Trainer gesucht
IT-Trainer Jobs und Stellenangebote: ISC2 CGRC - Certified in Governance, Risk and Compliance, (ISC2), IT Security, IT-Security Spezialist.
Anmelden / Registrieren als Trainer
Agenda
Domain 1: Security and Privacy Governance, Risk Management, and Compliance Program
- Demonstrate knowledge in security and privacy governance, risk management, and compliance program
- Demonstrate knowledge in security and privacy governance, risk management and compliance program processes
- Demonstrate knowledge of compliance frameworks, regulations, privacy, and security requirements
Domain 2: Scope of the System
- Describe the system
- Determine security compliance required
Domain 3: Selection and Approval of Framework, Security, and Privacy Controls
- Identify and document baseline and inherited controls
- Select and tailor controls
Domain 4: Implementation of Security and Privacy Controls
- Develop implementation strategy (e.g., resourcing, funding, timeline, effectiveness)
- Implement selected controls
- Document control implementation
Domain 5: Assessment/Audit of Security and Privacy Controls
- Prepare for assessment/audit
- Conduct assessment/audit
- Prepare the initial assessment/audit report
- Review initial assessment/audit report and plan risk response actions
- Develop final assessment/audit report
- Develop risk response plan
Domain 6: System Compliance
- Review and submit security/privacy documents
- Determine system risk posture
- Document system compliance
Domain 7: Compliance Maintenance
- Perform system change management
- Perform ongoing compliance activities based on requirements
- Engage in audits activities based on compliance requirements
- Decommission system when applicable