024Encryption in Microsoft 365 - ExpertsLive Netherlands 2024
Encryption in Microsoft 365 - ExpertsLive Netherlands 2024
Albert Hoitingh
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
KatiaHIMEUR1
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
Alan Dix
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
DianaGray10
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
Laura Byrne
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
DanBrown980551
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
Alpen-Adria-Universität
 
DevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA ConnectDevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA Connect
Kari Kakkonen
 
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdfFIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
Neo4j
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
nkrafacyberclub
 
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
James Anderson
 
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdfFIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
Guy Korland
 
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
Neo4j
 
Pushing the limits of ePRTC: 100ns holdover for 100 days
Pushing the limits of ePRTC: 100ns holdover for 100 daysPushing the limits of ePRTC: 100ns holdover for 100 days
Pushing the limits of ePRTC: 100ns holdover for 100 days
Adtran
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
BookNet Canada
 
GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...
ThomasParaiso2
 
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdfFIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance
 

Recently uploaded (20)

Monitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR EventsMonitoring Java Application Security with JDK Tools and JFR Events
Monitoring Java Application Security with JDK Tools and JFR Events
 
Encryption in Microsoft 365 - ExpertsLive Netherlands 2024
Encryption in Microsoft 365 - ExpertsLive Netherlands 2024Encryption in Microsoft 365 - ExpertsLive Netherlands 2024
Encryption in Microsoft 365 - ExpertsLive Netherlands 2024
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
 
DevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA ConnectDevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA Connect
 
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdfFIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdf
 
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024GraphSummit Singapore | The Art of the  Possible with Graph - Q2 2024
GraphSummit Singapore | The Art of the Possible with Graph - Q2 2024
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
 
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
 
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdfFIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
 
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
GraphSummit Singapore | Graphing Success: Revolutionising Organisational Stru...
 
Pushing the limits of ePRTC: 100ns holdover for 100 days
Pushing the limits of ePRTC: 100ns holdover for 100 daysPushing the limits of ePRTC: 100ns holdover for 100 days
Pushing the limits of ePRTC: 100ns holdover for 100 days
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
 
GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...GridMate - End to end testing is a critical piece to ensure quality and avoid...
GridMate - End to end testing is a critical piece to ensure quality and avoid...
 
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdfFIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
FIDO Alliance Osaka Seminar: Passkeys at Amazon.pdf
 

Crisc prep-guide

  • 1. 5–Month Prep Guide |Prepared by: Wale Micaiah| Certified in Risk and Information Systems Controls
  • 2. Having successfully attempted CISM and excelled, it became necessary to share with others some tips I personally practiced that aided my success. I shared them in CismPrepGuide I received tremendous feedbacks, with several downloads, assisted quite a number responding to questions on grey areas and contributing my best to help them get certified. My philosophy is: When you find something that works, share with others so they don’t go through the troubles you went through. (http://www.slideshare.net/statisense/cismprepguide)
  • 3. The first and most important thing to do before paying for the exam is to establish the reason(s) “why CRISC” among all the Risk exams! Ask yourself: Why CRISC? Is it a job requirement? Is it for career advancement? Is it just for professional development Is it just another conquest? The stronger your conviction “why CRISC”, the more you will “find excuse for your excuses” when you start preparing for the exam…trust me, you will have reasons not to study and practice but if your “why CRISC” is stronger, you will always find time to study!
  • 4. Take some time to establish “why CRISC” CRISC “If there is no reason to start, you will soon find reason to stop!”
  • 5. So this year, I attempted CRISC on June 14, 2014, about 45 days later (precisely July 29, 2014) I got this: …We are pleased to inform you that you PASSED the exam… …Again, congratulations on passing the CRISC exam, we look forward to having you join the more than 16,000 professionals worldwide who have earned the CRISC credential. Even though it was a great feeling, it didn’t come to me much as a surprise…because I had followed some rudimentary elements of the Psychology of Success coupled with my work experience, preparation, practice and prayer – yes, I prayed! …and this is my desire for you too….that ISACA may be pleased to inform you that you ‘PASSED’ CRISC!
  • 6. Introduction to CRISC The CRISC certification, CRISCTM, pronounced “see-risk,” is designed for IT professionals who have hands-on experience with:  risk identification, assessment and evaluation;  risk response;  risk monitoring;  IS control design and implementation; and  IS control monitoring and maintenance. Content of the CRISC Exam The CRISC exam measures an individual’s ability and knowledge as they pertain to the performance of the CRISC task statements. The content of the exam is modified to reflect changes in technology and practices.
  • 7. CRISC Domains # DOMAIN % DESCRIPTION 1 Risk Identification, Assessment and Evaluation 31 Identify, assess and evaluate risk to enable the execution of the enterprise risk management strategy. 2 Risk Response 17 Develop and implement risk responses to ensure that risk factors and events are addressed in a cost-effective manner and in line with business objectives. 3 Risk Monitoring 17 Monitor risk and communicate information to the relevant stakeholders to ensure the continued effectiveness of the enterprise’s risk management strategy. 4 Information Systems Control Design and Implementation 17 Design and implement information systems controls in alignment with the organization’s risk appetite and tolerance levels to support business objectives. 5 Information Systems Control Monitoring and Maintenance 18 Monitor and maintain information systems controls to ensure that they function effectively and efficiently. The percentages listed above with the domains indicate the emphasis or percentage of questions that will appear on the exam from each domain.
  • 8. 200 Multiple-Choice Questions – 4hours 1 Question – 72Secs (1min:12Secs) A candidate must receive a scaled score of 450 or higher to pass the exam Some questions are included for research and analysis purposes only CRISC QUESTIONS PER DOMAIN Domain 1: 62 Domain 3: 34 Domain 5: 36 Domain 2: 34 Domain 4: 34
  • 9. STUDY MATERIALS  Official ISACA Study materials – Review Manual and past Questions & Answers  The Risk IT Framework  The Risk IT Practitioner Guide  COBIT 5 Make some more investment - you will need them! See www.isaca.org/criscbooks
  • 10. ADDITIONAL STUDY MATERIALS Here are some of the additional materials I used for my CRISC preparation. ISACA Study Materials were my primary and I refer to these when necessary
  • 11. STUDY PLANMonth 1 2 3 4 5Week 1 DOMAIN 12 3 4 Review & Practice 5 DOMAIN 26 7 8 Review & Practice 9 DOMAIN 310 11 12 Review & Practice 13 DOMAIN 4 14 15 16 Review & Practice 17 DOMAIN 518 19 20 Review & Practice EXAMINATION WEEK Consult your reference materials as you study Remember, this is just a guide! Success is not only in the PLAN but its EXECUTION!
  • 12. Each CRISC Domain is divided into:  Task statements and  Knowledge Statements STUDY PLAN EXECUTION Task Statements: These are tasks within this job practice area that a CRISC candidate must know how to perform Knowledge Statements: These are areas a CRISC candidate must have good understanding of, they are the basis for the examination. The Knowledge Statements are the basis for the exam!
  • 13. STUDY RECOMMENDATION  You may start with the Domain you are most familiar with, but I prefer to start from Domain 1 as they build on one another.  Read the Task Statements (TS) and Knowledge Statements (KS) before reading the rest of the Chapter. You may print it out from the recent CRISC Exam Candidate Guide document.  The TS, KS is your CRISC Syllabus! TS and KS are the measurement of your understanding of each Domain. Be sure you understand what you are required to know in each KS.  Next, read the Questions corresponding with each Domain with special attention to understanding the Questions and logic behind it. For now, do not bother about getting the answers correctly.
  • 14. STUDY RECOMMENDATION  Take note of words like MOST, LEAST, BEST, FIRST, PRIMARILY, MAIN, MUST, HIGHEST, GREATEST, PRIMARY, LOWEST, PRIORITY, MAJOR, EXCLUSIVELY, and NEXT. They are very, very, very vital!  Refer to other materials of choice, if you need to seek more clarification.  You should be able to connect the Review Manual with the TS and KS before proceeding to the next section/chapter.  Go through the CRISC Item Development Guide. It will help you know how Professionals think when setting exam questions.  Stick to what works for you. You know when you understand better – Morning, Afternoon, Night, with Music, Low Noise, Library, Room, Public places, etc. CONTD.
  • 15. PART I – Risk Management and Information System Control Theory and Concepts consists of the 5 Chapters, each dedicated to one of the 5 CRISC Domains PART II – Risk Management and Information Systems Control in Practice contains selected process-specific chapters. PART I PART II STUDY RECOMMENDATION CRISC REVIEW MANUAL I suggest you complete Part I before going on to II
  • 16. Do YOU have a goal for this exam? What is it? A goal keeps you Focus, on a Mark! Let’s see how we can set a GOAL! WHAT’S YOUR CRISC GOAL?
  • 17. I had a goal of the score I want to achieve in CRISC during preparation, and I wrote it down. In fact, I placed it where I could see it every time, many times, everyday! GOAL SETTING I went a step further, I set a goal for each DOMAIN, and I monitor my performance at every practice to ensure I meet those goals. Most people set goal, but they don’t take time to measure (monitor) their goal. What gets measured (monitored), gets done!
  • 18. I monitor my performance by keeping a small jotter, I recorded my performance in each domain and appraised them against previous perfomance. See Samples GOAL SETTING
  • 19. Keeping those records kept me on track, particularly when I did not perform to expectation. Sometimes, I surpassed my goals and other times I fall short (sad face) but the records gave me an idea of where I was at every time per Domain. GOAL SETTING “Even though it was a great feeling, it didn’t come to me much as a surprise…because I had followed some rudimentary elements of the Psychology of Success coupled with my work experience, preparation, practice and prayer – yes, I prayed!” Remember what I said earlier:
  • 20. Again, remember that ISACA does not go by your raw score – it is a common scale score of 200 to 800. Also, there are some questions that are just for Research and Analysis purpose – no mark is awarded to them (I assume). So, you might want to set your goal higher than usual…the most important thing is that you work towards whatever PASSING goal you have set! GOAL SETTING “Those who Set Goals, Score Goals”
  • 21. CONGRATULATE YOURSELF One last thing I did was to congratulate myself ahead of time – I pasted this where I could see it daily: I pasted it where my CRISC goal was and I saw it every time, many times, everyday. It ‘convinced’ my subconscious mind to accept the ‘congratulations’, and today it is real! ISACA and several people said congratulations, by mail, SMS, even on Social Media.
  • 22. As you prepare for this or other exams, all I can say is: May the Goal you have Set and Work towards be a reality! Congratulations!
  • 23. Reference: - www.isaca.org - CRISC-Exam-Candidates-Guide-English-2013 Analysis by: Wale Micaiah e: wm@walemicaiah.com w. www.statisense.com