A fully updated self-study guide for the industry-standard information technology risk certification, CRISCWritten by information security risk experts, this complete self-study system is designed to help you prepare for—and pass—ISACA’s CRISC certification exam. CRISC Certified in Risk and Information Systems Control All-in-One Exam Guide, Second Edition features learning objectives, explanations, exam tips, and hundreds of practice questions. Beyond exam prep, this practical guide serves as an ideal on-the-job reference for risk management and IT security professionals.
Covers all exam topics,
IT and cybersecurity governanceEnterprise risk management and risk treatmentIT risk assessments and risk analysisControls and control frameworksThird-party risk managementRisk metrics, KRIs, KCIs, and KPIsEnterprise architectureIT operations managementBusiness impact analysisBusiness continuity and disaster recovery planningData privacy
Online content
300 practice exam questionsTest engine that provides full-length practice exams and customizable quizzes by exam topic
Peter H. Gregory, CISM, CISA, CISSP, CRISC, CDPSE, CCSK, CIPM, DRCE, is a security, privacy, and risk senior director with experience in SAAS, retail, telecommunications, advertising, non-profit, legalized gaming, manufacturing, consulting, healthcare, and local government.
Peter is the published author of over fifty books on cybersecurity and emerging technology, with editions in four languages. He has numerous interviews and articles in magazines and newspapers. In addition, he is an adjunct university faculty emeritus and program advisor at the University of Washington.
I am a bit suspicious about this book, given that the previous release had twice as many pages. Can the whole CRISC exam materials be summarised in a mere 182 pages? Apart from this, the book has a lot of inconsistencies and inaccuracies. It seems a bit rushed and superficial. I'll update this review after I have sat the exam and, hopefully, passed it!
Update: I passed the exam, but not thanks to this book. I had to rely on my practical experience. The exam turns out to be fairly technical and practically oriented, whereas the book is purely theoretical. Use the book to get a theoretical foundation, but add to it with your experience and common sense. Only then will you pass the exam.