1. Home
  2. IIBA
  3. IIBA-CCA CCA Exam Syllabus

IIBA-CCA Exam Syllabus

Start Free IIBA-CCA Exam Practice After Reviewing the Topics

Before starting your IIBA-CCA exam preparation, it is recommended to review the complete IIBA Certificate in Cybersecurity Analysis exam syllabus and carefully go through the exam objectives listed below. Once you understand the exam structure and objectives, you should practice using our free IIBA-CCA questions. We also provide premium IIBA-CCA practice test, fully updated according to the latest exam objectives, to help you accurately assess your preparedness for the actual exam.

IIBA-CCA Exam Objectives

Section Weight Objectives
Business Analysis Planning and Monitoring 12%
  • Covers how business analysts plan and oversee all BA activities within a cybersecurity context, including selecting appropriate approaches and methods.
  • Addresses stakeholder engagement planning to ensure the right people are involved at the right time during security analysis efforts.
  • Includes monitoring and reporting on BA performance to ensure tasks are completed effectively and aligned with organizational goals.
Elicitation and Collaboration 20%
  • Focuses on techniques used to draw out information from stakeholders regarding cybersecurity needs, risks, and requirements.
  • Covers collaboration practices that ensure continuous communication and cooperation among stakeholders throughout the analysis process.
  • Addresses confirming and documenting elicited information to ensure accuracy and shared understanding of security-related needs.
Requirements Life Cycle Management 18%
  • Covers tracing, maintaining, and managing cybersecurity requirements from inception through implementation and beyond.
  • Addresses how to prioritize requirements and manage changes to ensure they remain aligned with security objectives.
  • Includes assessing the impact of requirement changes and ensuring all stakeholders approve and understand modifications.
Strategy Analysis 12%
  • Focuses on understanding the current security landscape and defining the future state an organization needs to achieve.
  • Covers risk assessment and gap analysis to identify vulnerabilities and opportunities within the existing security environment.
  • Addresses defining and validating the change strategy needed to move from the current to the desired security posture.
Requirements Analysis and Design Definition 32%
  • Covers specifying, modeling, and structuring cybersecurity requirements in a way that is clear, complete, and actionable.
  • Addresses verifying and validating requirements to ensure they accurately reflect stakeholder needs and can be implemented effectively.
  • Includes defining design options and analyzing how well proposed solutions meet the identified cybersecurity requirements.
Solution Evaluation 6%
  • Focuses on assessing the performance of implemented cybersecurity solutions to determine how well they meet business needs.
  • Covers identifying limitations or risks within a deployed solution that may hinder its effectiveness or create new vulnerabilities.
  • Addresses recommending actions to improve or optimize solutions, ensuring ongoing alignment with evolving security and business objectives.
Official Information https://www.iiba.org/business-analysis-certifications/certificate-in-cybersecurity-analysis/