ISACA的专家指导为专业人士和澳门赌场官方下载提供了工具, techniques and understanding to manage 它的风险.

The Promise and Peril of the AI Revolution

The Promise and Peril of the AI Revolution

人工智能正在迅速席卷我们的澳门赌场官方下载和世界. The need for CISOs, IT risk managers, 执行人员和IT高级管理人员迫切需要跟上快速发展的风险环境.



Effective enterprise risk management requires all stakeholders to understand and communicate risk terminology consistently.

Risk Scenarios Toolkit

Risk Scenarios Toolkit

The use of risk scenarios can enhance the risk management effort by helping the risk team understand and explain risk to business process owners and other stakeholders.

Risk Scenarios Starter Pack

Risk Scenarios Starter Pack

此工具包, free to ISACA members, includes 10 sample risk scenarios that practitioners can use and tailor to their specific context within their enterprises. Risk scenarios facilitate communication in risk management by constructing a narrative that can inspire people to take action.

Risk Starter Kit

Risk Starter Kit

ISACA创建了IT风险入门工具包,以帮助用户在其组织中制定IT风险计划. 通过详细的模板和指南,您将能够:

  • 建立一致的、有纪律的、综合的风险管理方法.
  • 形式化风险监督的治理结构,其中包括策略, 流程, 以及支持风险相关决策的控制系统.
  • 和更多的...


The 2008 financial crisis was one of the most devastating and far-reaching global recessions in modern history. 而随后的改革增强了金融部门的韧性, they only indirectly addressed information and communications technology (ICT) and did not fully address digital operational resilience.


Optimizing Risk Response

风险是日常生活的一部分,从交通和旅行到商业和财务决策. The digital world is no exception. While information and technology have driven innovation and created new opportunities for businesses worldwide, they are not without peril.


它的风险 Fundamentals Study Guide

A comprehensive study aid that will help to prepare learners for the 它的风险 Fundamentals Certificate exam. The course offers foundational knowledge of IT- related risk management and the methodology that includes risk identification, 评价, 和响应.


Risk IT Framework

The Risk IT Framework fills the gap between generic risk management concepts and detailed IT risk management. It provides an end-to-end, comprehensive view of risks related to the use of IT and a similarly thorough treatment of risk management, from the tone and culture at the top, to operational issues. 总之, 该框架将使澳门赌场官方下载能够理解和管理重要的IT风险类型, 在现有ISACA框架内与风险相关的现有组成部分的基础上.


Risk IT Practitioner Guide

《澳门赌场官方软件》为风险专业人员提供实用指导. The guide includes a large variety of practical risk management techniques that can be implemented immediately.

Advance your expertise and add to your career potential or enterprise skillset with training developed and delivered by the experts in 它的风险.


它的风险 Fundamentals Certificate

理想的专业人士谁希望了解风险和信息和技术(I&T)-related risk, whom currently interact with risk professionals, 或对风险不熟悉,并对风险或IT风险专业感兴趣. 确认你对与I相关的风险的基础知识&T.

CPE on Demand: Risk Essentials Bundle


The 它的风险 Management Essentials Video enables you to gain critical foundational knowledge of IT risk concepts, practices and impacts on IT and business. 这是IS/IT和业务经理的基本入门, 从业人员和任何对风险管理职业感兴趣的人都可以按需访问, 在任何地方. 资讯科技风险评估短片有助你进一步了解资讯科技风险. 这是对信息系统/信息技术和业务经理的学习增强, 从业人员和任何对风险管理职业感兴趣的人都可以按需访问, 在任何地方.




ISACA风险与信息系统控制认证(CRISC)® certification indicates expertise in identifying and managing enterprise IT risk and implementing and maintaining information systems controls. 在CRISC获得即时认可和信誉,促进澳门赌场官方下载.

CPE on Demand: Risk Essentials Bundle

CPE on Demand: Risk Management

CPE随需应变:风险管理集合提供了及时, valuable insights for 它的审计, 安全, and Risk professionals, 它能让你按照自己的时间表学习,同时还能赚到5美元.5 ISACA cpe. Access to the entire collection of recordings - each recorded at ISACA’s North America CACS 2020 Conference - is unlimited for a 90-day period and includes downloadable presentation decks.



COBIT Focus Area: Information & Technology Risk

COBIT Focus Area: Information & Technology Risk 提供有关信息和技术的指导&T) risk and how to apply COBIT to I&T risk practices.


Getting Started With Risk Management

Our FREE white paper, Getting Started With Risk Management, explores the careful balance that must be achieved while addressing any unique factors that may exist in your organization. In formulating a business strategy, the enterprise may decide to accept some level of risk in exchange for pursuing business goals and objectives. 本文讨论了各种选择和注意事项.


Bridging the Digital Risk Gap

帮助改善风险管理人员与资讯科技专业人员之间的沟通和效率, ISACA and RIMS have partnered on a FREE white paper, Bridging the Digital Risk Gap, which outlines best practices for integrating these professionals into an overall digital strategy team to create value and counterbalance unwanted risks and outcomes.

Supply Chain Resilience and Continuity

Supply Chain Resilience and Continuity

With each major disaster we confront—including the current pandemic—business continuity management must continue to evolve. Learn how in the new free white paper: Supply Chain Resilience and Continuity: Closing Gaps Exposed in a Global Pandemic.


The CMMI Cybermaturity Platform

CMMI网络成熟度平台的特点是自定义风险分析, 评估, 差异分析, and roadmap functions, 它在包括金融服务在内的多个行业都得到了应用, healthcare and manufacturing. 它解决了行业关注和组织挑战, 包括对网络安全倡议和优先安全计划的信心. 该平台为澳门赌场官方下载提供最佳网络安全实践的实时知识, 因此,组织可以就如何改进网络安全项目做出基于证据的决策.

View Risk Management Publications and 资源

Gain additional insight and guidance on leveraging the 它的风险 framework to create and maintain the most effective techniques and understanding to manage 它的风险.


Reviewing the 2023 OWASP API Top 10

以确保澳门赌场官方下载不会遭受API安全漏洞的噩梦, 更新后的OWASP API Top 10列表值得一看.

Top Risks and Rewards of Moving to the Cloud

Top Risks and Rewards of Moving to the Cloud

澳门赌场官方下载越来越多地转向云计算,并在此过程中看到了主要的好处, 但重要的是要权衡这些收益与需要管理的众多云风险.