Skip to main Content

Implementing the NIST Cybersecurity Framework Using COBIT® + exam

  • Course Code COBINT
  • Duration 2 days

Course Delivery

Public Classroom Price

$1,703.00

Request Group Training Add to Cart

Course Delivery

This course is available in the following formats:

  • Company Event

    Event at company

  • Public Classroom

    Traditional Classroom Learning

  • Virtual Learning

    Learning that is virtual

Request this course in a different delivery format.

Course Overview

Top

In 2013, US President Barack Obama issued Executive Order (EO) 13636, Improving Critical Infrastructure Cybersecurity, which called for the development of a voluntary risk-based cybersecurity framework that is "prioritized, flexible, repeatable, performance-based, and cost-effective." The Cybersecurity Framework (CSF) was developed through an international partnership of small and large organizations, including owners and operators of the nation's critical infrastructure, with leadership by the National Institute of Standards and Technology (NIST).

ISACA participated in the CSF's development and helped embed key principles from the COBIT framework into the industry-led effort. As part of the knowledge, tools, and guidance provided through our Cybersecurity Nexus (CSX)™ program, ISACA has developed the Implementing NIST Cybersecurity Framework Using COBIT 2019 Course. This course is focused on the Cybersecurity Framework (CSF), its goals, implementation steps, and the ability to apply this information in an organization’s environment. The course and exam are for individuals who have a basic understanding of both COBIT 5 and security concepts, and who are involved in improving and/or building the cybersecurity program for their enterprises.

Course Schedule

Top

Target Audience

Top

This course and exam are aimed at individuals who have a basic understanding of both COBIT 2019 and security concepts, and who are involved in improving the cybersecurity program for outside organizations of their own.

  • IT Support Staf
  • IT Consultants
  • Key Business Users
  • Senior (managers) IT
  • Audit management

Course Objectives

Top
  • Describe the key concepts of COBIT 2019 as taught in the COBIT Foundation course
  • Identify the goals of the Cybersecurity Framework (CSF)
  • Align company cybersecurity efforts to the CSF
  • Identify each of the seven CSF implementation steps
  • Apply and evaluate the implementation steps using COBIT 2019

Course Content

Top

Day 1:

  • Module 1, Introduction

General introduction to the course and to the exam. 

  • Module 2, COBIT 2019 Review (Optional Section – removed if taught following the Foundation Course – not covered in exam)

Refresher on the basic concepts of COBIT 2019 Foundation

  • Module 3, Overview to the Cybersecurity Framework

Introduction to the concepts in the NIST Cybersecurity Framework

  • Module 4, CSF Structure

Describes the use of ISACA methodologies to implement guidance in the CSF chapter, "How to Use the Framework."

  • Module 5, Phase 1 - What are the drivers?

Prioritizing and scoping business mission, objectives, and priorities.

  • Module 5, Phase 2 – Where are they now?

Identifying assets and creating a current profile.

Day 2

  • Phase 3 – Where do we want to be?

Conducting a risk assessment and creating a target profile.

  • Phase 4 – What needs to be done?

Determining, analyzing, and prioritizing gaps.

  • Phase 5 – How do we get there?

Implementing the action plan.

  • Phases 6 – Did we get there?

  • Phase 7 – How do we keep the momentum going?

Reviewing execution of action plan and assessing results.

  • Summary

Content and learning objective review.

Course Prerequisites

Top

This course and exam are aimed at individuals who have a basic understanding of both COBIT 2019 and security concepts, and who are involved in improving the cybersecurity program for outside organizations of their own. The following are prerequisites:

  • Successful completion and passage of the COBIT 2019 Foundation exam
  • Basic Knowledge of COBIT
  • Basic knowledge of security concepts

Test Certification

Top

The exam will be an online proctored exam, administered through ISACA and/or accredited training organizations. The exam format will include:

  • 50 questions
  • Multiple choice
  • 90 minutes
  • One correct answer for each question, using four choices (A, B, C or D)
  • Pass rate is 65%, or 33/50 questions

Follow on Courses

Top
  The following are recommended for further study: