Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Coursera

Information Security Governance & Risk Management Essentials

Packt via Coursera

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Gain a comprehensive foundation in information security governance and risk management. Learn how to align security with business objectives, develop effective policies, and implement robust risk mitigation strategies. This course introduces the core principles of information security governance, including organizational structure, strategic alignment, and policy development. Learners will explore how to establish governance frameworks, conduct gap analyses, and secure management buy-in for security initiatives. The course then transitions to risk management, covering threat identification, risk analysis, and the implementation of security controls. By the end, you will be equipped to design governance structures, develop security policies, and manage organizational risk effectively. Through engaging readings, expert-led videos, and scenario-based quizzes, this course blends theoretical concepts with practical examples to ensure a deep understanding of governance and risk management. Each module builds on the previous, providing a logical progression from foundational concepts to advanced risk mitigation techniques. This course is part one of a three-course Specialization designed to build a complete and cohesive understanding of the subject. While it offers valuable skills on its own, you'll gain the most benefit by progressing through all three courses as a structured learning journey. This course is based on CISM Certification Complete Course - All Domains 2026, by GRC Gate. This video is licensed and distributed by Packt. All rights reserved. Packt is one of the world's most prolific publishers of cutting-edge technical content. For over two decades we've made it our mission to curate and publish the knowledge of only the very best technical experts. We focus on real-world courses that help our customers get the job done, with coverage that extends across a wide range of established and cutting-edge technical topics. If you're an individual or an organisation that embraces learning by doing, Packt is the perfect fit for you.

Syllabus

  • CISM Training Introduction
    • This module provides an overview of the CISM training program, including its structure, scope, and how Cyvitrix supports learner success. It introduces key concepts and expectations for the certification journey. Learners will gain a clear understanding of the course objectives and how to navigate the training process.
  • Governance Fundamentals & Organizational Structure (CISM Domain 1: Part 1)
    • This module explores the foundational concepts of information security governance, including the distinction between governance and management, the role of governance committees, and how to align security strategies with corporate objectives. Learners will gain an understanding of organizational structures, stakeholder roles, and tools like the RACI matrix to enhance security leadership. The module also covers the integration of governance with risk management and compliance frameworks.
  • Strategy, Business Alignment, and Buy-In (CISM Domain 1: Part 2)
    • This module equips learners with the skills to align security strategies with business goals, conduct gap and feasibility analyses, and navigate implementation challenges. It also covers techniques for securing management buy-in and using maturity assessment models for continuous improvement.
  • Data Security and Classification (CISM Domain 1: Part 3)
    • This module covers essential aspects of data security, including managing data throughout its lifecycle, implementing secure disposal practices, and understanding IT asset management. It also explores the distinct roles of data owners and custodians, and provides a knowledge check to reinforce key concepts. Learners will gain practical insights into securing data at every stage and within organizational structures.
  • Policies and Standards (CISM Domain 1: Part 4)
    • This module covers the development and implementation of effective security policies, standards, and procedures. It explores different approaches to policy creation, the importance of clarity and compliance, and the ongoing process of policy review and adaptation.
  • Frameworks, Metrics, and Domain Conclusion (CISM Domain 1: Part 4)
    • This module explores the implementation of security frameworks, the use of balanced scorecards, and the alignment of cybersecurity practices with business strategies. Learners will gain an understanding of key industry standards, risk management, and compliance considerations in information security governance.
  • Risk Fundamentals and Threat Landscape (CISM Domain 2: Part 1)
    • This module covers the fundamentals of risk management in information security, including the CIA Triad, vulnerability analysis, and common cyber threats like DDoS, MITM, and malware. Learners will gain an understanding of threat landscapes and practical defense strategies to secure digital environments.
  • Risk Management Process and Terminology (CISM Domain 2: Part 2)
    • This module covers fundamental risk management concepts, including identifying, analyzing, and responding to security risks. Learners will explore the difference between inherent and residual risk, effective monitoring strategies, and various risk management frameworks. By the end, they will have a comprehensive understanding of how to manage and mitigate organizational risks.
  • Security Controls and Strategic Mitigation (CISM Domain 2: Part 3)
    • This module explores the selection, implementation, and evaluation of security controls to mitigate risks in information systems. Learners will gain insights into strategic approaches like Defense in Depth and Zero Trust, and learn how to apply best practices for effective security management.

Taught by

Packt - Course Instructors

Reviews

Start your review of Information Security Governance & Risk Management Essentials

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.