Certified Chief Information Security Officer
The CCISO certification is an industry-leading program that recognizes the real-world experience necessary to succeed at the highest executive levels of information security.
Bringing together all the components required for a C-Level positions, the CCISO program combines audit management, governance, IS controls, human capital management, strategic program development, and the financial expertise vital to leading a highly successful IS program. Material in the CCISO Program assumes a high-level understanding of technical topics and doesn’t spend much time on strictly technical information, but rather on the application of technical knowledge to an information security executive’s day-to-day work. The CCISO aims to bridge the gap between the executive management knowledge that CISOs need and the technical knowledge that many aspiring CISOs have. This can be a crucial gap as a practitioner endeavors to move from mid-management to upper, executive management roles. Much of this is traditionally learned as on the job training, but the CCISO Training Program can be the key to a successful transition to the highest ranks of information security management.
A core group of high-level information security executives, the CCISO Advisory Board, contributed by forming the foundation of the program and outlining the content that would be covered by the exam, body of knowledge, and training. Each segment of the program was developed with the aspiring CISO in mind and looks to transfer the knowledge of seasoned professionals to the next generation in the areas that are most critical in the development and maintenance of a successful information security program.
The Certified CISO (CCISO) program is the first of its kind training and certification program aimed at producing top-level information security executives. The CCISO does not focus solely on technical knowledge but on the application of information security management principles from an executive management point of view. The program was developed by sitting CISOs for current and aspiring CISOs.
- New sections covering the General Data Protection Regulation (GDPR)
- Increased focus on risk management frameworks, including the NIST Risk Management Framework, COBIT, TARA, OCTAVE, FAIR, and ITIL
- More robust contract management
- Heavier emphasis on vendor management
- Step-by-step advisement on how to build and mature a security program
- A CISO-level view of transformative technologies, including artificial intelligence, augmented reality, autonomous security operations centers, dynamic deception, and more
- In-depth coverage of strategic planning
By the end of the CCISO course, participants will be able to:
- Lead and Manage Security Programs
- Develop Governance and Risk Management Plans
- Ensure Compliance with Regulatory Requirements
- Manage Security Operations and Incident Response
- Oversee security operations, including incident response, threat management, and continuous monitoring of security risks
- Strategically Align Security with Business Goals
- Develop strategies to promote a security-aware culture
- Oversee Security Audits and Assessments
- Develop skills to effectively communicate security risks, strategies, and initiatives to C-level executives, boards of directors, and other key stakeholders
The CCISO certification is designed for information security professionals who want to advance their careers as a CISO or other executive-level security career path. In the CCISO program, cybersecurity leaders hone their knowledge and learn how to integrate information security initiatives with needs of the business by aligning to the critical goals and objectives of an organization. Existing CISOs are also encouraged to participate in this program to strengthen their security program knowledge, understand current technology principles, and sharpen their business insight.
To take the CCISO examination, candidates must provide proof that they have 5 years of experience in at least 3 of the 5 domains. A training course is required if a candidate has 5 years of experience in 3 or 4 of the CCISO domains. If the candidate has 5 years of experience in all 5 domains the training course is not required.
Experience waivers are available for some industry-accepted credentials and higher education within the field of information security. Waivers can be used for a maximum of 3 years of experience for each domain. Please see the chart (below) for additional information.
Exam Code: CCISO
Duration: 150 minutes
Exam Domains:
| Governance, Risk, Compliance | 21% |
| Information Security Controls and Audit Management | 20% |
| Security Program Management & Operations | 21% |
| Information Security Core Competencies | 19% |
| Strategic Planning, Finance, Procurement, and Third-Party Management | 19% |
Upcoming Course Dates
Course Summary
Vendor
EC Council
Experience Level
Course Type
Self-paced Learning
Course Duration
Tech Areas
Cybersecurity
Enquire Now
"*" indicates required fields
Related Courses
ITIL 4 Foundation