ISACA’s 2011 CISM fits into DoD 8570.01-M as satisfying IAM Level II
The exam consists of 5 domains as follows:
Domain 1: Information Security Governance (23% of the exam or 46 questions)
Domain 2: Information Risk Management (22% of the exam or 44 questions)
Domain 3: Information Security Program Development (17% of the exam or 34 questions)
Domain 4: Information Security Program Management (24% of the exam or 48 questions)
Domain 5: Incident Management and Response (14% of the exam or 28 questions)
The exam consists of 200 multiple-choice questions that cover the five CISM job practice areas and is administered over a four-hour period. A scaled score of 450 or higher is required to pass the exam. Approximately eight weeks after the exam date, the official exam results are mailed to candidates. The final June certification exam registration deadline has been extended to April 15, 2011 so you have a couple of days left to sign-up
It’s important as an information security manager to understand the areas, not just to pass the exam, but to provide value to the Information Security Management process.
Kenneth
Incoming search terms:
- cism domains
- blog certified reverse engineering multiple choice samples
- iam cism
- difference between cism 2011 and cism 2012
- difference betweeen cism 2010 and 2011
- cism questions
- cism it
- cism institute
- cism infosec institute
- cism information security introduction









[...] Articles by kennethCISM Domain – Information Risk ManagementThe CISM Domains – An OverviewCISSP Domain – Operations SecurityCISA Domain 5 – Protection of Information AssetsCISA Domain 4 [...]
Outstanding! I have been struggling to find guidance and recommendations on study material for the CISM. All I have found up to this point is a lot of boot camps and they certainly have their place, but I am not planning on passing the exam for the sake of saying I passed it. I intend on becoming a well rounded ITSec Management professional and understand the discipline in depth. this is very much appreciated.
Emric,
You will find that the CISM domains are gearing towards making a security manager more successful in his/her job and thereby contributing “value” to the organization. I’ve taking an approach to each article which highlights the aspects of that section of information security.
Ken
Is there a huge difference between the 2011 CISM exam and the 2012 CISM exam?