ISACA logo
  • ShopCart
    0
  • Get support
  • Credentialing
  • Membership
  • Enterprise
  • Partnerships
  • Training and Events
  • Resources
Need help?Get support
©2026 ISACA. All rights reserved.
  • Certifications
    • CISA – Certified Information Systems Auditor
    • AAIA – Advanced in AI Audit
    • CISM – Certified Information Security Manager
    • AAISM – Advanced in AI Security Management
    • CRISC – Certified in Risk and Information Systems Control
    • AAIR – Advanced in AI Risk
    • CCOA – Certified Cybersecurity Operations Analyst
    • CGEIT – Certified in the Governance of Enterprise IT
    • CDPSE – Certified Data Privacy Solutions Engineer
    • CCA – CMMC Certified Assessor
    • CCI – CMMC Certified Instructor
    • CCP – CMMC Certified Professional
    • LCCA – Lead CMMC Certified Assessor Designation
    • ITCA
    • CET – Certified in Emerging Technology Certification
    • CSX-P – CSX Cybersecurity Practitioner Certification
  • Certificates
    • AI Fundamentals
    • Blockchain Fundamentals
    • Cloud Fundamentals
    • COBIT 19 Foundation
    • COBIT 2019 Design & Implementation
    • COBIT 5 Certificates
    • Cybersecurity Audit
    • Cybersecurity Fundamentals
    • Data Science Fundamentals
    • Digital Trust Ecosystem Framework Foundation Certificate
    • IoT Fundamentals
    • IT Audit Fundamentals
    • IT Risk Fundamentals
How can we help?
  • Find the right certification
  • Navigate Career Journey
  • Maintain or renew a certification
  • Verify a certification
  • Find the right certification
  • Navigate Career Journey
  • Maintain or renew a certification
  • Verify a certification
Trusted Partner for the DoW's CMMC ProgramISACA now serves as the official CAICO.
  • About Membership
    • Member Benefits
    • Membership Types
    • Browse Chapters
  • Get Involved
    • Advocacy
    • Author an Article
    • Chapter Events Calendar
    • ISACA Awards
    • SheLeadsTech
    • Volunteer
  • Maximize Your Membership
    • Career Center
    • Discounts & Savings
    • Free CPE
    • Free Resources
    • Member Experience Leadership Series
    • Mentorship
  • Engage Online Community
What would you like to do?
  • Join today
  • Earn free CPE
  • Browse chapters
  • Volunteer
  • Join today
  • Earn free CPE
  • Browse chapters
  • Volunteer
Personalize your ExperienceUpdate your ISACA profile today.
  • AI Solution
    • CMMI Artificial Intelligence Maturity (AIM)
  • Performance Improvement Solutions
    • CMMI Performance Solutions
    • CMMI Cybermaturity Assessment Platform
    • Medical Device Program
  • CMMI Appraisal Results
  • Team Training
    • Skills and Credentials
    • CMMI Training and Certification
  • License Enterprise Training
  • Enterprise Support
  • Contact Us
Empower Your Team to Empower Business GrowthCustomize your IT team training with ISACA.
  • Become a Partner
    • Accredited Training Organization
    • CMMI Partner
    • Academic Partner
    • CMMC Approved Training Provider (ATP)
    • Sponsor
    • Global Sponsors
  • Become an Enterprise Practitioner
    • Medical Device Appraiser
    • CMMC Certified Assessor (CCA)
    • CMMC Credentialed Instructor (CCI)
    • CMMI Certified Individual
Need to find a training partner
  • Certification Training Partners
  • COBIT Training Partners
  • Academic & Workforce Partners
  • CMMI Performance Improvement Partners
  • Certification Training Partners
  • COBIT Training Partners
  • Academic & Workforce Partners
  • CMMI Performance Improvement Partners
Over 100,000 People Were Trained By ISACA in 2022Become a Partner to capitalize on this demand.
  • Conferences
    • GRC Conference
    • ISACA Europe Conference
    • ISACA North America Conference
    • ISACA Virtual Conference
    • Student Summit
    • CMMI's Capability Creates
    • Call for Speakers
  • Training Week
  • Virtual Workshops
  • Training by Type
    • Virtual Summits
    • Webinars
    • Online Review Courses
    • Session Recordings
  • Training from an Accredited Partner
  • Training by Topic
    • All Training Topics
    • Artificial Intelligence
    • Cybersecurity
    • IT Audit
    • Certification Exam Preperation
    • Cobit
What would you like to do?
  • Earn CPE
  • Find Team Training
  • Explore Virtual Workshops
  • Find Chapter Events
  • Earn CPE
  • Find Team Training
  • Explore Virtual Workshops
  • Find Chapter Events
Featured Training15% Off AI Fundamentals Online Review Course
  • ISACA Resources
    • Digital Trust
    • ISACA Journal
    • Frameworks, Standards & Models
    • Insights & Expertise
    • ISACA Podcast
    • Videos
    • News & Trends
    • ISACA Now Blog
  • Engage Online Communities
  • COBIT
  • Resources by Topic
    • Artificial Intelligence
    • Cybersecurity
    • Emerging Technology
    • Governance
    • IT Audit
    • IT Risk
    • Privacy
  • Glossary
What can we help you find?
  • ISACA Now Blog
  • White Papers
  • Audit Programs
  • ISACA Now Blog
  • White Papers
  • Audit Programs
ISACA's IT Audit FrameworkThe newest edition is now available.
ISACA logo

1700 E. Golf Road, Suite 400, Schaumburg, Illinois 60173, USA  |  +1-847-660-5505

  • LinkedIn
  • Facebook
  • Instagram
  • YouTube
  • Support
    • Contact Us
    • Fraud Reporting
    • Bug Reporting
  • Careers
    • Career Journey
    • Career Center
    • Careers at ISACA
  • About Us
    • Who We Are
    • Newsroom
    • Participate & Volunteer
    • Leadership & Governance
    • Advocacy
    • ISACA Foundation
    • Code of Professional Ethics
  • Join / Renew
    • Renew
    • Professionals
    • Recent Graduates
    • Students
  • Credentialing
  • Membership
  • Enterprise
  • Partnerships
  • Training & Events
  • Resources
  • Bug Reporting
  • Contact Us
  • Terms
  • Privacy
  • Cookie Notice
  • Fraud Reporting

©2026 ISACA. All rights reserved.

CMMC: Requirements, Roles, and Professional Credentials

CMMC: Requirements, Roles, and Professional Credentials

1 CPE
Access until 12 Mar 2027
Online•English

Description: This webinar offers a focused, practical overview of the Cybersecurity Maturity Model Certification (CMMC)—covering its purpose, target audience, and assessment criteria—then discusses linkages to professional roles and career pathways. Attendees will learn how CMMC is shaping individual standards and expectations, identify the differences between CCP, CCA, CCI, and LCCA designations, eligibility requirements, and receive actionable next steps: recommended training and resources, exam and assessment preparation, and guidance on maintaining credentials to work on DoW-related engagements. After attending this webinar, attendees will be able to: -Define CMMC, its maturity levels and assessment model, and who within DoW-related work is affected. -Explain how CMMC is shaping career paths and professional standards for individuals supporting DoW engagements. -Describe the CCP, CCA, CCI, and LCCA, including the roles they certify, typical eligibility requirements, and certification pathways. -Identify practical next steps: choosing the right designation, recommended training and resources, exam and assessment preparation, and maintaining credentials. Speakers: Todd Gagnon, CAICO Director, ISACA John Flanagan, Senior Product Development Manager, ISACA Archived until: 12:00pm CT on 12 March 2027

No image available

About this Webinar

Description: This webinar offers a focused, practical overview of the Cybersecurity Maturity Model Certification (CMMC)—covering its purpose, target audience, and assessment criteria—then discusses linkages to professional roles and career pathways. Attendees will learn how CMMC is shaping individual standards and expectations, identify the differences between CCP, CCA, CCI, and LCCA designations, eligibility requirements, and receive actionable next steps: recommended training and resources, exam and assessment preparation, and guidance on maintaining credentials to work on DoW-related engagements.


After attending this webinar, attendees will be able to:

-Define CMMC, its maturity levels and assessment model, and who within DoW-related work is affected.

-Explain how CMMC is shaping career paths and professional standards for individuals supporting DoW engagements.

-Describe the CCP, CCA, CCI, and LCCA, including the roles they certify, typical eligibility requirements, and certification pathways.

-Identify practical next steps: choosing the right designation, recommended training and resources, exam and assessment preparation, and maintaining credentials.


Speakers: Todd Gagnon, CAICO Director, ISACA


John Flanagan, Senior Product Development Manager, ISACA


Archived until: 12:00pm CT on 12 March 2027

Product SKU
LMS-W031226
Non-members
FREE
OR
Members
FREE
+ membership fees
  • Earn 70+ FREE CPE credits a year
  • Gain exclusive access to job postings
  • Access the online ISACA Journal
Description: This webinar offers a focused, practical overview of the Cybersecurity Maturity Model Certification (CMMC)—covering its purpose, target audience, and assessment criteria—then discusses linkages to professional roles and career pathways. Attendees will learn how CMMC is shaping individual standards and expectations, identify the differences between CCP, CCA, CCI, and LCCA designations, eligibility requirements, and receive actionable next steps: recommended training and resources, exam and assessment preparation, and guidance on maintaining credentials to work on DoW-related engagements. After attending this webinar, attendees will be able to: -Define CMMC, its maturity levels and assessment model, and who within DoW-related work is affected. -Explain how CMMC is shaping career paths and professional standards for individuals supporting DoW engagements. -Describe the CCP, CCA, CCI, and LCCA, including the roles they certify, typical eligibility requirements, and certification pathways. -Identify practical next steps: choosing the right designation, recommended training and resources, exam and assessment preparation, and maintaining credentials. Speakers: Todd Gagnon, CAICO Director, ISACA John Flanagan, Senior Product Development Manager, ISACA Archive

You might also like

No image available
Cyber, Cloud, Compliance and AI

Description: Our international panel will examine some of the key questions organizations face regarding cybersecurity breaches, cloud computing, compliance, privacy (including GDPR), and AI. How will AI help identify data breach risks? How will cloud issues affect AI? How will AI impact compliance and privacy requirements? After attending this webinar, attendees will able to answer the following questions: -Where does AI contribute to cybersecurity, such as in threat intelligence production and enrichment? Threat intelligence consumption? AI and compliance efforts? Also, where does AI play a role in risk identification, risk mitigation, and breach detection? Cybersecurity is a growing concern, with third-party vendors responsible for 63% of data breaches. What are the main challenges in today’s changing cyber landscape? -How can businesses manage cyber risks posed by third-party vendors? How can AI models be responsibly trained and validated using datasets correctly classified by sensitivity levels—such as Public, Private, Confidential, Secret, and Restricted—and what technical and procedural safeguards ensure that misclassified or mislabeled data does not inadvertently expose sensitive or protected information during processing, storage, or model inference? -When combining data from multiple sources for AI model training, what technical controls, governance frameworks, and validation processes are in place to ensure secure data integration that: Prevents data leakage and unauthorized access, maintains data integrity across systems, Furthermore, does it adhere to regulatory and compliance obligations such as HIPAA, GDPR, FISMA, FedRAMP, CCPA, NYDPA, SOX, GLBA, FERPA, DoD Cybersecurity Maturity Model Certification (CMMC), and other applicable state, federal, and industry-specific standards? How are these mechanisms evaluated and updated as data sources or AI models evolve? -What are the ethical and security concerns of using AI-generated synthetic data instead of real-world data, and how can organizations ensure that fabricated data doesn't inadvertently resemble or expose real individuals' identities? Speakers: Ulf Mattsson, CTO, UlfMattsson.com John C. Checco, DSc. C|CISO, CISSP, CCSK, Board Certified QTE, Chapter President, ISSA NY Metro Ariel Evans, CEO and Co-Founder, RiskQ Inc. Dr. Daniel O’Connell, EdD, MS, CDPSE, ITIL, HDPCA, Principal/Founder & CEO, DocLogical, LLC & Quinnipiac University Claude Baudoin, Co-Chair, Owner and Principal Consultant, OMG Cloud Working Group, cébé IT & Knowledge Management Archived until: 12:00pm CT on 3 March 2027

Members
FREE
Non-members
$75
No image available
Building and Scaling a Modern Enterprise Risk Program

Description: In today’s hyperconnected and highly regulated landscape, security leaders are increasingly expected to own or influence broader enterprise risk management (ERM) capabilities. But what does it actually take to build a modern, scalable risk program from the ground up? This introductory masterclass is designed for CISOs and InfoSec risk professionals looking to deepen their influence across the enterprise. We'll explore the current state of ERM maturity across industries, break down the key drivers that accelerate program growth, and walk through core use cases—from risk identification and treatment to monitoring and reporting. You’ll also learn how to extend your program into adjacent areas like compliance, third-party risk, and business continuity. Through practical frameworks, foundational tools, and real-world examples, you'll leave with actionable strategies to assess where your program stands today—and what it will take to scale it for tomorrow. Speaker: Jaymin Desai, Technical Product Marketing Director, OneTrust Archived until: 12:00PM CT on 7 August 2026

Members
FREE
Non-members
$75
No image available
From Identity Visibility to Governance and Control

Description: Many organizations face an identity crisis—fragmented systems, manual processes, and unchecked privileges that create risk, inefficiency, and audit fatigue. But identity management doesn’t have to be complex or reactive. Join Netwrix expert Kate Fleming to learn how to turn identity chaos into clarity and control. See how automation, attestation, and delegation combine to deliver visibility, consistency, and accountability across every stage of the identity lifecycle. Walk away with practical strategies to simplify access management, strengthen governance, and give your business the agility to move faster and operate with confidence. Speaker: Kate Fleming, Senior Product Manager, Netwrix Access until: 12:00 pm CT on 2 April 2027

Members
FREE
Non-members
$75
No image available
Auditing Artificial Intelligence: Risks, Opportunities, and Leading Practices

Description: IIA members who attend the live day webinar will receive NASBA CPE, released by the IIA within sixty days. IIA members who view the event on-demand can self-claim IIA CPE thru the Member Benefit Library on the IIA Webinars page. Artificial Intelligence (AI) is one of the most disruptive technologies we have experienced; and it is dramatically transforming how organizations operate, offering powerful new capabilities alongside complex risks. As businesses increase their investments in AI, internal auditors and IT auditors alike must be prepared to assess how these technologies are developed, governed, and used. This joint webinar from The IIA and ISACA explores the role of internal audit professionals in evaluating AI-related risks, controls, and ethical considerations—equipping attendees with foundational knowledge and practical insights for auditing in an AI-enabled environment. Learning Objectives: -Gain insights on the impact of AI on the audit profession. -Explore how artificial intelligence is reshaping risk profiles across business functions. -Learn effective strategies and techniques for auditing AI systems, models, and processes. -Identify opportunities for audit functions to provide assurance and advisory value in the age of AI. Speaker: Paul Phillips III, CISA, CISM, CDPSE, MBA, DD, Director of Event Content Development, ISACA Andrew Guasp, CIA, CFE, Senior Manager of Standards & Professional Guidance, The Institute of Internal Auditors, Global Headquarters Archived until: 12:00pm CT on 25 September 2026

Members
FREE
Non-members
FREE
No image available
AI in the Global Landscape: US, EU and Charting IT Governance

Description: The integration of AI into IT governance is crucial for managing the risks, security, and ethical considerations of AI technologies, requiring enhanced practices in risk management, data governance, and compliance. In the U.S., the NIST AI Risk Management Framework provides a structured approach to managing AI risks through governance, control, and continuous evaluation, emphasizing stakeholder involvement. The EU AI Act aims to balance innovation with ethical standards, encouraging organizations to strengthen governance frameworks while impacting both EU and US businesses interacting with the EU market. Learning Objectives: Drill down in IT Governance, Challenges and the Development of new model Introduction of AI Integration in IT Governance NIST AI Risk Management Framework (RMF) – Key principles and a structured approach to managing AI risks. Europe’s Approach to AI Regulation – Creating adaptable frameworks to balance local values and global tech challenges. Implications for US Companies – Compliance requirements for US businesses operating in the EU. The Role of BODs in AI Governance Speaker: Robert Putrus, CISM, PMP, PE IT Security, Compliance, and Program Management, The Roberts Company Robert Putrus, CISM, PMP, PE, is a highly skilled senior management professional with expertise in cyber security, regulatory compliance, cyber audit and risk assessment, information technology, service management, and global transformation programs. He has been instrumental in guiding companies through pre-IPO preparations, mergers, acquisitions, divestitures, and IT turnaround projects. Robert is well-versed in regulatory standards such as CCPA, GDPR, PCI DSS, HIPAA, and others. Known for his successful leadership in diverse technology and business initiatives. He has founded companies, established professional service practices, and contributed significantly to cyber security and IT management publications. Robert holds an MBA and an M.Sc. in Computer Engineering, underscoring his comprehensive academic background and professional achievements. Archived until: 12:00pm CT on 22 July 2026

Members
FREE
Non-members
$75
No image available
Multi-AI Security Challenges: Strategies for Multi-Agent and Multi-MCP Architect

Description: The exponential growth of AI agents and MCP connectors will pose increasing challenges for cybersecurity teams as their dynamic nature can undermine past investments in security controls. Join IANS Faculty Aaron Turner for a look into how innovative cybersecurity teams are working with their AI counterparts to embrace the potential of AI while still managing risks through compensating controls. After this session, attendees will be able to: -Understand how to discover MCP instances in your environment -Design AuthN and AuthZ controls for multi-MCP architectures -Learn about basic security requirements for agent-to-agent and agent-to-MCP workflows that can be shared with developers Speaker: Aaron Turner, Faculty Member, IANS Archived until: 12:00pm CT on 1 January 2027

Members
FREE
Non-members
$75
No image available
Foundations for a Cyber-Resilient Future: Developing the Talent Pipeline...

Description: As cyber threats and digital technologies like artificial intelligence transform the risk landscape, public and private sectors alike face an urgent need to build a workforce equipped with the knowledge, skills, and competencies to defend digital infrastructure and uphold data trust. This CPE-accredited webinar explores the intersections of cybersecurity, IT audit, and AI governance, and the evolving workforce roles required to meet today’s and tomorrow’s industry needs. Attendees will gain insight into the foundational competencies aligned with ISACA’s certification programs, such as CISA, Cybersecurity Fundamentals, IT Audit Fundamentals, and upcoming frameworks focused on AI assurance and digital trust. The panel will explore: -The core domains of knowledge needed to enter cybersecurity and audit roles -How AI and automation are reshaping workforce expectations -Case studies of non-profits and training providers successfully deploying ISACA-aligned content -How workforce development foundations can integrate industry-recognized credentials into training pathways -Available grant programs, instructional resources, and support through ISACA’s global ecosystem This session is ideal for organizations seeking to align their programs with global demand for digital trust professionals. Speakers: Moderator: Jeff Angle, Senior Director, Academic and Workforce Development, ISACA Panelist: Dr. David Tobey, Executive Director, Principal Investigator, National CyberWatch Center Panelist: Jenai Marinkovic, CEO & Chairman of the Board, GRC for Intelligent Ecosystems Foundation (GRCIE) Archived until: 12:00pm CT on 23 September 2026

Members
FREE
Non-members
FREE
No image available
Session Recording: Digital Trust Collection

Session Recording: Digital Trust Collection

Members
$230
Non-members
$280
No image available
Elevate Your Career

Elevate Your Career (Elevate Your Career)

Members
$75
Non-members
$75
No image available
Managing Enterprise Access Risk in a Multi-Application World

Description: Access risk and control models designed for single ERP environments no longer reflect how modern enterprises operate at scale. As organizations expand across procurement, HR, finance, and other line-of-business applications, access governance becomes distributed, business-owned, and increasingly complex. This session examines how enterprise-wide access risk evolves across ERP and critical business systems in real-world operating environments, and why traditional controls such as segregation of duties, user access reviews, and privileged access processes struggle to keep pace. Attendees will gain insight into how access governance must adapt to support modern governance and assurance expectations across the enterprise. Speaker: Susan Stapleton, Vice President, Customer Advisory, GRC Expert Access until: 12:00 pm CT on 16 April 2027

Members
FREE
Non-members
$75
No image available
Get Off the Assessment Treadmill. Take a Data-First, Questionnaire-Second Approa

Description: The work never ends. Every year, we onboard more third parties. And every year, our assessment workload gets worse. More resources to help? Not going to happen. Sound familiar? You’re not alone. We have been at this process for years, but it continues to get worse for your team and the people in your company that rely on your third parties. It doesn't have to be that way. The newest risk exchange models are eliminating 80% of questionnaire requests with data. This webinar will outline how to: -Instantly perform inherent risk analysis on your entire vendor portfolio -Incorporate real-time risk [CM1] data into your process to reduce [CM2] questionnaire requests -Map your questionnaire and controls to industry-standard [CM3] frameworks or threat profiles to get the information you need with fewer questions -Access [CM4] assessment data on large, hard-to-assess third parties that don't respond to you -Monitor 100% of your portfolio -- not just your critical vendors Join this webinar and start your program's evolution. Speaker: Ed Thomas, Senior Vice President, ProcessUnity Archive Until: 12:00pm CT on 24 July 2026

Members
FREE
Non-members
$75
No image available
2026 Virtual Conference

Join us for the 2026 ISACA Virtual Conference. Choose a 19.5 CPE Global Pass for all regions/all days or a 6.5 CPE One-Day Pass for one region/one day.

Members
FREE
Non-members
FREE
No image available
Mastering the Art of Cyberthreat Defense with IAM & SIEM

Description: In today’s hybrid IT world, identity is the new perimeter—and attackers know it. This session explores how converged Identity and Access Management (IAM) and Security Information and Event Management (SIEM) strategies help detect, defend, and recover from modern cyberthreats. Learn practical approaches to identity-first security, threat analytics, and compliance management, using real-world use cases from enterprises adopting Zero Trust and behavior-based threat defense models. Speaker: Ranjith Kumar, Lead - Technical Consultant, ManageEngine Archived until: 12:00PM CT on 14 August 2026

Members
FREE
Non-members
$75
No image available
Beyond Content Inspection: Modern DLP for AI

Description: Content based DLP controls were designed for an era where sensitive data stayed inside files and followed predictable workflows. In today’s AI enabled enterprise, data fragments, recombines, and moves across endpoints, browsers, cloud applications, and generative AI tools, often without clear policy signals. This webinar explains why content inspection alone provides an incomplete view of data risk and how organizations can enhance DLP using contextual intelligence such as data lineage, behavioral analytics, and AI assisted investigations. Attendees will learn how modern approaches improve detection accuracy, reduce false positives, and support compliance, insider risk management, and AI governance. Speaker: Cole Padula, Solutions Engineer, Cyberhaven Access until: 12 pm CT on 5 March 2027

Members
FREE
Non-members
$75
No image available
AI & Enterprise Risk Management

Description: This webinar is ideal for IT leaders and risk management professionals who are eager to revolutionize their enterprise security strategies with cutting-edge AI tools from Cyberhaven, ensuring robust data protection and streamlined compliance processes. Transform your enterprise risk management strategy with AI-powered solutions that enhance data security, automate compliance, and protect sensitive information. Discover how Cyberhaven can help you streamline risk detection and response while ensuring regulatory compliance in an increasingly complex digital landscape. After attending this webinar, attendees will be able to: Unlock AI-Driven Risk Insights Discover hidden risks with advanced AI insights Gain clarity on data movements through AI analysis Learn predictive risk assessment via AI-driven tools Boost Compliance & Data Security Ensure compliance with automated oversight tools Secure sensitive data through automated protection Simplify audits by automating compliance checks Streamline Risk Detection & Response Accelerate threat detection with AI-driven responses Reduce response time with seamless identification Enhance security posture with quick, actionable insights Don't miss out on this exclusive opportunity to gain complementary access to game-changing insights on AI and enterprise risk management—available on your schedule, anytime. Sign up now to stay ahead of the curve and revolutionize your risk management strategy with Cyberhaven's leading experts. Speaker: Dan Walsh, Chief Information Security Officer, Datavant Access until: 12 pm CT on 1 February 2027

Members
FREE
Non-members
$75
No image available
Negotiating Your Seat at the Table

Description: Negotiation isn’t a rare "new job, new salary conversation" moment - it’s something you do constantly, often without noticing. This session will help you become intentional, confident, and effective every time it matters. We’ll dig into the psychology behind negotiation, how to regulate emotions under pressure, and what it takes to stay steady when you hear “no”. You’ll also get a handle on the core tactics: preparing properly, knowing what to ask for, reading timing and body language, and using practice to turn knowledge into instinct. By the end, you won’t just understand negotiation - you’ll feel equipped to do it. Learning Objectives: Appreciating that negotiating is everywhere Key tactics to approach a negotiation Practical techniques to utilize throughout a negotiation Learning to deal with a “no” Speaker: Elisabeth Prager, Founder, The Mad Money Club Access until: 12:00 pm CT on 2 June 2027

Members
FREE
Non-members
$75
No image available
From Risk to Resilience: A Compliance-Driven Patch Strategy

Description: In this session, attendees will explore practical strategies to align IT operations with audit and risk management frameworks. Learn how to automate remediation workflows without sacrificing traceability, reduce audit fatigue with evidence-ready reporting, and avoid costly oversights through real-world examples of patching failures and their consequences. What You’ll Learn: -How patch management maps to key controls in NIST, ISO 27001, CIS, and COBIT frameworks -Practical steps to align IT operations with audit and risk oversight -Best practices for automating remediation workflows while maintaining traceability and compliance -How to reduce audit fatigue with evidence-ready reporting for patching activities -Real-world examples of how missed patches led to audit findings or security incidents—and how to avoid them Speaker: Gene Moody, Field CTO, Action1 Archived until: 12:00PM CT on 4 September 2026

Members
FREE
Non-members
$75
Events
Shop AllEventsCMMC: Requirements, Roles, and Professional Credentials