
Welcome to the ISACA CISM
Dive into a fast, no-fluff overview of what this podcast delivers, who it’s for, and how each episode helps you level up with practical, real-world takeaways. In this trailer, you’ll hear the show’s p...
14 Okt 20251min

Episode 71: Continuous Improvement through Post-Incident Reviews and Risk Reassessment
Mature security programs improve over time. In this final episode, we explain how to lead post-incident reviews, implement lessons learned, and reassess risk in light of new data. This is where govern...
6 Jul 202519min

Episode 70: Supervising Risk Treatment and Continuous Monitoring
Managing risk doesn’t stop with one decision. In this episode, we explore how to supervise treatment activities (mitigation, transfer, acceptance) and establish ongoing monitoring to ensure sustained ...
6 Jul 202518min

Episode 69: Supervising Risk Identification and Assessment
CISM-certified professionals must oversee—not just conduct—risk assessments. This episode covers how to supervise the process, validate results, and ensure assessments align with business priorities. ...
6 Jul 202518min

Episode 68: Managing and Monitoring Security Compliance with External Parties
Vendors, suppliers, and partners all affect your risk posture. This episode explores how to define, enforce, and monitor external security requirements. You’ll learn how to handle audits, compliance f...
6 Jul 202518min

Episode 67: Integrating Security Requirements into Organizational Processes
In this episode, we cover how to embed security into core business workflows—from procurement to development and beyond. You’ll learn how to ensure that security requirements become part of how the or...
6 Jul 202517min

Episode 66: Aligning Security Programs with Operational Business Objectives
Security must support the mission. This episode teaches you how to align your security initiatives with day-to-day business operations, process priorities, and performance expectations. This strategic...
6 Jul 202517min

Episode 65: Evaluating and Reporting Information Security Metrics
Metrics turn performance into visibility. This episode shows you how to define, collect, and report information security metrics that support governance, justify decisions, and improve outcomes. You’l...
6 Jul 202517min



















