ISACA logo
  • ShopCart
    0
  • Get support
  • Credentialing
  • Membership
  • Enterprise
  • Partnerships
  • Training and Events
  • Resources
Need help?Get support
©2026 ISACA. All rights reserved.
  • Certifications
    • CISA – Certified Information Systems Auditor
    • AAIA – Advanced in AI Audit
    • CISM – Certified Information Security Manager
    • AAISM – Advanced in AI Security Management
    • CRISC – Certified in Risk and Information Systems Control
    • AAIR – Advanced in AI Risk
    • CCOA – Certified Cybersecurity Operations Analyst
    • CGEIT – Certified in the Governance of Enterprise IT
    • CDPSE – Certified Data Privacy Solutions Engineer
    • CCA – CMMC Certified Assessor
    • CCI – CMMC Certified Instructor
    • CCP – CMMC Certified Professional
    • LCCA – Lead CMMC Certified Assessor Designation
    • ITCA
    • CET – Certified in Emerging Technology Certification
    • CSX-P – CSX Cybersecurity Practitioner Certification
  • Certificates
    • AI Fundamentals
    • Blockchain Fundamentals
    • Cloud Fundamentals
    • COBIT 19 Foundation
    • COBIT 2019 Design & Implementation
    • COBIT 5 Certificates
    • Cybersecurity Audit
    • Cybersecurity Fundamentals
    • Data Science Fundamentals
    • Digital Trust Ecosystem Framework Foundation Certificate
    • IoT Fundamentals
    • IT Audit Fundamentals
    • IT Risk Fundamentals
How can we help?
  • Find the right certification
  • Navigate Career Journey
  • Maintain or renew a certification
  • Verify a certification
  • Find the right certification
  • Navigate Career Journey
  • Maintain or renew a certification
  • Verify a certification
Trusted Partner for the DoW's CMMC ProgramISACA now serves as the official CAICO.
  • About Membership
    • Member Benefits
    • Membership Types
    • Browse Chapters
  • Get Involved
    • Advocacy
    • Author an Article
    • Chapter Events Calendar
    • ISACA Awards
    • SheLeadsTech
    • Volunteer
  • Maximize Your Membership
    • Career Center
    • Discounts & Savings
    • Free CPE
    • Free Resources
    • Member Experience Leadership Series
    • Mentorship
  • Engage Online Community
What would you like to do?
  • Join today
  • Earn free CPE
  • Browse chapters
  • Volunteer
  • Join today
  • Earn free CPE
  • Browse chapters
  • Volunteer
Personalize your ExperienceUpdate your ISACA profile today.
  • AI Solution
    • CMMI Artificial Intelligence Maturity (AIM)
  • Performance Improvement Solutions
    • CMMI Performance Solutions
    • CMMI Cybermaturity Assessment Platform
    • Medical Device Program
  • CMMI Appraisal Results
  • Team Training
    • Skills and Credentials
    • CMMI Training and Certification
  • License Enterprise Training
  • Enterprise Support
  • Contact Us
Empower Your Team to Empower Business GrowthCustomize your IT team training with ISACA.
  • Become a Partner
    • Accredited Training Organization
    • CMMI Partner
    • Academic Partner
    • CMMC Approved Training Provider (ATP)
    • Sponsor
    • Global Sponsors
  • Become an Enterprise Practitioner
    • Medical Device Appraiser
    • CMMC Certified Assessor (CCA)
    • CMMC Credentialed Instructor (CCI)
    • CMMI Certified Individual
Need to find a training partner
  • Certification Training Partners
  • COBIT Training Partners
  • Academic & Workforce Partners
  • CMMI Performance Improvement Partners
  • Certification Training Partners
  • COBIT Training Partners
  • Academic & Workforce Partners
  • CMMI Performance Improvement Partners
Over 100,000 People Were Trained By ISACA in 2022Become a Partner to capitalize on this demand.
  • Conferences
    • GRC Conference
    • ISACA Europe Conference
    • ISACA North America Conference
    • ISACA Virtual Conference
    • Student Summit
    • CMMI's Capability Creates
    • Call for Speakers
  • Training Week
  • Virtual Workshops
  • Training by Type
    • Virtual Summits
    • Webinars
    • Online Review Courses
    • Session Recordings
  • Training from an Accredited Partner
  • Training by Topic
    • All Training Topics
    • Artificial Intelligence
    • Cybersecurity
    • IT Audit
    • Certification Exam Preperation
    • Cobit
What would you like to do?
  • Earn CPE
  • Find Team Training
  • Explore Virtual Workshops
  • Find Chapter Events
  • Earn CPE
  • Find Team Training
  • Explore Virtual Workshops
  • Find Chapter Events
Featured Training15% Off AI Fundamentals Online Review Course
  • ISACA Resources
    • Digital Trust
    • ISACA Journal
    • Frameworks, Standards & Models
    • Insights & Expertise
    • ISACA Podcast
    • Videos
    • News & Trends
    • ISACA Now Blog
  • Engage Online Communities
  • COBIT
  • Resources by Topic
    • Artificial Intelligence
    • Cybersecurity
    • Emerging Technology
    • Governance
    • IT Audit
    • IT Risk
    • Privacy
  • Glossary
What can we help you find?
  • ISACA Now Blog
  • White Papers
  • Audit Programs
  • ISACA Now Blog
  • White Papers
  • Audit Programs
ISACA's IT Audit FrameworkThe newest edition is now available.
ISACA logo

1700 E. Golf Road, Suite 400, Schaumburg, Illinois 60173, USA  |  +1-847-660-5505

  • LinkedIn
  • Facebook
  • Instagram
  • YouTube
  • Support
    • Contact Us
    • Fraud Reporting
    • Bug Reporting
  • Careers
    • Career Journey
    • Career Center
    • Careers at ISACA
  • About Us
    • Who We Are
    • Newsroom
    • Participate & Volunteer
    • Leadership & Governance
    • Advocacy
    • ISACA Foundation
    • Code of Professional Ethics
  • Join / Renew
    • Renew
    • Professionals
    • Recent Graduates
    • Students
  • Credentialing
  • Membership
  • Enterprise
  • Partnerships
  • Training & Events
  • Resources
  • Bug Reporting
  • Contact Us
  • Terms
  • Privacy
  • Cookie Notice
  • Fraud Reporting

©2026 ISACA. All rights reserved.

CPE on Demand: Risk Essentials Bundle

CPE on Demand: Risk Essentials Bundle

2 CPEs
ENEnglish
Online

Risk Essentials Bundle

No image available

About this Session Recording

This bundle contains:

IT Risk Management Essentials Video

Gain critical foundational knowledge of IT risk concepts, practices and impacts on IT and business. Stream ISACA’s 90-minute IT Risk Management Essentials & Best Practices video to learn the fundamentals of:

  • Defining risk.
  • Risk types.
  • Risk tolerance.
  • Identifying, assessing and treating risk.
  • Performing a risk assessment and communicating outcomes.

This essential primer for IS/IT and business managers, practitioners and anyone interested in a risk management career is accessible on-demand, anywhere.

IT Risk Assessment Video

Further your IT Risk learning with the IT Risk Assessment Video. Stream ISACA’s new IT Risk Assessment video and learn how to conduct an IT Risk Assessment as an expert trainer leads you through the process and highlights topics such as:

  • Creating a Risk Management Process
  • Identifying the Risk
  • Analyze Threats and Vulnerabilities
  • Evaluate the Risk
  • Select Risk Treatment options

This learning enhancement for IS/IT and business managers, practitioners and anyone interested in a risk management career is accessible on-demand, anywhere.

Learners will have access to the course for three months from date of purchase and will earn 2 CPE upon completion. This course has a seat time of approximately 100 minutes and is accessed via the Learning Access tab of your MyISACA dashboard. 

Cancellation/Refund Policy

All purchases of online learning courses are final. Access to the online learning courses and materials is immediate upon purchasing; therefore no refunds or exchanges will be provided. Prices subject to change without notice.

Product SKU
LMS-RISK-BUND
Non-members
US$90
OR
Members
US$70.00
+ membership fees
Save US$20
  • Earn 70+ FREE CPE credits a year
  • Gain exclusive access to job postings
  • Access the online ISACA Journal

You might also like

No image available
CPE on Demand: IT Risk Management Essentials

IT Risk Management Essentials

Members
$50
Non-members
$65
No image available
CPE on Demand: How to Perform a Risk Assessment

How to Perform a Risk Assessment

Members
$50
Non-members
$65
No image available
Official AAIR Bundle Virtual Workshop September 28

Join us for an immersive 2-day virtual training event that explore topics around the ISACA Advanced in AI Risk™ certification (AAIR™). This course builds upon existing IT risk best practices and focuses on validating expertise necessary to identify and evaluate AI risk for responsible enterprise adoption. Enrollment includes the AAIR Review Manual (eBook edition), AAIR Questions, Answers and Explanations Database (QAE) as well as the exam cost. Date: September 28-29, 2026 Time: 8:30-5:00 CT (GMT -6) Transfer Date: Friday, 18 September 2026 Cancellation Date: Friday, 18 September 2026 Last Date to Register: Friday, 18 September 2026

Members
$1950
Non-members
$2250
No image available
Closing the Loop: Running GRC on Real-Time Data Across Governance, Risk, and Engineering

Description: Continuous evidence gathering is no longer the frontier — many GRC programs already automate collection. Yet governance still runs on periodic cycles: evidence pools up for audit while decisions, ownership, and policy lag behind the environment they govern. Collection changed; governance did not. This session puts governance at the center of a continuous control loop — sense, govern, remediate, refine — where live evidence directly drives governance decisions: a real-time posture for leadership, findings owned and driven to verified closure, full-population assurance for auditors, and policy that updates from outcomes. A worked control runs across NIST CSF, ISO/IEC 27001, SOC 2, and COBIT. Learning Objectives: -Diagnose where point-in-time, compliance-only evidence introduces sampling risk, stale data, and broken handoffs between governance, risk, audit, and engineering. -Map a single control finding across multiple frameworks (NIST CSF, ISO/IEC 27001, SOC 2, and COBIT) and trace it from strategic objective down to live implementation. -Design a continuous control loop — sense, govern, remediate, refine — that routes each finding to an owner, drives it to verified closure, and feeds the outcome back into policy. -Define measurable success criteria (mean time to remediate, control coverage, full-population audit readiness) for moving a program from documented to continuously demonstrable. -Evaluate evidence against admissibility criteria — provenance, freshness, source integrity, and completeness — so only defensible evidence stands behind a risk decision. Speaker: Prashanth Srinivas Sriraj, CISSP, CISM, CEO and Principal AI & Cybersecurity Architect, Bytoid Inc. Access until: 12pm CT on 4 February 2027

Members
FREE
Non-members
$75
No image available
Official AAIR Bundle Virtual Workshop December 16

Join us for an immersive 2-day virtual training event that explore topics around the ISACA Advanced in AI Risk™ certification (AAIR™). This course builds upon existing IT risk best practices and focuses on validating expertise necessary to identify and evaluate AI risk for responsible enterprise adoption. Enrollment includes the AAIR Review Manual (eBook edition), AAIR Questions, Answers and Explanations Database (QAE) as well as the exam cost. Date: December 16-17, 2026 Time: 8:30-5:00 CT (GMT -6) Transfer Date: Tuesday, 8 December 2026 Cancellation Date: Tuesday, 8 December 2026 Last Date to Register: Tuesday, 8 December 2026

Members
$1950
Non-members
$2250
No image available
AI & Enterprise Risk Management

Description: This webinar is ideal for IT leaders and risk management professionals who are eager to revolutionize their enterprise security strategies with cutting-edge AI tools from Cyberhaven, ensuring robust data protection and streamlined compliance processes. Transform your enterprise risk management strategy with AI-powered solutions that enhance data security, automate compliance, and protect sensitive information. Discover how Cyberhaven can help you streamline risk detection and response while ensuring regulatory compliance in an increasingly complex digital landscape. After attending this webinar, attendees will be able to: Unlock AI-Driven Risk Insights Discover hidden risks with advanced AI insights Gain clarity on data movements through AI analysis Learn predictive risk assessment via AI-driven tools Boost Compliance & Data Security Ensure compliance with automated oversight tools Secure sensitive data through automated protection Simplify audits by automating compliance checks Streamline Risk Detection & Response Accelerate threat detection with AI-driven responses Reduce response time with seamless identification Enhance security posture with quick, actionable insights Don't miss out on this exclusive opportunity to gain complementary access to game-changing insights on AI and enterprise risk management—available on your schedule, anytime. Sign up now to stay ahead of the curve and revolutionize your risk management strategy with Cyberhaven's leading experts. Speaker: Dan Walsh, Chief Information Security Officer, Datavant Access until: 12 pm CT on 1 February 2027

Members
FREE
Non-members
$75
No image available
2025 ISACA Conferences: Risk Collection

2025 ISACA Conferences: Risk Collection

Members
$300
Non-members
$350
No image available
Official AAISM Bundle Virtual Workshop September 21

Join us for an immersive 2-day virtual training event that explore topics around the ISACA Advanced in AI Security Management™ certification (AAISM™). This course builds upon existing security management best practices and focuses on the associated threat landscape to best manage the risk profile and effectively leverage AI into security operations. Enrollment includes the AAISM Review Manual (eBook edition), AAISM Questions, Answers and Explanations Database (QAE) as well as the exam cost. Date: 21-22 September 2026 Time: 8:30-17:00 CT (GMT -6) Transfer Date: Monday, 7 September 2026 Cancellation Date: Monday, 7 September 2026 Last date to register: Tuesday, 16 September 2026

Members
$1950
Non-members
$2250
No image available
Managing Cyber Risk in the New Age of AI

Description: If creating a policy is your solution for managing AI Risk, you are steaming full speed ahead… on the Titanic. AI is here to stay because it makes business sense—risk and cyber professionals must navigate its risks to realize its rewards. Join cyber risk leader Randy Lindberg as he explores how AI Risk impacts Governance, Risk, Compliance, Vendor Security, and Incident Response. Join the webinar to learn about: • New risks introduced by AI • New controls to mitigate AI risks • The need for continuous monitoring • How NIST AI RMF relates to Cyber Risk • A comprehensive AI Risk Management Model Speaker: Randy Lindberg, MBA, CISSP, CRISC, CISM, Founder and CEO, Rivial Data Security Archived until: 12:00PM CT on 2 October 2026

Members
FREE
Non-members
$75
No image available
Managing Enterprise Access Risk in a Multi-Application World

Description: Access risk and control models designed for single ERP environments no longer reflect how modern enterprises operate at scale. As organizations expand across procurement, HR, finance, and other line-of-business applications, access governance becomes distributed, business-owned, and increasingly complex. This session examines how enterprise-wide access risk evolves across ERP and critical business systems in real-world operating environments, and why traditional controls such as segregation of duties, user access reviews, and privileged access processes struggle to keep pace. Attendees will gain insight into how access governance must adapt to support modern governance and assurance expectations across the enterprise. Speaker: Susan Stapleton, Vice President, Customer Advisory, GRC Expert Access until: 12:00 pm CT on 16 April 2027

Members
FREE
Non-members
$75
No image available
From Risk to Resilience: A Compliance-Driven Patch Strategy

Description: In this session, attendees will explore practical strategies to align IT operations with audit and risk management frameworks. Learn how to automate remediation workflows without sacrificing traceability, reduce audit fatigue with evidence-ready reporting, and avoid costly oversights through real-world examples of patching failures and their consequences. What You’ll Learn: -How patch management maps to key controls in NIST, ISO 27001, CIS, and COBIT frameworks -Practical steps to align IT operations with audit and risk oversight -Best practices for automating remediation workflows while maintaining traceability and compliance -How to reduce audit fatigue with evidence-ready reporting for patching activities -Real-world examples of how missed patches led to audit findings or security incidents—and how to avoid them Speaker: Gene Moody, Field CTO, Action1 Archived until: 12:00PM CT on 4 September 2026

Members
FREE
Non-members
$75
No image available
Audit Blind Spots in Modern Cloud: Risks Audits Keep Missing

Description: As organizations rapidly adopt cloud platforms, traditional audit approaches often fail to identify the risks that matter most. This webinar explores common audit blind spots in modern cloud environments, including misconfigurations, identity sprawl, excessive permissions, and ineffective continuous monitoring. Attendees will learn why checklist-based audits fall short in dynamic cloud environments and how leveraging Cloud Security Posture Management (CSPM) and risk-based audit techniques can significantly improve assurance. Practical examples will illustrate how auditors and risk professionals can enhance visibility, prioritize findings, and provide stronger assurance to leadership. After attending this webinar, attendees will be able to: -Identify common cloud security risks and misconfigurations that traditional audit programs frequently overlook. -Understand why periodic, point-in-time audits are insufficient for cloud environments and how continuous change introduces audit gaps. -Explain how Cloud Security Posture Management (CSPM) tools support continuous risk identification, control validation, and audit evidence collection. -Apply practical techniques to modernize cloud audit programs, aligning audit, security, and risk teams around continuous assurance. Speaker: Michael Ratemo, CISA, CRISC, CISM, CDPSE, CISSP, CCSP, GCSA, Principal Security Advisor, Cyber Security Simplified Archived until: 12:00pm CT on 17 February 2027

Members
FREE
Non-members
$75
No image available
The Audit Mindset: The Most Underrated Career Skill in Business

Description: Here’s the thing nobody tells you in college: audit is everywhere. It’s not just IT, or finance, or compliance. It’s a mindset. The same principles that drive IT audit—objectivity, evidence-based evaluation, and risk management—apply to every corner of an organization, from HR to operations to strategy. In this 60-minute session, ISACA and HRCP dig into how audit thinking cuts across disciplines and why it’s becoming a must-have skill in today’s workforce. You’ll see how IT audit concepts can sharpen hiring, strengthen accountability, and transform how teams assess risk and performance. This isn’t theory. It’s about learning to see systems, spot gaps, and fix what’s broken before it breaks you. And once you understand the audit mindset, you can apply it anywhere: teaching, hiring, leading, or building your own career path. Whether you’re guiding students, developing talent, or reinventing yourself, this conversation will change how you think about audit, and why it just might be the smartest skill no one’s talking about. You’ll Learn how to: -Turn audit thinking into a superpower that strengthens decision-making in HR, business, and beyond. -Show students the value of audit skills that boost employability and career confidence across industries. -Bring the audit mindset into the classroom with content derived from globally recognized audit certifications -Design transdisciplinary programs that connect audit, risk, and strategy to real-world outcomes. -Use audit credentials to fuel career pivots, helping professionals stand out and move up. Hear from industry thought leaders on the overall: -Laura Middleton | President of Human Resource Certification Preparation (HRCP) -Wesley Ladd | Associate Director at LSU Center for Internal Auditing and Cybersecurity Risk Management Speakers: Jeff Angle, Senior Director, Academic and Workforce Development, ISACA Laura Middleton, Co-Founder and CEO, HRCP, L.C. Wesley Ladd, MBA, CISA, CISSP, Associate Director, LSU Center for Internal Auditing and Cybersecurity Risk Management Archived until: 12:00 pm CT on 26 February 2027

Members
FREE
Non-members
FREE
No image available
Beyond Content Inspection: Modern DLP for AI

Description: Content based DLP controls were designed for an era where sensitive data stayed inside files and followed predictable workflows. In today’s AI enabled enterprise, data fragments, recombines, and moves across endpoints, browsers, cloud applications, and generative AI tools, often without clear policy signals. This webinar explains why content inspection alone provides an incomplete view of data risk and how organizations can enhance DLP using contextual intelligence such as data lineage, behavioral analytics, and AI assisted investigations. Attendees will learn how modern approaches improve detection accuracy, reduce false positives, and support compliance, insider risk management, and AI governance. Speaker: Cole Padula, Solutions Engineer, Cyberhaven Access until: 12 pm CT on 5 March 2027

Members
FREE
Non-members
$75
Events
Shop AllEventsCPE on Demand: Risk Essentials Bundle