CISA & CISM ExamFOCUS Study Notes & Review Questions 2013

CISA and CISM are NOT pure technical certs. In fact they tend to focus more on the policies/programs, auditing and management side of IS. There are technical questions but the questions are not like those that you can find in the MS/Cisco exams. CISA topics: The Process of Auditing Information Systems Governance and Management of IT Information Systems Acquisition, Development and Implementation Information Systems Operations, Maintenance and Support Protection of Information Assets CISM topics: Information Security Governance Information Security Program Development Information Security Program Management Incident Management and Response You need to know the basics of new IT technologies but you also need to know the older technologies since many old stuff are still at work in the modern business world. CISA and CISM are supposed to be different in that one focuses on auditing and another on management. HOWEVER, they are practically sharing many of the knowledge areas. Think about it, the IS auditor needs to know management so they can audit IS management. On the other hand, management needs to know IS auditing so they can request for and evaluate the various audit options. Experience shows that clear-cut boundaries between the involved topics can hardly be established. Studying on a track-by-track basis may save you time, but the coverage received may not be sufficient for clearing the exam. In fact it may be a way better approach for you to go through everything included in this guide as a whole, rather than to restrict your focus on the track specific topics (when they overlap so much you better play safe). When we develop our material we do not classify topics the BOK way. We follow our own flow of instructions which we think is more logical for the overall learning process. Don’t worry, it does not hurt to do so, as long as you truly comprehend the material. To succeed in the exams, you need to read as many reference books as possible. There is no single book that can cover everything! This ExamFOCUS book focuses on the more difficult topics that will likely make a difference in exam results. The book is NOT intended to guide you through every single official topic. You should therefore use this book together with other reference books for the best possible preparation outcome.

