ISACA logo
  • ShopCart
    0
  • Get support
  • Credentialing
  • Membership
  • Enterprise
  • Partnerships
  • Training and Events
  • Resources
Need help?Get support
©2026 ISACA. All rights reserved.
  • Certifications
    • CISA – Certified Information Systems Auditor
    • AAIA – Advanced in AI Audit
    • CISM – Certified Information Security Manager
    • AAISM – Advanced in AI Security Management
    • CRISC – Certified in Risk and Information Systems Control
    • AAIR – Advanced in AI Risk
    • CCOA – Certified Cybersecurity Operations Analyst
    • CGEIT – Certified in the Governance of Enterprise IT
    • CDPSE – Certified Data Privacy Solutions Engineer
    • CCA – CMMC Certified Assessor
    • CCI – CMMC Certified Instructor
    • CCP – CMMC Certified Professional
    • LCCA – Lead CMMC Certified Assessor Designation
    • ITCA
    • CET – Certified in Emerging Technology Certification
    • CSX-P – CSX Cybersecurity Practitioner Certification
  • Certificates
    • AI Fundamentals
    • Blockchain Fundamentals
    • Cloud Fundamentals
    • COBIT 19 Foundation
    • COBIT 2019 Design & Implementation
    • COBIT 5 Certificates
    • Cybersecurity Audit
    • Cybersecurity Fundamentals
    • Data Science Fundamentals
    • Digital Trust Ecosystem Framework Foundation Certificate
    • IoT Fundamentals
    • IT Audit Fundamentals
    • IT Risk Fundamentals
How can we help?
  • Find the right certification
  • Navigate Career Journey
  • Maintain or renew a certification
  • Verify a certification
  • Find the right certification
  • Navigate Career Journey
  • Maintain or renew a certification
  • Verify a certification
Trusted Partner for the DoW's CMMC ProgramISACA now serves as the official CAICO.
  • About Membership
    • Member Benefits
    • Membership Types
    • Browse Chapters
  • Get Involved
    • Advocacy
    • Author an Article
    • Chapter Events Calendar
    • ISACA Awards
    • SheLeadsTech
    • Volunteer
  • Maximize Your Membership
    • Career Center
    • Discounts & Savings
    • Free CPE
    • Free Resources
    • Member Experience Leadership Series
    • Mentorship
  • Engage Online Community
What would you like to do?
  • Join today
  • Earn free CPE
  • Browse chapters
  • Volunteer
  • Join today
  • Earn free CPE
  • Browse chapters
  • Volunteer
Personalize your ExperienceUpdate your ISACA profile today.
  • AI Solution
    • CMMI Artificial Intelligence Maturity (AIM)
  • Performance Improvement Solutions
    • CMMI Performance Solutions
    • CMMI Cybermaturity Assessment Platform
    • Medical Device Program
  • CMMI Appraisal Results
  • Team Training
    • Skills and Credentials
    • CMMI Training and Certification
  • License Enterprise Training
  • Enterprise Support
  • Contact Us
Empower Your Team to Empower Business GrowthCustomize your IT team training with ISACA.
  • Become a Partner
    • Accredited Training Organization
    • CMMI Partner
    • Academic Partner
    • CMMC Approved Training Provider (ATP)
    • Sponsor
    • Global Sponsors
  • Become an Enterprise Practitioner
    • Medical Device Appraiser
    • CMMC Certified Assessor (CCA)
    • CMMC Credentialed Instructor (CCI)
    • CMMI Certified Individual
Need to find a training partner
  • Certification Training Partners
  • COBIT Training Partners
  • Academic & Workforce Partners
  • CMMI Performance Improvement Partners
  • Certification Training Partners
  • COBIT Training Partners
  • Academic & Workforce Partners
  • CMMI Performance Improvement Partners
Over 100,000 People Were Trained By ISACA in 2022Become a Partner to capitalize on this demand.
  • Conferences
    • GRC Conference
    • ISACA Europe Conference
    • ISACA North America Conference
    • ISACA Virtual Conference
    • Student Summit
    • CMMI's Capability Creates
    • Call for Speakers
  • Training Week
  • Virtual Workshops
  • Training by Type
    • Virtual Summits
    • Webinars
    • Online Review Courses
    • Session Recordings
  • Training from an Accredited Partner
  • Training by Topic
    • All Training Topics
    • Artificial Intelligence
    • Cybersecurity
    • IT Audit
    • Certification Exam Preperation
    • Cobit
What would you like to do?
  • Earn CPE
  • Find Team Training
  • Explore Virtual Workshops
  • Find Chapter Events
  • Earn CPE
  • Find Team Training
  • Explore Virtual Workshops
  • Find Chapter Events
Featured Training15% Off AI Fundamentals Online Review Course
  • ISACA Resources
    • Digital Trust
    • ISACA Journal
    • Frameworks, Standards & Models
    • Insights & Expertise
    • ISACA Podcast
    • Videos
    • News & Trends
    • ISACA Now Blog
  • Engage Online Communities
  • COBIT
  • Resources by Topic
    • Artificial Intelligence
    • Cybersecurity
    • Emerging Technology
    • Governance
    • IT Audit
    • IT Risk
    • Privacy
  • Glossary
What can we help you find?
  • ISACA Now Blog
  • White Papers
  • Audit Programs
  • ISACA Now Blog
  • White Papers
  • Audit Programs
ISACA's IT Audit FrameworkThe newest edition is now available.
ISACA logo

1700 E. Golf Road, Suite 400, Schaumburg, Illinois 60173, USA  |  +1-847-660-5505

  • LinkedIn
  • Facebook
  • Instagram
  • YouTube
  • Support
    • Contact Us
    • Fraud Reporting
    • Bug Reporting
  • Careers
    • Career Journey
    • Career Center
    • Careers at ISACA
  • About Us
    • Who We Are
    • Newsroom
    • Participate & Volunteer
    • Leadership & Governance
    • Advocacy
    • ISACA Foundation
    • Code of Professional Ethics
  • Join / Renew
    • Renew
    • Professionals
    • Recent Graduates
    • Students
  • Credentialing
  • Membership
  • Enterprise
  • Partnerships
  • Training & Events
  • Resources
  • Bug Reporting
  • Contact Us
  • Terms
  • Privacy
  • Cookie Notice
  • Fraud Reporting

©2026 ISACA. All rights reserved.

A Smarter School of Phish: Why Phishing Still Works in 2025

A Smarter School of Phish: Why Phishing Still Works in 2025

1 CPE
Access until 28 Aug 2026
Online•English

Description: Despite years of investment in training and layered email security, advanced phishing continues to bypass defenses, fool users, and lead to costly breaches. Why? Because phishing isn’t just a technical problem. It’s a dynamic threat that exploits people, processes, and technology gaps across an enterprise. In this session, our threat intelligence and cybersecurity experts share insights from new research that sheds light on how phishing has evolved in 2025 and what’s coming next. They’ll break down the latest phishing tactics attackers are using to get past defenses today and reveal how well-defended organizations are also being compromised. We’ll discuss: -The top reasons phishing attacks continue to succeed across industries -How attackers are adapting to bypass technical controls and target users across new platforms -Emerging insights from upcoming threat research on phishing trends and tactics Speaker: Brette Petersen, Senior Product Marketing Manager, Email Security, Proofpoint Archived until: 12:00PM CT on 28 August 2026

No image available

About this Webinar

Description: Despite years of investment in training and layered email security, advanced phishing continues to bypass defenses, fool users, and lead to costly breaches. Why? Because phishing isn’t just a technical problem. It’s a dynamic threat that exploits people, processes, and technology gaps across an enterprise.

In this session, our threat intelligence and cybersecurity experts share insights from new research that sheds light on how phishing has evolved in 2025 and what’s coming next. They’ll break down the latest phishing tactics attackers are using to get past defenses today and reveal how well-defended organizations are also being compromised.

We’ll discuss:

  • The top reasons phishing attacks continue to succeed across industries
  • How attackers are adapting to bypass technical controls and target users across new platforms
  • Emerging insights from upcoming threat research on phishing trends and tactics


Speaker: Brette Petersen, Senior Product Marketing Manager, Email Security, Proofpoint


Archived until: 12:00PM CT on 28 August 2026

Product SKU
LMS-SW082825
Non-members
US$75
OR
Members
FREE
+ membership fees
Save US$75
  • Earn 70+ FREE CPE credits a year
  • Gain exclusive access to job postings
  • Access the online ISACA Journal
Description: Despite years of investment in training and layered email security, advanced phishing continues to bypass defenses, fool users, and lead to costly breaches. Why? Because phishing isn’t just a technical problem. It’s a dynamic threat that exploits people, processes, and technology gaps across an enterprise. In this session, our threat intelligence and cybersecurity experts share insights from new research that sheds light on how phishing has evolved in 2025 and what’s coming next. They’ll break down the latest phishing tactics attackers are using to get past defenses today and reveal how well-defended organizations are also being compromised. We’ll discuss: -The top reasons phishing attacks continue to succeed across industries -How attackers are adapting to bypass technical controls and target users across new platforms -Emerging insights from upcoming threat research on phishing trends and tactics Speaker: Brette Petersen, Senior Product Marketing Manager, Email Security, Proofpoint Archived until: 12:00PM CT on 28 August 2026
Proofpoint Inc.

You might also like

No image available
Digital Resilience: Building Stronger, Smarter Organizations

Description: In an era of unrelenting technological disruption—where cyberattacks, AI-driven risks, and digital transformations collide—resilience is no longer a luxury; it’s a strategic imperative. This session will explore how organizations can build digital resilience, leveraging technology not just to survive disruptions but to emerge stronger and more adaptive. We’ll dive into: • What digital resilience really means, and how it extends beyond traditional business continuity. • How AI, automation, cloud, and other emerging technologies can both create risks and enable resilience. • Proven frameworks for integrating resilience into IT, audit, risk management, and compliance functions. • The leadership mindsets and cross-functional strategies needed to embed resilience into the DNA of your organization. Whether you’re an IT auditor, risk professional, compliance leader, or technology executive, this session will equip you with the insights and tools to transform disruption into a strategic advantage and future-proof your organization. Speaker: Deidre Melton, CFE, CIA, CISA, CISM, CDPSE, CRISC, CRMA, CIG, CIGI Deputy Chief Operating Officer & Associate Vice President for Enterprise Risk Management (CRO) Florida Agricultural and Mechanical University Archived until: 12:00pm CT on 5 August 2026

Members
FREE
Non-members
$75
No image available
2025 ISACA Conferences: Risk Collection

2025 ISACA Conferences: Risk Collection

Members
$300
Non-members
$350
No image available
2025 ISACA Conferences: Cybersecurity/Information Security Collection

2025 ISACA Conferences: Cybersecurity/Information Security Collection

Members
$300
Non-members
$350
No image available
2025 ISACA Conferences: Emerging Technology Collection

2025 ISACA Conferences: Emerging Technology Collection

Members
$360
Non-members
$420
No image available
2025 ISACA Conferences: Variety Pack Collection

2025 ISACA Conferences: Variety Pack Collection

Members
$600
Non-members
$700
No image available
2025 ISACA Conferences: Career/Leadership Development Collection

2025 ISACA Conferences: Career/Leadership Development Collection

Members
$420
Non-members
$490
No image available
2025 ISACA Conferences: Top Ten Sessions Collection

2025 ISACA Conferences: Top Ten Sessions Collection

Members
$600
Non-members
$700
No image available
2025 ISACA Virtual Conference Session Recordings: Americas Collection

2025 ISACA Virtual Conference Session Recordings: Americas Collection

Members
$660
Non-members
$770
No image available
2025 ISACA Virtual Conference Session Recordings: EMEA Collection

2025 ISACA Virtual Conference Session Recordings: EMEA Collection

Members
$540
Non-members
$630
No image available
Session Recording: 2025 ISACA Alternative Language: Spanish Collection

Session Recording: 2025 ISACA Alternative Language: Spanish Collection

Members
$385
Non-members
$455
No image available
Ethics in Practice: Living the ISACA Code

Ethics in Practice: Living the ISACA Code Online Course

Members
$69
Non-members
$99
No image available
2025 ISACA Virtual Conference Session Recordings: Asia-Pacific Collection

2025 ISACA Virtual Conference Session Recordings: Asia-Pacific Collection

Members
$660
Non-members
$770
No image available
AI in the Global Landscape: US, EU and Charting IT Governance

Description: The integration of AI into IT governance is crucial for managing the risks, security, and ethical considerations of AI technologies, requiring enhanced practices in risk management, data governance, and compliance. In the U.S., the NIST AI Risk Management Framework provides a structured approach to managing AI risks through governance, control, and continuous evaluation, emphasizing stakeholder involvement. The EU AI Act aims to balance innovation with ethical standards, encouraging organizations to strengthen governance frameworks while impacting both EU and US businesses interacting with the EU market. Learning Objectives: Drill down in IT Governance, Challenges and the Development of new model Introduction of AI Integration in IT Governance NIST AI Risk Management Framework (RMF) – Key principles and a structured approach to managing AI risks. Europe’s Approach to AI Regulation – Creating adaptable frameworks to balance local values and global tech challenges. Implications for US Companies – Compliance requirements for US businesses operating in the EU. The Role of BODs in AI Governance Speaker: Robert Putrus, CISM, PMP, PE IT Security, Compliance, and Program Management, The Roberts Company Robert Putrus, CISM, PMP, PE, is a highly skilled senior management professional with expertise in cyber security, regulatory compliance, cyber audit and risk assessment, information technology, service management, and global transformation programs. He has been instrumental in guiding companies through pre-IPO preparations, mergers, acquisitions, divestitures, and IT turnaround projects. Robert is well-versed in regulatory standards such as CCPA, GDPR, PCI DSS, HIPAA, and others. Known for his successful leadership in diverse technology and business initiatives. He has founded companies, established professional service practices, and contributed significantly to cyber security and IT management publications. Robert holds an MBA and an M.Sc. in Computer Engineering, underscoring his comprehensive academic background and professional achievements. Archived until: 12:00pm CT on 22 July 2026

Members
FREE
Non-members
$75
No image available
The Audit Mindset: The Most Underrated Career Skill in Business

Description: Here’s the thing nobody tells you in college: audit is everywhere. It’s not just IT, or finance, or compliance. It’s a mindset. The same principles that drive IT audit—objectivity, evidence-based evaluation, and risk management—apply to every corner of an organization, from HR to operations to strategy. In this 60-minute session, ISACA and HRCP dig into how audit thinking cuts across disciplines and why it’s becoming a must-have skill in today’s workforce. You’ll see how IT audit concepts can sharpen hiring, strengthen accountability, and transform how teams assess risk and performance. This isn’t theory. It’s about learning to see systems, spot gaps, and fix what’s broken before it breaks you. And once you understand the audit mindset, you can apply it anywhere: teaching, hiring, leading, or building your own career path. Whether you’re guiding students, developing talent, or reinventing yourself, this conversation will change how you think about audit, and why it just might be the smartest skill no one’s talking about. You’ll Learn how to: -Turn audit thinking into a superpower that strengthens decision-making in HR, business, and beyond. -Show students the value of audit skills that boost employability and career confidence across industries. -Bring the audit mindset into the classroom with content derived from globally recognized audit certifications -Design transdisciplinary programs that connect audit, risk, and strategy to real-world outcomes. -Use audit credentials to fuel career pivots, helping professionals stand out and move up. Hear from industry thought leaders on the overall: -Laura Middleton | President of Human Resource Certification Preparation (HRCP) -Wesley Ladd | Associate Director at LSU Center for Internal Auditing and Cybersecurity Risk Management Speakers: Jeff Angle, Senior Director, Academic and Workforce Development, ISACA Laura Middleton, Co-Founder and CEO, HRCP, L.C. Wesley Ladd, MBA, CISA, CISSP, Associate Director, LSU Center for Internal Auditing and Cybersecurity Risk Management Archived until: 12:00 pm CT on 26 February 2027

Members
FREE
Non-members
FREE
No image available
Audit Blind Spots in Modern Cloud: Risks Audits Keep Missing

Description: As organizations rapidly adopt cloud platforms, traditional audit approaches often fail to identify the risks that matter most. This webinar explores common audit blind spots in modern cloud environments, including misconfigurations, identity sprawl, excessive permissions, and ineffective continuous monitoring. Attendees will learn why checklist-based audits fall short in dynamic cloud environments and how leveraging Cloud Security Posture Management (CSPM) and risk-based audit techniques can significantly improve assurance. Practical examples will illustrate how auditors and risk professionals can enhance visibility, prioritize findings, and provide stronger assurance to leadership. After attending this webinar, attendees will be able to: -Identify common cloud security risks and misconfigurations that traditional audit programs frequently overlook. -Understand why periodic, point-in-time audits are insufficient for cloud environments and how continuous change introduces audit gaps. -Explain how Cloud Security Posture Management (CSPM) tools support continuous risk identification, control validation, and audit evidence collection. -Apply practical techniques to modernize cloud audit programs, aligning audit, security, and risk teams around continuous assurance. Speaker: Michael Ratemo, CISA, CRISC, CISM, CDPSE, CISSP, CCSP, GCSA, Principal Security Advisor, Cyber Security Simplified Archived until: 12:00pm CT on 17 February 2027

Members
FREE
Non-members
$75
No image available
Rewriting the Rules: How Gen Z is Shaping the Future of Cybersecurity

Description: Gen Z brings a distinct perspective to cybersecurity—shaped by growing up online, witnessing major breaches firsthand, and entering a workforce transformed by AI. Kyla will draw on her experience founding two international nonprofits, Bits N’ Bytes and GirlCon, captaining the first all-female cyber competition team to win national championships at Stanford, and now leading model cyber safety at Anthropic. She’ll share actionable strategies for emerging professionals looking to accelerate their careers—and for leaders seeking to attract and empower next-generation talent. The talk will explore why cybersecurity is such a high-impact field, how gen-zennials are well-prepared to meet future workforce needs, and why human skills like judgment, communication, and adaptability matter more than ever. Speaker: Kyla Guru, Head of Model Cyber Safety, Anthropic Access until: 12 pm CT on 7 April 2027

Members
FREE
Non-members
$75
No image available
Europe Conference 2026

Join us in Munich 7-9 October for ISACA Europe Conference 2026.

Members
FREE
Non-members
FREE
No image available
Session Recording: Digital Trust Collection

Session Recording: Digital Trust Collection

Members
$230
Non-members
$280
Events
Shop AllEventsA Smarter School of Phish: Why Phishing Still Works in 2025