
Episode 16: Strategic Planning Essentials – Budgets, Resources, and the Business Case
Security managers must think like business leaders. This episode focuses on how to plan strategically: building security budgets, aligning resources with business priorities, and creating business cas...
6 Heinä 202518min

Episode 15: Deep Dive into NIST Cybersecurity Framework (CSF)
The NIST CSF is another framework CISM candidates must understand. In this episode, we explain the five core functions—Identify, Protect, Detect, Respond, Recover—and how to apply them to build organi...
6 Heinä 202515min

Episode 14: Deep Dive into ISO 27001 and ISO 27002
ISO 27001 and ISO 27002 show up frequently on the CISM exam. This episode covers their purpose, structure, and use in implementing and managing an Information Security Management System (ISMS). You’ll...
6 Heinä 202517min

Episode 13: Deep Dive into COBIT Framework
COBIT is more than just a buzzword—it’s a cornerstone of enterprise governance. In this episode, we explore COBIT’s structure, goals cascade, governance vs. management domains, and how to use COBIT to...
6 Heinä 202517min

Episode 12: Overview of Major Governance Frameworks (COBIT, ISO, NIST)
Expect questions about governance frameworks on the CISM exam. This episode introduces COBIT, ISO 27001/27002, and the NIST Cybersecurity Framework. We explain how each one supports strategy, policy, ...
6 Heinä 202517min

Episode 11: Developing an Effective Information Security Strategy
CISM Domain 1 emphasizes the creation of business-aligned security strategies. In this episode, we walk through the core elements of an effective security strategy—from risk tolerance to strategic obj...
6 Heinä 202516min

Episode 10: Organizational Structures, Roles, and Responsibilities in Security Governance
CISM candidates must know how security fits into the broader enterprise structure. This episode covers how roles, responsibilities, and reporting lines are assigned, documented, and monitored. We exam...
6 Heinä 202516min

Episode 9: Contractual Requirements and Security Agreements
Security responsibilities often extend to third-party contracts. In this episode, we explain how SLAs, NDAs, MOUs, and security addendums play a role in governance and risk. You’ll learn how to identi...
6 Heinä 202515min



















