Implementing the NIST Cybersecurity Framework Using COBIT® + exam
- Course Code COBINT
- Duration 2 days
Course Delivery
Jump to:
Course Delivery
This course is available in the following formats:
-
Company Event
Event at company
-
Public Classroom
Traditional Classroom Learning
-
Virtual Learning
Learning that is virtual
Request this course in a different delivery format.
Course Overview
TopIn 2013, US President Barack Obama issued Executive Order (EO) 13636, Improving Critical Infrastructure Cybersecurity, which called for the development of a voluntary risk-based cybersecurity framework that is "prioritized, flexible, repeatable, performance-based, and cost-effective." The Cybersecurity Framework (CSF) was developed through an international partnership of small and large organizations, including owners and operators of the nation's critical infrastructure, with leadership by the National Institute of Standards and Technology (NIST).
ISACA participated in the CSF's development and helped embed key principles from the COBIT framework into the industry-led effort. As part of the knowledge, tools, and guidance provided through our Cybersecurity Nexus (CSX)™ program, ISACA has developed the Implementing NIST Cybersecurity Framework Using COBIT 2019 Course. This course is focused on the Cybersecurity Framework (CSF), its goals, implementation steps, and the ability to apply this information in an organization’s environment. The course and exam are for individuals who have a basic understanding of both COBIT 5 and security concepts, and who are involved in improving and/or building the cybersecurity program for their enterprises.
Course Schedule
TopTarget Audience
TopThis course and exam are aimed at individuals who have a basic understanding of both COBIT 2019 and security concepts, and who are involved in improving the cybersecurity program for outside organizations of their own.
- IT Support Staf
- IT Consultants
- Key Business Users
- Senior (managers) IT
- Audit management
Course Objectives
Top- Describe the key concepts of COBIT 2019 as taught in the COBIT Foundation course
- Identify the goals of the Cybersecurity Framework (CSF)
- Align company cybersecurity efforts to the CSF
- Identify each of the seven CSF implementation steps
- Apply and evaluate the implementation steps using COBIT 2019
Course Content
TopDay 1:
-
Module 1, Introduction
General introduction to the course and to the exam.
-
Module 2, COBIT 2019 Review (Optional Section – removed if taught following the Foundation Course – not covered in exam)
Refresher on the basic concepts of COBIT 2019 Foundation
-
Module 3, Overview to the Cybersecurity Framework
Introduction to the concepts in the NIST Cybersecurity Framework
-
Module 4, CSF Structure
Describes the use of ISACA methodologies to implement guidance in the CSF chapter, "How to Use the Framework."
-
Module 5, Phase 1 - What are the drivers?
Prioritizing and scoping business mission, objectives, and priorities.
-
Module 5, Phase 2 – Where are they now?
Identifying assets and creating a current profile.
Day 2
-
Phase 3 – Where do we want to be?
Conducting a risk assessment and creating a target profile.
-
Phase 4 – What needs to be done?
Determining, analyzing, and prioritizing gaps.
-
Phase 5 – How do we get there?
Implementing the action plan.
-
Phases 6 – Did we get there?
-
Phase 7 – How do we keep the momentum going?
Reviewing execution of action plan and assessing results.
-
Summary
Content and learning objective review.
Course Prerequisites
TopThis course and exam are aimed at individuals who have a basic understanding of both COBIT 2019 and security concepts, and who are involved in improving the cybersecurity program for outside organizations of their own. The following are prerequisites:
- Successful completion and passage of the COBIT 2019 Foundation exam
- Basic Knowledge of COBIT
- Basic knowledge of security concepts
Test Certification
TopThe exam will be an online proctored exam, administered through ISACA and/or accredited training organizations. The exam format will include:
- 50 questions
- Multiple choice
- 90 minutes
- One correct answer for each question, using four choices (A, B, C or D)
- Pass rate is 65%, or 33/50 questions