menu image
AssuranceSecurityGovernanceMembers & LeadersProfessionals & PractitionersStudents & EducatorsExhibitors & Advertisers
menu shadow
CRISC Certification
CISA Certification
 Requirements
 Code of Professional Ethics
 Exam
  Registration
  Bulletin of Information
  Preparation
  Job Practice Areas
  Terminology
  Glossary
 Application & Maintenance
 Continuing Education Policy
 Item Writing Program
 CISA in the News
 FAQ
ITAF
Education & Conferences
Professional Resources
Downloads
Bookstore
Membership
My ISACA
Career Centre
spacer image
Print this page
spacer image


CISA logo

CISA Certification Job Practice

Notice:  A CISA job practice analysis is underway to reflect the vital and evolving responsibilities of IT auditors and stay current with the market. Results of this analysis will be incorporated into the June 2011 exam. www.isaca.org/cisajpa

CISA Job Practice Areas by Domain Job Practice—A job practice serves as the basis for the exam and the experience requirements to earn the CISA certification. This job practice consists of task and knowledge statements, organized by domains.

For purposes of these statements, the terms "enterprise" and "organization" or "organizational" are considered synonymous.

The job practice domains and task and knowledge statements are as follows:

Display or Hide All Task & Knowledge Statements (toggle)
Display and Print All Task & Knowledge Statements (toggle)

Domain 1—IS Audit Process (10%)

Provide IS audit services in accordance with IS audit standards, guidelines, and best practices to assist the organization in ensuring that its information technology and business systems are protected and controlled.

:: Display/Hide Domain 1 Tasks & Knowledge Statements ::

Domain 2—IT Governance (15%)

To provide assurance that the organization has the structure, policies, accountability, mechanisms, and monitoring practices in place to achieve the requirements of corporate governance of IT.

:: Display/Hide Domain 2 Tasks & Knowledge Statements ::

Domain 3—Systems and Infrastructure Lifecycle Management (16%)

To provide assurance that the management practices for the development/acquisition, testing, implementation, maintenance, and disposal of systems and infrastructure will meet the organization’s objectives.

:: Display/Hide Domain 3 Tasks & Knowledge Statements ::

Domain 4—IT Service Delivery and Support (14%)

To provide assurance that the IT service management practices will ensure the delivery of the level of services required to meet the organization’s objectives.

:: Display/Hide Domain 4 Tasks & Knowledge Statements ::

Domain 5—Protection of Information Assets (31%)

To provide assurance that the security architecture (policies, standards, procedures, and controls) ensures the confidentiality, integrity, and availability of information assets.

:: Display/Hide Domain 5 Tasks & Knowledge Statements ::

Domain 6—Business Continuity and Disaster Recovery (14%)

To provide assurance that in the event of a disruption the business continuity and disaster recovery processes will ensure the timely resumption of IT services while minimizing the business impact.

:: Display/Hide Domain 6 Tasks & Knowledge Statements ::


nav menu image
spacer image
Assurance | Security | Governance
Members & Leaders | Professionals & Practitioners | Students & Educators | Exhibitors & Advertisers
Info Request | Join | Bookstore | My ISACA | About ISACA
Home | Site Map | Shopping Cart | Logout | Contact Us
spacer image
menu shadow

Terms Of Use | Privacy Policy | IP Guidelines
© 2010 ISACA All rights reserved.
3701 Algonquin Road, Suite 1010, Rolling Meadows, Illinois 60008 USA