menu image
AssuranceSecurityGovernanceMembers & LeadersProfessionals & PractitionersStudents & EducatorsExhibitors & Advertisers
menu shadow
CRISC Certification
CGEIT Certification
ITGI
COBIT
Risk IT
Val IT
Education & Conferences
Professional Resources
Downloads
Career Centre
spacer image
Print this page
spacer image


Downloads

This page provides convenient access to some of our most frequently requested downloadable material. Each file is associated with a colored key that indicates the level of access required to download the document (see key legend below). The section links above the key legend provide direct access to the material that interests you.

File access may require you to log in or to be an ISACA member (Join now). If you do not already have a site login, you can obtain one free of charge by providing the required information. A new login can be created by following the links when you attempt to access a file that requires you to be logged in.

COBIT :: Risk IT :: Val IT :: Research :: Standards :: Journal :: @ISACA
Webcasts :: Certification :: Audit Programs :: Academia :: Brochures :: Forms :: Nonmember


No Login Required: Open access files Login Required: Login required files Member Only: Member only files


Feature Items

Risk IT Overview (PPT, 1.4M) Jan 2010
Val IT Overview (PPT, 1.7M) Jan 2010
COBIT Overview (PPT, 2.9M) Jan 2010
Security, Audit and Control Features Oracle Database, 3rd Edition Excerpt of the Audit/Assurance Program and ICQs (DOC, 806K) Dec 2009
Implementing and Continually Improving IT Governance - Toolkit (Maturity files) (Zip, 1,2M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Overview files) (Zip, 5.3M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Awareness files) (Zip, 1M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Implementation files) (Zip, 2.6M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Implementation presentation, Val IT) (Zip, 4.3M) Nov 2009
Implementing and Continually Improving IT Governance (PDF, 3M) Nov 2009
The Risk IT Practitioner Guide Toolkit Zip (Zip, 195K) Nov 2009
The Risk IT Practitioner Guide (PDF, 5.7M) Nov 2009
The Risk IT Framework (PDF, 4.6M) Nov 2009
The Risk IT Framework Laminate (PDF, 1.7M) Nov 2009
Cloud Computing: Business Benefits With Security, Governance and Assurance Perspectives (PDF, 175K) Oct 2009
COBIT and Application Controls Appendix E (DOC, 252K) Sep 2009
Security, Audit and Control Features SAP® ERP, 3rd Edition (Audit/Assurance Program and ICQ) (DOC, 2M) Aug 2009
MOF to COBIT/Val IT Comparison and Cross Implementation Guide: How to Leverage MOF in a COBIT/Val IT Environment (PDF, 1.8M) Jun 2009
Building the Business Case for COBIT® and Val IT™: Executive Briefing (PDF, 1.9M) Jun 2009

COBIT-related & IT Governance - Top

COBIT is an IT governance framework and supporting tool set that allows managers to bridge the gap between control requirements, technical issues and business risks. COBIT enables clear policy development and good practice for IT control throughout organizations. COBIT was first published by  ITGI in April 1996.

ITGI’s latest update—COBIT®  4.1—emphasizes regulatory compliance, helps organizations to increase the value attained from IT, highlights links between business and IT goals, and simplifies implementation of the COBIT framework.

Additional useful links:


Aligning COBIT® 4.1, ITIL® V3 and ISO/IEC 27002 for Business Benefit (PDF, 842K) Nov 2008
An Executive View of IT Governance (PDF, 3.7M) Jan 2009
Board Briefing on IT Governance (Spanish) (PDF, 1.4M) Oct 2003
Board Briefing on IT Governance, 2nd Edition (PDF, 410K) Oct 2003
Board Briefing on IT Governance, 2nd Edition (German) (PDF, 657K) Oct 2003
Board Briefing on IT Governance, 2nd Edition (Japanese) (PDF, 824K) Aug 2007
Building the Business Case for COBIT® and Val IT™: Executive Briefing (PDF, 1.9M) Jun 2009
COBIT 3.0 - 한국어 (Korean) (Chapter Web Site)
COBIT 4.0 - Deutsch (German) Jul 2009
COBIT 4.0 - Deutsch (German) (Chapter Web Site)
COBIT 4.0 - Italiano (Italian) (Chapter Web Site)
COBIT 4.1 - Русский (Russian) Jul 2009
COBIT 4.1 - 日本語版 (Japanese) Jun 2008
COBIT 4.1 - English (PDF, 5M) Apr 2007
COBIT 4.1 - Español (Spanish) (PDF, 2.8M) Dec 2009
COBIT 4.1 - Français (French) (Chapter Web Site)
COBIT 4.1 - Português (Portuguese) (PDF, 3.4M) Jan 2010
COBIT 4.1 Brochure (PDF, 180K) Feb 2009
COBIT 4.1 Excerpt (PDF, 850K) Jul 2007
COBIT 4.1 Laminate (PDF, 1M) Sep 2008
COBIT 4.1 Products Brochure (PDF, 1.5M) Oct 2009
COBIT and Application Controls Appendix E (DOC, 252K) Sep 2009
COBIT and Application Controls: A Management Guide (PDF, 2M) May 2009
COBIT Control Practices: Guidance to Achieve Control Objective for Successful IT Governance, 2nd Edition (PDF, 660K) Apr 2007
COBIT Mapping ISO/IEC 17799 :2000 With COBIT, 2nd Edition (PDF, 851K) May 2006
COBIT Mapping Overview of International IT Guidance 2nd Edition (PDF, 1.6M) Apr 2006
COBIT Mapping: Mapping of ITIL V3 With COBIT 4.1 (PDF, 730K) Jul 2008
COBIT Mapping: Mapping of NIST SP800-53 Rev 1 With COBIT 4.1 (PDF, 707K) Nov 2007
COBIT Mapping: Mapping PMBOK to COBIT 4.0 (PDF, 669K) Aug 2006
COBIT Mapping: Mapping ISO/IES 17799:2005 With COBIT 4.0 (PDF, 570K) Dec 2006
COBIT Mapping: Mapping of CMMI for Development V1.2 With COBIT 4.0 (PDF, 556K) Mar 2007
COBIT Mapping: Mapping of TOGAF 8.1 With COBIT 4.0 (PDF, 1M) Jun 2007
COBIT Mapping: Mapping of TOGAF 8.1 With COBIT 4.0 (Abridged) (PDF, 342K) Jun 2007
COBIT Mapping: Mapping PRINCE2 With COBIT (PDF, 582K) Jan 2007
COBIT Mapping: Mapping SEI's CMM For Software With COBIT 4.0 (PDF, 790K) Sep 2006
COBIT Overview (PPT, 2.9M) Jan 2010
COBIT Quickstart, 2nd Edition (PDF, 1.3M) Feb 2009
COBIT Quickstart: Zipped Files (Zip, 165K) Feb 2009
COBIT Security Baseline: An Information Security Survival Kit, 2nd Edition (PDF, 465K) Sep 2007
COBIT User Guide for Service Managers (PDF, 783K) Apr 2009
Implementing and Continually Improving IT Governance (PDF, 3M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Awareness files) (Zip, 1M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Implementation files) (Zip, 2.6M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Implementation presentation, Val IT) (Zip, 4.3M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Maturity files) (Zip, 1,2M) Nov 2009
Implementing and Continually Improving IT Governance - Toolkit (Overview files) (Zip, 5.3M) Nov 2009
Information Security Governance: Guidance for Boards of Directors and Executive Management 2nd Edition (PDF, 500K) Mar 2006
Information Security Governance: Guidance for Boards of Directors and Executive Management, 2nd Edition (Japanese Supplement) (PDF, 20K) Aug 2007
Information Security Governance: Guidance for Boards of Directors and Executive Management, 2nd Edition (Japanese) (PDF, 315K) Aug 2007
IT and Information Security Governance (PPT, 415K)
IT Assurance Guide Appendices With COBIT Control Practices (ZIP, 370K) May 2008
IT Assurance Guide: Using COBIT (PDF, 1.2M) Apr 2007
IT Assurance Guide: Using COBIT (Japanese) (PDF, 2.8M) Jun 2009
IT Assurance Guide: Using COBIT - Français (French) (Chapter Web Site)
IT Control Objectives for Basel II: The Importance of Governance and Risk Management for Compliance (PDF, 855K) Oct 2007
IT Control Objectives for Basel II: The Importance of Governance and Risk Management for Compliance (Japanese) (PDF, 870K) Nov 2008
IT Control Objectives for Sarbanes Oxley, 2nd Edition (appendix C and part of appendix D) (Word Doc, 598k) Jun 2007
IT Control Objectives for Sarbanes-Oxley 2nd Edition (PDF, 940K) Sep 2006
IT Control Objectives for Sarbanes-Oxley 2nd Edition (Italian) (PDF, 907K) Oct 2008
IT Control Objectives for Sarbanes-Oxley 2nd Edition (Japanese) (PDF, 1.8M) Feb 2007
IT Governance and Process Maturity (PDF, 2M) Nov 2008
IT Governance Executive Summary (PDF, 556K) Jul 2002
IT Governance Global Status Report - 2008 (HTML) May 2008
IT Governance Roundtable: Defining IT Governance (PDF, 170K) Jan 2009
IT Governance Roundtable: Value Delivery (PDF, 164K) Jan 2009
IT Governance Roundtable: IT Governance Frameworks (PDF, 103K) Nov 2007
IT Governance Roundtable: IT Governance Trends (PDF, 112K) Jun 2008
IT Governance Roundtable: IT Staffing Challenges (PDF, 129K) Jun 2008
IT Governance Roundtable: Unlocking Value (PDF, 176K) Feb 2009
IT Governance Using COBIT and Val IT (HTML) Dec 2004
ITGI™ Enables ISO/IEC 38500:2008 Adoption (PDF, 216K) Feb 2009
ITGI™ Enables ISO/IEC 38500:2008 Adoption (Spanish) (PDF, 373K) Oct 2009
ITGI™ Enables ISO/IEC 38500:2008 Adoption (Japanese) (PDF, 452K) May 2009
Many More Titles Available Through the Bookstore (HTML)
MOF to COBIT/Val IT Comparison and Cross Implementation Guide: How to Leverage MOF in a COBIT/Val IT Environment (PDF, 1.8M) Jun 2009
Unlocking Value: An Executive Primer on the Critical Role of IT Governance (PDF, 394K) Nov 2008
Volume 1, January 2010 (HTML) Jan 2010

Risk IT - Top

Risk IT provides a framework for enterprises to identify, govern and manage IT risk.


Risk IT Overview (PPT, 1.4M) Jan 2010
The Risk IT Framework (PDF, 4.6M) Nov 2009
The Risk IT Framework Excerpt (PDF, 3.6M) Jan 2010
The Risk IT Framework Laminate (PDF, 1.7M) Nov 2009
The Risk IT Practitioner Guide (PDF, 5.7M) Nov 2009
The Risk IT Practitioner Guide Toolkit Zip (Zip, 195K) Nov 2009

Val IT - Top

Val IT is a governance framework that consists of a set of guiding principles, and a number of processes conforming to those principles that are further defined as a set of key management practices.

Building the Business Case for COBIT® and Val IT™: Executive Briefing (PDF, 1.9M) Jun 2009
ISACA Journal: IT Value Special Compilation (PDF, 264K) May 2009
Nine-country Survey on IT Value (PDF, 69K) Aug 2009
Val IT Brochure (PDF, 200K) Aug 2008
Val IT Business Case (PDF, 296K) Mar 2006
Val IT Business Case - Japanese (PDF, 386K) Apr 2007
Val IT Business Case - Spanish (PDF, 661K) Jul 2007
Val IT Case Study: Value Governance - Police Case Study (PDF, 433K) Aug 2007
Val IT Edition 1 - Français (French) (Chapter Web Site)
Val IT Framework (PDF, 355K) Mar 2006
Val IT Framework - Japanese (PDF, 610K) Apr 2007
Val IT Framework - Spanish (PDF, 786K) Jul 2007
Val IT Framework 2.0 (Complete) (PDF, 1.5M) Jul 2008
Val IT Framework 2.0 (Extract) (PDF, 500K) Jul 2008
Val IT Framework 2.0 (Laminate) (PDF, 205K) Sep 2008
Val IT Getting Started With Value Management (PDF, 550K) Jul 2008
Val IT Mapping: Mapping of Val IT 2.0 to MSP™, PRINCE2™ and ITIL® V3 (PDF, 640K) May 2009
Val IT Overview (PPT, 1.7M) Jan 2010

Research - Top

The IT Governance Institute exists to assist enterprise leaders in their responsibility to make IT successful in supporting the enterprise's mission. ITGI delivers on this mission by undertaking original research to clarify and provide guidance on current and future issues pertaining to IT governance, audit, control and security. ISACA members benefit from this related entity through exclusive complimentary access to many research publications. Below are ITGI's most recent deliverables — in addition to the COBIT section above. For more information pertaining to research. Many more titles are available for purchase through the bookstore.


A Guide To Cross-Border Privacy Impact Assessments (DOC, 404K) Jun 2001
Aligning COBIT® 4.1, ITIL® V3 and ISO/IEC 27002 for Business Benefit (PDF, 842K) Nov 2008
An Introduction to the Business Model for Information Security (PDF, 451K) Jan 2009
Board Briefing on IT Governance (Spanish) (PDF, 1.4M) Oct 2003
Board Briefing on IT Governance, 2nd Edition (PDF, 410K) Oct 2003
Board Briefing on IT Governance, 2nd Edition (German) (PDF, 657K) Oct 2003
Board Briefing on IT Governance, 2nd Edition (Japanese) (PDF, 824K) Aug 2007
Cloud Computing: Business Benefits With Security, Governance and Assurance Perspectives (PDF, 175K) Oct 2009
Critical Elements of Information Security Program Success (PDF, 174K) Dec 2005
Customer Relationship Management (PDF, 432K) Apr 2002
Defining Information Security Management Position Requirements:  Guidance for Executives and Managers (PDF, 269K) Nov 2008
Defining Information Security Management Position Requirements:  Guidance for Executives and Managers (Portuguese) (PDF, 472K) Jan 2010
Defining Information Security Management Position Requirements:  Guidance for Executives and Managers (Spanish) (PDF, 481K) Jan 2010
e-Commerce Security: Securing the Network Perimeter (PDF, 1.32M) May 2004
Electronic and Digital Signatures: A Global Status Report (PDF, 668K) Jul 2002
Information Security Career Progression Survey Results (PDF, 442K) May 2008
Information Security Governance: Guidance for Boards of Directors and Executive Management 2nd Edition (PDF, 500K) Mar 2006
Information Security Governance: Guidance for Boards of Directors and Executive Management, 2nd Edition (Japanese Supplement) (PDF, 20K) Aug 2007
Information Security Governance: Guidance for Boards of Directors and Executive Management, 2nd Edition (Japanese) (PDF, 315K) Aug 2007
Information Security Governance: Guidance for Information Security Managers (PDF, 833K) May 2008
Information Security Governance—Top Actions for Security Managers (PPT, 336K) Aug 2005
Information Security Harmonisation—Classification of Global Guidance (PDF, 528K) Mar 2005
Introduction to Voice-over IP Technology (PDF, 711K) Aug 2004
IT Assurance Guide: Using COBIT (PDF, 1.2M) Apr 2007
IT Control Objectives for Sarbanes-Oxley 2nd Edition (PDF, 940K) Sep 2006
IT Control Objectives for Sarbanes-Oxley 2nd Edition (Italian) (PDF, 907K) Oct 2008
IT Control Objectives for Sarbanes-Oxley 2nd Edition (Japanese) (PDF, 1.8M) Feb 2007
IT Governance Domains Practices and Competencies: Governance of Outsourcing (PDF, 436K) Jul 2005
IT Governance Domains Practices and Competencies: Information Risks-Whose Business are They? (PDF, 194K) Jun 2005
IT Governance Domains Practices and Competencies: IT Alignment Who Is in Charge? (PDF, 433K)
IT Governance Domains Practices and Competencies: Measuring and Demonstrating the Value of IT (PDF, 533K) Aug 2005
IT Governance Domains Practices and Competencies: Optimising Value Creation from IT Investments (PDF, 344K) Jun 2005
ITAF Research (Complete) (PDF, 785K) Apr 2008
ITAF Research (Summary) (PDF, 200K) Apr 2008
Many More Titles Available Through the Bookstore (HTML)
Peer-to-peer Networking Security and Control (PDF, 275K)
Project Management: Skills & Knowledge Requirements in an Information Technology Environment (PDF, 865K)
Risk & Control of Biometric Technologies (PDF, 898K)
The CEO’s Guide to IT Value at Risk (PDF, 266K) Mar 2005
Top Bus/Tech - Survey Results (PDF, 650K) Jul 2008
Understanding How Business Goals Drive IT Goals (PDF, 289K) Oct 2008
Val IT Framework 2.0 (Complete) (PDF, 1.5M) Jul 2008
Val IT Framework 2.0 (Extract) (PDF, 500K) Jul 2008
Val IT Getting Started With Value Management (PDF, 550K) Jul 2008
Wireless LAN Risks and Vulnerabilities (PDF, 507K)

Standards, Guidelines and Procedures - Top

ISACA has long recognized that the specialized nature of information systems (IS) auditing and control, and the necessary skills, require standards that apply specifically to IS auditing and control. ISACA strives to advance globally applicable standards to meet this need which represents the cornerstone of ISACA's professional contribution. Guidelines and procedures provide detailed guidance on how to follow those standards. The download denoted as the 'Booklet' contains the complete collection of standards, guidelines and procedure. In addition, each individual document is available for download. More information on the standards program.


Standards, Guidelines, and Tools and Techniques (PDF, 6.8M) Sep 2009
Standards for IS Auditing (HTML)
Standards for IS Control Professionals (PDF, 39K) May 1999
IT Audit and Assurance Standards, Guidelines, and Tools and Techniques Awaiting Final Approval (HTML)
Standards Documents Under Exposure (HTML)
Topics of Guidance in Development (HTML)

Items below are included in the Booklet above.
IS Auditing Guideline: G01 Using the Work of Other Experts (PDF, 50K) Mar 2008
IS Auditing Guideline: G02 Audit Evidence Requirement (PDF, 50K) Mar 2008
IS Auditing Guideline: G03 Use of Computer-Assisted Audit Techniques (PDF, 59K) Mar 2008
IS Auditing Guideline: G04 Outsourcing of IS Activities to Other Organisations (PDF, 54K) Mar 2008
IS Auditing Guideline: G05 Audit Charter (PDF, 47K) Feb 2008
IS Auditing Guideline: G06 Materiality Concepts for Auditing Information Systems (PDF, 55K) Mar 2008
IS Auditing Guideline: G07 Due Professional Care (PDF, 45K) Mar 2008
IS Auditing Guideline: G08 Audit Documentation (PDF, 47K) Mar 2008
IS Auditing Guideline: G09 Audit Considerations for Irregularities (PDF, 73K) Aug 2008
IS Auditing Guideline: G10 Audit Sampling (PDF, 55K) Nov 1999
IS Auditing Guideline: G11 Effect of Pervasive IS Controls (PDF, 134K) Nov 1999
IS Auditing Guideline: G12 Organisational Relationship and Independence (PDF, 49K) May 2000
IS Auditing Guideline: G13 Use of Risk Assessment in Audit Planning (PDF, 56K) May 2000
IS Auditing Guideline: G14 Application Systems Review (PDF, 47K) Oct 2008
IS Auditing Guideline: G15 Planning (PDF, 35K) Nov 2001
IS Auditing Guideline: G16 Effect of Third Parties on an Enterprise’s IT Controls (PDF, 67K) Mar 2009
IS Auditing Guideline: G17 Effect of Nonaudit Role on the IT Audit and Assurance Professional’s Independence (PDF, 55K) May 2009
IS Auditing Guideline: G18 IT Governance (PDF, 145K) Apr 2002
IS Auditing Guideline: G20 Reporting (PDF, 133K) Oct 2002
IS Auditing Guideline: G21 Enterprise Resource Planning (ERP) Systems Review (PDF, 114K) Aug 2003
IS Auditing Guideline: G22 Business to Consumer (B2C) E-commerce Review (PDF, 67K) Oct 2008
IS Auditing Guideline: G23 System Development Life Cycle (SDLC) Review (PDF, 72K) Aug 2003
IS Auditing Guideline: G24 Internet Banking (PDF, 177K) Aug 2003
IS Auditing Guideline: G25 Review of Virtual Private Networks (PDF, 64K) Oct 2003
IS Auditing Guideline: G26 Business Process Reengineering (BPR) Project Reviews (PDF, 250K) Apr 2004
IS Auditing Guideline: G27 Mobile Computing (PDF, 46K) Jul 2004
IS Auditing Guideline: G28 Computer Forensics (PDF, 58K) Jul 2004
IS Auditing Guideline: G29 Post Implementation Review (PDF, 216K)
IS Auditing Guideline: G30 Competence (PDF, 145K) Feb 2005
IS Auditing Guideline: G31 Privacy (PDF, 192K) Jun 2005
IS Auditing Guideline: G32 Business Continuity Plan (BCP) Review from IT Perspective (PDF, 163K) Jul 2005
IS Auditing Guideline: G33 General Considerations on the Use of Internet (PDF, 166K) Dec 2005
IS Auditing Guideline: G34 Responsibility, Authority and Accountability (PDF, 117K) Dec 2005
IS Auditing Guideline: G35 Follow-up Activities (PDF, 178K) Dec 2005
IS Auditing Guideline: G36 Biometric Controls (PDF, 174K) Oct 2006
IS Auditing Guideline: G37 Configuration Management Process (PDF, 92K) Sep 2007
IS Auditing Guideline: G38 Access Controls (PDF, 82K) Feb 2008
IS Auditing Guideline: G39 IT Organisation (PDF, 81K) Mar 2008
IS Auditing Guideline: G40 Review of Security Management Practices (PDF, 79K) Oct 2008
IS Auditing Procedure: P01 IS Risk Assessment Measurement (PDF, 237K) Apr 2002
IS Auditing Procedure: P02 Digital Signatures (PDF, 176K) May 2002
IS Auditing Procedure: P03 Intrusion Detection (PDF, 168K) May 2003
IS Auditing Procedure: P04 Viruses and Other Malicious Logic (PDF, 227K) May 2003
IS Auditing Procedure: P05 Control Risk Self-assessment (PDF, 166K) May 2003
IS Auditing Procedure: P06 Firewalls (PDF, 248K) May 2003
IS Auditing Procedure: P07 Irregularities and Illegal Acts (PDF, 201K) Oct 2003
IS Auditing Procedure: P08 Security Assessment - Penetration Testing and Vulnerability Analysis (PDF, 221K) Feb 2004
IS Auditing Procedure: P09 Evaluation of Management Controls Over Encryption Methodologies (PDF, 170K) Apr 2004
IS Auditing Procedure: P10 Business Application Change Control (PDF, 230K) Aug 2006
IS Auditing Procedure: P11 Electronic Funds Transfer (EFT) (PDF, 87K) Feb 2007
Standards for IS Auditing (Dutch) (HTML)
Standards for IS Auditing (Estonia) (PDF, 3.5M)
Standards for IS Auditing (French) (HTML)
Standards for IS Auditing (German) (HTML)
Standards for IS Auditing (Hebrew) (HTML)
Standards for IS Auditing (Italian) (HTML)
Standards for IS Auditing (Japanese) (HTML)
Standards for IS Auditing (Korean) (HTML)
Standards for IS Auditing (Portuguese) (HTML)
Standards for IS Auditing (Simplified Chinese) (HTML)
Standards for IS Auditing (Spanish) (HTML)
Standards for IS Auditing (Traditional Chinese) (HTML)

ISACA Journal - Top

The ISACA Journal is a bimonthly publication that provides professional development information to those spearheading IT governance and those involved with information systems audit, control and security. This leading industry publication is read by more than 65,000 professionals in over 155 countries around the world. This select audience includes members of ISACA, subscribers, university libraries worldwide, and copies circulated within organizations in diverse industries. Members benefit by receiving the Journal in print form as well as access to Journal content online. Learn more about the Journal by visiting its home page.


Current Issue (HTML)
ISACA Journal Ad Rates (HTML)
ISACA Journal Archives (HTML)
ISACA Journal Author Guidelines (HTML)
ISACA Journal Subscriptions (HTML)
Journal Online - Online Exclusive Articles
Translation: Continuous Audits - Continous Auditing Is It Fantasy or Reality - Indonesian (PDF, 180K) May 2009
Translation: Continuous Audits - Taking the Plunge - Indonesian (PDF, 98K) May 2009

@ISACA - Top

Biweekly ISACA Membership e-newsletter. Image


Webcasts - Top

Webcasts are just one method ISACA uses to inform and educate members, and is the most convenient mechanism for reaching our global constituents. The webcasts are presented by industry leaders, and offer a global perspective to the issues and challenges facing business today. While not downloadable, they represent an important online resource.

See the webcast offerings.


Certification - Top

ISACA has a long IT certification tradition and commitment to excellence. During its 20-year history, the Certified Information Systems Auditor (CISA) program has certified more than 60,000 individuals, and in its first three years, has certified over 6,200 individuals as a Certified Information Security Manager (CISM). For additional information on these programs visit the certification home page. Below are documents relevant to both aspiring certification candidates and those already certified.


Certification Success Brochure (PDF, 444K) Jan 2010
CGEIT Application for Certification (PDF, 450K) Apr 2009
CGEIT BOI (PDF, 497K) Nov 2009
CGEIT BOI - December (PDF, 654K) Jun 2009
CGEIT Exam Candidate's Guide (PDF, 438K) Dec 2008
CGEIT Glossary (PDF, 70K) Nov 2009
CGEIT Success Brochure (PDF, 638K) Jan 2009
CISA Application for Certification (PDF, 115K) Jul 2008
CISA BOI - 國語中文 (Traditional Chinese) (PDF, 1.7M) Dec 2009
CISA BOI - 日本語 (Japanese) (PDF, 1.5M) Jan 2010
CISA BOI - 简体中文 (Simplified Chinese) (PDF, 2.4M) Jan 2010
CISA BOI - 한국어 (Korean) (PDF, 2M) Jun 2009
CISA BOI - Deutsch (German) (PDF, 1.4M) Jan 2010
CISA BOI - English (PDF, 719K) Nov 2009
CISA BOI - Español (Spanish) (PDF, 1.4M) Jan 2010
CISA BOI - Français (French) (PDF, 1.4M) Dec 2009
CISA BOI - Italiano (Italian) (PDF, 1.4M) Jan 2010
CISA BOI - Nederlands (Dutch) (PDF, 1.4M) Dec 2009
CISA BOI - Polski (Polish) (PDF, 1.4M) Dec 2009
CISA Continuing Professional Education (CPE) Policy
CISA DoD BOI - December (PDF, 972K) Jun 2009
CISA Exam Candidate's Guide (PDF, 477K) Dec 2009
CISA Exam Candidate's Guide: 日本語 (Japanese) (PDF, 2.9M) Jan 2010
CISA Exam Candidate's Guide: 简体中文 (Simplified Chinese) (PDF, 2.7M) Jan 2010
CISA Exam Candidate's Guide: 한국어 (Korean) (PDF, 2.9M) Jan 2010
CISA Exam Candidate's Guide: - 國語中文 (Traditional Chinese) (PDF, 3M) Jan 2010
CISA Exam Candidate's Guide: Deutsch (German) (PDF, 2.6M) Jan 2010
CISA Exam Candidate's Guide: Español (Spanish) (PDF, 2.6M) Jan 2010
CISA Exam Candidate's Guide: Français (French) (PDF, 2.6M) Feb 2010
CISA Exam Candidate's Guide: Italiano (Italian) (PDF, 2.6M) Jan 2010
CISA Exam Candidate's Guide: Nederlands (Dutch) (PDF, 2.6M) Jan 2010
CISA Exam Candidate's Guide: Polski (Polish) (PDF, 2.6M) Jan 2010
CISA Exam Terminology Lists (HTML) Jan 2010
CISM Application (PDF, 192K) Apr 2009
CISM Application and Maintenance (HTML) Dec 2009
CISM BOI - 日本語 (Japanese) (PDF, 1.5M) Jan 2010
CISM BOI - 한국어 (Korean) (PDF, 2M) Jan 2010
CISM BOI - English (PDF, 714K) Nov 2009
CISM BOI - Español (Spanish) (PDF, 1.4M) Jan 2010
CISM DoD BOI - December (PDF, 1M) Jun 2009
CISM Exam Bulletin of Information (BOI) (HTML)
CISM Exam Candidate's Guide (PDF, 452K) Dec 2009
CISM Exam Candidate's Guide: 日本語 (Japanese) (PDF, 2.8M) Jan 2010
CISM Exam Candidate's Guide: 한국어 (Korean) (PDF, 630K) Jan 2009
CISM Glossary (PDF, 72K) Dec 2008
Item Writing Program (HTML)
Item Writing Program (HTML)

ICQs and Audit Programs - Top

This material is provided free of charge as a benefit of ISACA membership. If you own material that you would like to share with fellow members through this resource, please forward it to research@isaca.org - Thank You.

Selected titles may be purchased by nonmembers through the bookstore.


Biometric Technologies (DOC, 168K) Feb 2004
Cellular Management Billing (DOC, 26K) Nov 2001
Change Management Audit/Assurance Program (DOC, 2.4M) Jan 2009
Customer Relationship Management (CRM) (DOC, 1.3M) Feb 2004
Cybercrime: Incident Response and Digital Forensics (DOC, 745K) Sep 2006
eCommerce Security Creation, Storage and Maintenance of Trading Partner Records (DOC, 108K) Oct 2000
eCommerce Security PKI, Digital Certificates in E-commerce (DOC, 208K) Sep 2001
eCommerce Security Public Key Infrastructure Symmetrical (Private) Key Encryption (DOC, 173K) Sep 2001
eCommerce Security Selection & Identification of Trading Partners (DOC, 107K) Oct 2000
Generic Application Audit/Assurance Program (DOC, 2.2M) Jan 2009
Identity Management Audit/Assurance Program (DOC, 2M) Jan 2009
IT Continuity Planning Audit/Assurance Program (DOC, 2M) Jan 2009
Network Perimeter Security Audit/Assurance Program (DOC, 1.8M) Jan 2009
Oracle E-Business Suite (DOC, 67K) Nov 2006
Outsourced IT Environments Audit/Assurance Program (DOC, 2.2M) Jan 2009
PeopleSoft (DOC, 1.7M) Aug 2006
Security Incident Management Audit/Assurance Program (DOC, 1.9M) Jan 2009
Security Provisioning (PDF, 72K) May 2003
Security, Audit and Control Features Oracle Database, 3rd Edition Excerpt of the Audit/Assurance Program and ICQs (DOC, 806K) Dec 2009
Security, Audit and Control Features SAP® ERP, 3rd Edition (Audit/Assurance Program and ICQ) (DOC, 2M) Aug 2009
Softserve Internet Services (PDF, 225K) Dec 2004
Software Licensing (DOC, 87K) Sep 2001
Systems Development and Project Management Audit/Assurance Program (DOC, 5M) Jan 2009
Telephone Management Billing (DOC, 37K) Sep 2001
UNIX/LINUX Operating System Security Audit/Assurance Program (DOC, 2.6M) Jan 2009
Virtual Private Networking (DOC, 189K) Aug 2004
z/OS Security Audit/Assurance Program (DOC, 2.2M) Jan 2009

Academia - Top

ISACA is committed to supporting and enhancing relationships among the faculty and student bodies of colleges and universities with local ISACA chapters, ISACA worldwide and the IS audit and control profession. Below is the most relevant material.


Academic Advocate Brochure (PDF, 308K) Jul 2009
Academic Advocate Program (HTML)
Chinese Download Model Curricula (PDF, 1.1M) Aug 2005
English Download Model Curricula (PDF, 483K) Sep 2009
ISACA Model Curricula (HTML)
IT Governance Using COBIT and Val IT (HTML) Dec 2004
Model Curriculum for Information Security Management (PDF, 893K) Dec 2008
Model Curriculum for Information Security Management (Alignment Grid) (Doc, 151K) Dec 2008
Spanish Download Model Curricula (PDF, 786K) Aug 2005
Student Membership Information (HTML) Jan 2010

Brochures — Exam and Education - Top


2010 Training Week Course Catalog (PDF, 335K) Feb 2010
Academic Advocate Brochure (PDF, 308K) Jul 2009
Asia-CACS 2010 Brochure (PDF, 245K) Dec 2009
CISA Exam Registration Information (Bulletin of Information) (HTML)
CISA Exam Terminology Lists (HTML) Jan 2010
CISM Exam Bulletin of Information (BOI) (HTML)
Conferencia de Seguridad de la Información y Administración del Riesgo - Folleto (PDF, 436K) Jan 2010
Educational Events Flyer (PDF, 44K) Dec 2009
EuroCACS - Brochure (PDF, 278K) Dec 2009
Information Security and Risk Management Conference: Europe - Brochure (PDF, 351K) Aug 2009
Information Security and Risk Management Conference: North America - Brochure (PDF, 486K) Aug 2009
International Conference - Brochure (PDF, 403K) Apr 2009
IT Governance, Risk and Compliance Conference - Brochure (PDF, 504K) Jul 2009
Latin America CACS Brochure (PDF, 402K) Jun 2009
North America CACS - Brochure (PDF, 329K) Jan 2010
Study Aids for CISA Exam (PDF, 114K) Dec 2009
Study Aids for CISM Exam (PDF, 99K) Dec 2009

Brochures — Professional - Top


Certification Success Brochure (PDF, 444K) Jan 2010
COBIT 4.1 Brochure (PDF, 180K) Feb 2009
COBIT 4.1 Products Brochure (PDF, 1.5M) Oct 2009
Risk IT Brochure (PDF, 160K) Sep 2009
Val IT Brochure (PDF, 200K) Aug 2008
Val IT Framework 2.0 (Laminate) (PDF, 205K) Sep 2008

Forms & Applications - Top


Academic Advocate Program (HTML)
Academic Membership Application (PDF, 105K) Jan 2010
Bookstore Order Form (PDF, 131K)
CISM Application and Maintenance (HTML) Dec 2009
CISM Exam Bulletin of Information (BOI) (HTML)
Conference Sponsorship and Exhibition Opportunities (HTML) Feb 2010
e-Symposium Session Proposal Form (DOC, 80K) Oct 2007
ISACA Journal Ad Rates (HTML)
ISACA Journal Subscriptions (HTML)
Item Writing Program (HTML)
Item Writing Program (HTML)
Joining ISACA (HTML) Jan 2010
Membership Application (PDF, 158K) Jan 2010
Solicitud de Inscripcion (Spanish Membership App) (PDF, 112K) Jan 2010
Student Membership Application (PDF, 98K) Feb 2010

Anonymous Access (Login NOT Required) - Top

The following material, in addition to brochures and forms, summarizes what is available that does not require you to have established an online account.


Aligning COBIT® 4.1, ITIL® V3 and ISO/IEC 27002 for Business Benefit (PDF, 842K) Nov 2008
Board Briefing on IT Governance (Spanish) (PDF, 1.4M) Oct 2003
Board Briefing on IT Governance, 2nd Edition (PDF, 410K) Oct 2003
Board Briefing on IT Governance, 2nd Edition (German) (PDF, 657K) Oct 2003
Board Briefing on IT Governance, 2nd Edition (Japanese) (PDF, 824K) Aug 2007
Building the Business Case for COBIT® and Val IT™: Executive Briefing (PDF, 1.9M) Jun 2009
COBIT Mapping Overview of International IT Guidance 2nd Edition (PDF, 1.6M) Apr 2006
Convergence of Enterprise Security Organizations (PDF, 1.6M) (PDF, 1.6M) Nov 2005
Convergent Security Risks in Physical Security Systems and IT Infrastructures (PDF, 543K) Sep 2006
Critical Elements of Information Security Program Success (PDF, 174K) Dec 2005
Customer Relationship Management (PDF, 432K) Apr 2002
Information Security Governance: Guidance for Boards of Directors and Executive Management 2nd Edition (PDF, 500K) Mar 2006
Information Security Governance: Guidance for Boards of Directors and Executive Management, 2nd Edition (Japanese Supplement) (PDF, 20K) Aug 2007
Information Security Governance: Guidance for Boards of Directors and Executive Management, 2nd Edition (Japanese) (PDF, 315K) Aug 2007
Information Security Governance—Top Actions for Security Managers (PPT, 336K) Aug 2005
ISACA Journal Archives (HTML)
ISACA Model Curricula (HTML)
IT Control Objectives for Sarbanes-Oxley 2nd Edition (Japanese) (PDF, 1.8M) Feb 2007
IT Governance Domains Practices and Competencies: Governance of Outsourcing (PDF, 436K) Jul 2005
IT Governance Domains Practices and Competencies: Information Risks-Whose Business are They? (PDF, 194K) Jun 2005
IT Governance Domains Practices and Competencies: IT Alignment Who Is in Charge? (PDF, 433K)
IT Governance Domains Practices and Competencies: Measuring and Demonstrating the Value of IT (PDF, 533K) Aug 2005
IT Governance Domains Practices and Competencies: Optimising Value Creation from IT Investments (PDF, 344K) Jun 2005
IT Governance Global Status Report - 2008 (HTML) May 2008
Standards for IS Auditing (HTML)
Standards for IS Control Professionals (PDF, 39K) May 1999
Standards, Guidelines, and Tools and Techniques (PDF, 6.8M) Sep 2009
Student Membership Information (HTML) Jan 2010
Unlocking Value: An Executive Primer on the Critical Role of IT Governance (PDF, 394K) Nov 2008
Wireless LAN Risks and Vulnerabilities (PDF, 507K)

Nonmember Access (Login Required) - Top

The following material, in addition to brochures, forms and anonymous access material, summarizes what is available that does not require you to be an ISACA member, but does require you to have established an online account. There is no cost to you for this access, however we do rely on you to create a legitimate account profile. Thank you.


COBIT 4.1 - English (PDF, 5M) Apr 2007
IT Control Objectives for Sarbanes-Oxley 2nd Edition (PDF, 940K) Sep 2006

nav menu image
spacer image
Assurance | Security | Governance
Members & Leaders | Professionals & Practitioners | Students & Educators | Exhibitors & Advertisers
Info Request | Join | Bookstore | My ISACA | About ISACA
Home | Site Map | Shopping Cart | Logout | Contact Us
spacer image
menu shadow

Terms Of Use | Privacy Policy | IP Guidelines
© 2010 ISACA All rights reserved.
3701 Algonquin Road, Suite 1010, Rolling Meadows, Illinois 60008 USA