The CISM® designation focuses on information security, or those who manage an information security programme enterprise wide, and certifies that they have the experience and knowledge necessary to provide effective management and consulting services. CISM defines the core competencies and international performance standards that those who have information security responsibilities are expected to master.
“When I advise organisations on the competency model and job profile they should look for when they are searching for a chief security officer, I always recommend they seek out individuals with the CISM certification. The CISM certification has become the leading credential for the business of information security. It differentiates itself from traditional information security certifications by focusing on the business and risk management issues associated with information security.”
John Pironti, CISM, CISA, CGEIT, Chief Information Risk Strategist, CompuCom, USA
| Global Recognition |
| |
| Organisations employing a CISM can be assured they are getting a professional who has earned a credential that is known and respected around the world. More than 10,000 Information security professionals from 80-plus countries have earned their CISM designation. |
| |
| CISM Complies With International Standard |
| |
The American National Standards Institute (ANSI) has accredited the CISA certification under ISO/IEC 17024. This standard specifies the requirements to be followed by
organisations certifying individuals against specific PERSONNEL CERTIFICATION requirements and is expected to play a prominent role in facilitating global standardisation, public safety and protecting consumers. Accreditation by ANSI signifies that ISACA’s procedures meet ANSI’s essential requirements for openness, balance, consensus and due process. |
| |
Distinguished himself or herself from other industry or certified professionals |
|
| |
Followed a career path to demonstrate information security management knowledge and skill |
|
| |
Committed to maintaining skills through ongoing professional development |
|
|
| |
The CISM programme requires certified individuals to: |
| |
Acquire five years (three as an information security manager) of experience in information and security
|
|
| |
Pass a rigorous exam
Comply with annual requirements for continuing professional education
|
|
|
| |
CISM is not an entry-level certification. It is specifically developed for the information security management-level professional who has acquired experience managing information security programme. Individuals with three years or more of experience managing the information security function of an enterprise or performing such duties will find the CISM designation tailored to their knowledge and skills. CISMs have experience and knowledge: |
| |
Aligning information security strategies with business objectives
Identifying and managing information security risks to achieve business objectives
|
|
| |
Managing an information security programme |
|
| |
Overseeing and directing information security activities |
|
| |
Developing and managing an incident response and business continuity programme |
|
|
| |
| |
The CISM designation continues to grow in stature and influence. SC Magazine selected CISM as a finalist for its 2009 Awards in the “Best Professional
Certification Program” category. CISM was chosen as a finalist by a panel of 18 chief information security officers (CISOs) at major corporations and large public-sector organisations |
| |
| CISMs as Our Current and Future Leaders |
| |
| A true indication of the individual and industry importance placed on any credential is in those who value and attain it. |
| |
| A current profile of CISMs demonstrates the executive and managerial influence and authority achieved by CISMs within their organisations: |
| |
More than 1600 serve as a chief information officer, chief executive officer or serve in another executive management position. |
|
| |
More than 3,600 serve as an information security director, manager or consultant. |
|
| |
More than 1,700 serve as an IT director, manager or consultant. |
|
|
| |
| Hire or Encourage Staff Members to Become CISMs |
| |
| “The workplace is highly competitive. Employers are more selective than ever. The CISM credential next to my name gives me an edge. It opens doorways that were previously closed.” |
| |
Hitoshi Ota, CISA, CISM IT Systems Risk Manager, Mizuho Corporate Bank, Ltd., Japan |
|
|
| |
For more information on how the CISM programme can help your organisation, please contact the ISACA certification department at certification@isaca.org or +1.847.660.5660.
More and more organisations are recognising the value of certifications like CISA and CISM and recommending or requiring that their employees be certified. The US Department of Defense (DoD) has recognised CISM as an approved accreditation for its information assurance personnel and vendors.
|
| More>> |