Find Resources & Connect with members on topics that interest you.

AI - Acquire and Implement

PO - Plan and Organize

DS - Deliver and Support

Please sign in to see your topics.

You must be logged in to join this group.

PO7.4 - Personnel Training

This topic is intended to enable collaboration and sharing of information to facilitate a better understanding and approach to implementing this COBIT control objective based on the risk, value and guidance provided by its corresponding control practices.

COBIT Control Objective PO7.4 - Personnel Training is contained within Process Popup Manage IT Human Resources.

Learn more about COBIT and related publications.

Click “Join This Community” to be able to actively participate in discussions and contribute content. You must be an ISACA member to join this topic. Join ISACA now.

 
This Topic Has:
4 Members
0 Online
4264 Visits

 Recent Discussions

Community Leader

Knowledge Center Manager

Knowledge Center Manager

Title: Become a Topic Leader!

Badge: Energizer


Personnel Training

Provide IT employees with appropriate orientation when hired and ongoing training to maintain their knowledge, skills, abilities, internal controls and security awareness at the level required to achieve organisational goals.

View value and Risk Drivers  help

Hide value and Risk Drivers help


Value Drivers

  • Enhanced personal contribution and performance toward organisational success
  • Effective and efficient delivery of each employee’s role
  • Support of technical and management development, increasing personnel retention
  • Increase in employees’ value to the enterprise
  Risk Drivers
  • Insufficient security awareness, causing errors or incidents
  • Knowledge gaps regarding products, services and practices
  • Insufficient skills, leading to service degradation and increased errors and incidents

View Control Practices  help

Hide Control Practices  help

  1. Determine training and awareness requirements most critical to accomplishing the organisation’s goals, and put a process in place to measure against expected levels the completion of training and the level of awareness within different user groups. The process may include certification and recertification at appropriate intervals, as well as the need for continued education to maintain certification.
  2. Develop and deliver a programme to maintain personnel knowledge about the organisation’s requirements for internal control and ethical conduct.
  3. Develop and deliver a security requirements programme to educate all IT employees prior to granting access to IT resources and facilities. The programme should educate all new employees on:
    • The impact on the organisation and the employee if the security requirements are not met
    • Appropriate use of IT resources and facilities
    • How security incidents should be handled and escalated
    • Ethical use of IT resources and facilities
    • The employee’s responsibilities for information security
  4. Review training materials and programmes regularly for adequacy with respect to changing business requirements and their impact on necessary knowledge, skills and abilities.

Discussions: 0 total

Must be a Topic member to contribute

No Results Found

Documents & Publications: 48 total

Must be a Topic member to contribute
View All »
Downloads
Posted by FarmService 1529 days ago
Downloads
Posted by FarmService 2614 days ago
Books
Posted by ISACA 947 days ago
Books
Posted by ISACA 1007 days ago
Books
Posted by ISACA 1230 days ago

Events & Online Learning: 1 total

Journal Articles: 73 total

Volume 3, 2018
by Jen Hajigeorgiou, Editor
The ISACA Journal has a proud tradition of serving our community for more than 40 years, evolving to meet the needs and interests of practitioners amid the ever-changing technology landscape.
Volume 3, 2018
by Ofir Eitan, CISM, CCSK, CTI
One of the major challenges chief information security officers (CISOs) face in almost any organization is prioritizing information security interests with regard to IT interests.
Volume 2, 2018
by Robert E. Davis, DBA, CISA, CICA
Innovation is the process of transforming an idea or concept into a functional and marketable value proposition reflecting creative opportunity.
Volume 2, 2018
by Sunil Bakshi, CISA, CRISC, CISM, CGEIT, ABCI, AMIIB, BS 25999 LI, CEH, CISSP, ISO 27001 LA, MCA, PMP
Until a few years ago, many organizations did not adopt new technologies unless they were proven, stabilized and in use.
Volume 6, 2017
by Pedro Alexandre de Freitas Pereira, CCNA
The security of technology has become an increasing global concern. For some professionals such as network managers or security managers, this subject is intrinsically linked to their daily work.
Volume 4, 2017
by Mathew Nicho, Ph.D., CEH, CIS, ITIL Foundation, RWSP, SAP, Shafaq Khan, Ph.D., CIS, PMBOK, PMP, SAP, and Ram Mohan, CRISC, CISM, CGEIT, ISO 27001, ITIL Foundation
A key issue often cited by information systems (IS) executives in the last three decades is aligning IT with business, which assists in realizing value from IT investments.

Wikis: 2 total

Blog Posts: 73 total

17 Jun 2018
We are happy to announce that  on Feb//2018  the ISACA awareness session  was held in Baghdad.This the first time to speak about ISACA Value in Iraq.Professional from government and private sector were excited to hear about ISACA value and they started to...
Posted By : Ali099 | 2 comments
5 Jun 2018
Recently, I witnessed an interesting webcast by Scopism, an UK-based consulting and training company. They announced the publication of the SIAM(c) Foundation Body of Knowledge, available for free through their website www.scopism.com. Service Integration...
Posted By : Peter873 | 2 comments
Security in IoT environment
Posted By : Hyun239 | 0 comments
20 Apr 2018
Good day. I have an interesting situation that came about just this week.  New career opportunities are not all that they seem to be.  What I thought was going to be a great career change ended up in disaster.  With only one week and two day's, I was dism...
Posted By : Brian824 | 0 comments
Have you experienced ransomware attack so far and, if yes, what did you do to resolve? I set up Twitter poll here: https://twitter.com/DPleskonjic/status/953608717399941120 It lasts for seven days. Thank you for taking part in the poll.
Posted By : Dragan Pleskonjic | 5 comments
Bitcoin Trade a Bubble! Block Chain Technology Useful .ISACA Members whats your Take on Bitcoin Trade, Is its a bubble that wont last long.Block chain Technology is useful and its continuously growing to as form of secure record  management and secured us...
Posted By : MUGAMBI865 | 1 comments