CISA β Certified Information Systems Auditor Study Guide
Keep adding new skills with 10,000+ programs for $239 (usually $399). Save now.
CISA β Certified Information Systems Auditor Study Guide
Included with
Learn more
Ask Coursera
Recommended experience
Recommended experience
What you'll learn
Learn to conduct thorough audit planning and execution for information systems.
Understand IT governance, management, and their critical role in auditing.
Gain skills in securing and controlling information systems and networks.
Master the knowledge required for implementing business resilience strategies and addressing emerging technologies.
Skills you'll gain
- Security Awareness
- Information Systems Security
- Compliance Auditing
- Information Systems
- Disaster Recovery
- Computer Security Incident Management
- Security Controls
- Network Security
- Information Technology
- Business Continuity Planning
- Business Continuity
- Systems Development
- Asset Protection
- Audit Planning
- Security Management
- Cryptography
- Auditing
- IT Management
Tools you'll learn
Details to know
April 2026
12 assignments
See how employees at top companies are mastering in-demand skills
There are 12 modules in this course
This course provides a thorough guide to mastering IT auditing skills, preparing you for the CISA exam. The course covers key areas such as governance, systems development, and asset protection, essential for a successful career in information systems auditing.
You'll learn how to conduct audits according to global standards, improve IT processes and controls, and use data analytics to enhance audit effectiveness. This will help you gain the skills necessary for acing the CISA exam. What sets this course apart is its balance of theory and practical insights. It not only helps you understand key concepts but also empowers you to apply them in real-world auditing scenarios. This course is designed for IT auditors, security analysts, and risk managers, especially those from non-technical backgrounds who are aiming to advance in IT audit, governance, and security management. Based on the book CISA β Certified Information Systems Auditor Study Guide, by Hemang Doshi.
In this section, we delve into the intricacies of information system (IS) audit planning, emphasizing its role in IT governance and alignment with business objectives. We explore strategies for designing risk-based audit plans to identify IT vulnerabilities, ensuring that audit functions support business goals and enhance IT system security and compliance.
What's included
2 videos10 readings1 assignment
2 videosβ’Total 2 minutes
- Course Overview Videoβ’1 minute
- Audit Planning - Overview Videoβ’1 minute
10 readingsβ’Total 140 minutes
- Introductionβ’15 minutes
- Audit Planningβ’10 minutes
- Business Process Applications And Controlsβ’10 minutes
- Electronic Data Interchange (EDI)β’15 minutes
- Electronic Funds Transfer (EFT)β’15 minutes
- Types of Controlsβ’15 minutes
- Control Objectivesβ’15 minutes
- Risk-Based Auditing Approachβ’15 minutes
- Types of Audits and Assessmentsβ’15 minutes
- Managing Third-Party IS Auditors and Other Expertsβ’15 minutes
1 assignmentβ’Total 10 minutes
- Foundations of IS Audit Planningβ’10 minutes
In this section, we delve into the execution of audit plans, emphasizing the importance of audit project management, evidence collection, and data analytics. We explore techniques for managing audit projects efficiently, developing robust evidence-gathering methods, and leveraging data analytics to enhance audit processes, all crucial for maintaining audit integrity and protecting organizational assets.
What's included
1 video8 readings1 assignment
1 videoβ’Total 1 minute
- Audit Execution - Overview Videoβ’1 minute
8 readingsβ’Total 120 minutes
- Introductionβ’15 minutes
- Audit Testing and Sampling Methodologyβ’15 minutes
- The Relationship Between Compliance Testing and Substantive Testingβ’15 minutes
- Key Aspects for the CISA Examβ’15 minutes
- Continuous and Intermittent Simulationβ’15 minutes
- Key Aspects for the CISA Examβ’15 minutes
- Quality Assurance Of Audit Processesβ’15 minutes
- Accreditation/Certification of the IS Audit Functionβ’15 minutes
1 assignmentβ’Total 10 minutes
- Audit Execution and Methodologiesβ’10 minutes
In this section, we explore the implementation of Enterprise Governance of IT (EGIT) to align IT with business objectives, focusing on maximizing value and managing risks. We also discuss designing IT governance frameworks for effective risk management and analyzing enterprise architecture to provide strategic support, which are crucial for IS auditors in ensuring organizational success.
What's included
1 video5 readings1 assignment
1 videoβ’Total 1 minute
- IT Governance - Overview Videoβ’1 minute
5 readingsβ’Total 75 minutes
- Introductionβ’15 minutes
- IT-Related Frameworksβ’15 minutes
- Key Aspects for the CISA Examβ’15 minutes
- Enterprise Architectureβ’15 minutes
- Maturity Modelβ’15 minutes
1 assignmentβ’Total 10 minutes
- IT Governance Principles and Practicesβ’10 minutes
In this section, we explore IT management strategies to align IT assets with business goals, focusing on resource management, performance metrics, and third-party risk analysis. We aim to optimize IT performance and ensure quality service delivery through effective monitoring and reporting techniques.
What's included
1 video2 readings1 assignment
1 videoβ’Total 1 minute
- It Management - Overview Videoβ’1 minute
2 readingsβ’Total 30 minutes
- Introductionβ’15 minutes
- IT Service Provider Acquisition and Managementβ’15 minutes
1 assignmentβ’Total 10 minutes
- IT Management Practices and Strategiesβ’10 minutes
In this section, we delve into the processes of acquiring and developing information systems, emphasizing project management structures, business case design, and feasibility analysis. We also explore various system development methodologies and control mechanisms to ensure effective implementation and risk mitigation.
What's included
1 video4 readings1 assignment
1 videoβ’Total 1 minute
- Information Systems Acquisition and Development - Overview Videoβ’1 minute
4 readingsβ’Total 60 minutes
- Introductionβ’15 minutes
- Gantt Chartβ’15 minutes
- Business Case And Feasibility Analysisβ’15 minutes
- Key Aspects for the CISA Examβ’15 minutes
1 assignmentβ’Total 10 minutes
- Information Systems Acquisition and Developmentβ’10 minutes
In this section, we delve into the implementation of information systems, emphasizing the importance of testing methodologies and system migration strategies to mitigate risks and ensure successful operations. We also explore post-implementation reviews to evaluate system effectiveness, providing essential insights for information systems auditors.
What's included
1 video3 readings1 assignment
1 videoβ’Total 1 minute
- Information Systems Implementation - Overview Videoβ’1 minute
3 readingsβ’Total 45 minutes
- Introductionβ’15 minutes
- Black-Box Testingβ’15 minutes
- System Migrationβ’15 minutes
1 assignmentβ’Total 10 minutes
- Information Systems Implementationβ’10 minutes
In this section, we delve into the critical aspects of information systems operations, emphasizing the importance of aligning IT processes with business objectives to enhance efficiency and service delivery. We explore key topics such as IT asset management, job scheduling, and system performance management, providing insights into optimizing resource utilization and minimizing downtime for continuous service delivery.
What's included
1 video8 readings1 assignment
1 videoβ’Total 1 minute
- Information Systems Operations - Overview Videoβ’1 minute
8 readingsβ’Total 110 minutes
- Introductionβ’15 minutes
- IT Asset Managementβ’15 minutes
- Job Schedulingβ’15 minutes
- Problem and Incident Managementβ’10 minutes
- Change Management, Configuration Management, and Patch Managementβ’10 minutes
- IT Service-Level Managementβ’15 minutes
- Database Checks and Controlsβ’15 minutes
- Operational Log Managementβ’15 minutes
1 assignmentβ’Total 10 minutes
- Core Concepts of Information System Operationsβ’10 minutes
In this section, we delve into the critical aspects of business resilience, focusing on developing strategies such as Business Continuity Plans (BCP) and Disaster Recovery Plans (DRP) to ensure ongoing operations during disruptions. We also analyze Recovery Time Objective (RTO) and Recovery Point Objective (RPO) to optimize recovery strategies, highlighting the importance of these measures in preventing costly downtimes and ensuring swift recovery from unforeseen events.
What's included
1 video6 readings1 assignment
1 videoβ’Total 1 minute
- Business Resilience - Overview Videoβ’1 minute
6 readingsβ’Total 90 minutes
- Introductionβ’15 minutes
- Data Backup and Restorationβ’15 minutes
- System Resiliencyβ’15 minutes
- Disaster Recovery Planβ’15 minutes
- DRP Test Methodsβ’15 minutes
- Alternate Recovery Sitesβ’15 minutes
1 assignmentβ’Total 10 minutes
- Business Continuity and Resilience Strategiesβ’10 minutes
In this section, we explore the implementation of security frameworks for information assets, focusing on designing physical and environmental access controls and analyzing identity and access management strategies. These practices are crucial for protecting sensitive data, ensuring business continuity, and preventing financial and reputational damage.
What's included
1 video6 readings1 assignment
1 videoβ’Total 1 minute
- Information Asset Security and Control - Overview Videoβ’1 minute
6 readingsβ’Total 90 minutes
- Introductionβ’15 minutes
- Physical Access Controlβ’15 minutes
- Industrial Control Systemsβ’15 minutes
- Authentication Factorsβ’15 minutes
- Directory Servicesβ’15 minutes
- Key Aspects for the CISA Examβ’15 minutes
1 assignmentβ’Total 10 minutes
- Information Asset Security and Controlβ’10 minutes
In this section, we explore the critical aspects of network security, focusing on implementing various firewall types and understanding their roles within the OSI layers. We also design secure VPNs, assess their security risks, and analyze VoIP security measures and common attack methods to ensure data integrity and availability.
What's included
1 video7 readings1 assignment
1 videoβ’Total 1 minute
- Network Security and Control - Overview Videoβ’1 minute
7 readingsβ’Total 105 minutes
- Introductionβ’15 minutes
- Fiber Optic Cablesβ’15 minutes
- Network Attached Storage (NAS)β’15 minutes
- Firewall Types and Implementationβ’15 minutes
- Key Aspects for the CISA Examβ’15 minutes
- Wireless Networksβ’15 minutes
- Email Securityβ’15 minutes
1 assignmentβ’Total 10 minutes
- Network Security and Controlβ’10 minutes
In this section, we explore the implementation of public key infrastructure (PKI) to enhance information asset security and analyze cloud computing models for secure deployment. We also evaluate security measures for the Internet of Things (IoT) to ensure effective data protection, providing IS auditors with the necessary knowledge to assess and implement robust security systems.
What's included
1 video5 readings1 assignment
1 videoβ’Total 1 minute
- Public Key Cryptography and Other Emerging Technologies - Overview Videoβ’1 minute
5 readingsβ’Total 75 minutes
- Introductionβ’15 minutes
- The Hash of the Messageβ’15 minutes
- Key Aspects from the CISA Exam Perspectiveβ’15 minutes
- Cloud Computingβ’15 minutes
- Virtualizationβ’15 minutes
1 assignmentβ’Total 10 minutes
- Exploring Cryptographic Technologiesβ’10 minutes
In this section, we explore security event management by implementing security awareness training, analyzing attack methods, and designing incident response plans to protect information systems effectively. We focus on identifying risks and applying strategic security measures to safeguard organizational data and operations.
What's included
1 video4 readings1 assignment
1 videoβ’Total 1 minute
- Security Event Management - Overview Videoβ’1 minute
4 readingsβ’Total 60 minutes
- Introductionβ’15 minutes
- Key Aspects for the CISA Examβ’15 minutes
- Double-Blind Testingβ’15 minutes
- Incident Response Managementβ’15 minutes
1 assignmentβ’Total 10 minutes
- Security Event Management and Intrusion Detectionβ’10 minutes
Instructor
Offered by
Explore more from Software Development
- Status: Free Trial
Course
- Status: Free Trial
Course
- Status: Free Trial
Specialization
- Status: Free Trial
Course
Why people choose Coursera for their career
Frequently asked questions
Yes, you can preview the first video and view the syllabus before you enroll. You must purchase the course to access content not included in the preview.
If you decide to enroll in the course before the session start date, you will have access to all of the lecture videos and readings for the course. Youβll be able to submit assignments once the session starts.
Once you enroll and your session begins, you will have access to all videos and other resources, including reading items and the course discussion forum. Youβll be able to view and submit practice assessments, and complete required graded assignments to earn a grade and a Course Certificate.
More questions
Financial aid available,
