2026 IS Risk and Control IS Risk and Control certification will make you a Risk Management expert. Studying a proactive approach based on Agile methodology, you’ll learn how to enhance your company’s business resilience, deliver stakeholder value and optimize Risk Management across the enterprise.26% DOMAIN 1 – GOVERNANCEThe governance domain interrogates your knowledge of information about an organization’s business and IT environments, organizational strategy, goals and objectives, and examines potential or realized impacts of IT risk to the organization’s business objectives and operations, including Enterprise Risk Management and Risk Management Framework.A—ORGANIZATIONAL GOVERNANCEOrganizational Strategy, Goals, and ObjectivesOrganizational Structure, Roles and ResponsibilitiesOrganizational CulturePolicies and StandardsBusiness ProcessesOrganizational AssetsB—RISK GOVERNANCEEnterprise Risk Management and Risk Management FrameworkThree Lines of DefenseRisk ProfileRisk Appetite and Risk ToleranceLegal, Regulatory and Contractual RequirementsProfessional Ethics of Risk Management20% DOMAIN 2 – IT RISK ASSESSMENTThis domain will certify your knowledge of threats and vulnerabilities to the organization’s people, processes and technology as well as the likelihood and impact of threats, vulnerabilities and risk scenarios.A—IT RISK IDENTIFICATIONRisk Events (e.g., contributing conditions, loss result)Threat Modelling and Threat LandscapeVulnerability and Control Deficiency Analysis (e.g., root cause analysis)Risk Scenario DevelopmentB—IT RISK ANALYSIS AND EVALUATIONRisk Assessment Concepts, Standa
What you'll learn
understanding of enterprise risk management frameworks
ability to evaluate IT risks and vulnerabilities
knowledge of organizational governance structures
insight into legal and regulatory requirements related to risk management
Course objectives
equip participants with skills to enhance business resilience
prepare students for the CRISC certification exam
foster understanding of stakeholder value optimization
develop a proactive risk management approach within organizations