1. Home
  2. Isaca
  3. CRISC Exam Syllabus

Isaca CRISC Exam Syllabus

Start Free CRISC Exam Practice After Reviewing the Topics

Before starting your CRISC exam preparation, it is recommended to review the complete Isaca Certified in Risk and Information Systems Control exam syllabus and carefully go through the exam objectives listed below. Once you understand the exam structure and objectives, you should practice using our free CRISC questions. We also provide premium CRISC practice test, fully updated according to the latest exam objectives, to help you accurately assess your preparedness for the actual exam.

Isaca CRISC Exam Objectives

Section Weight Objectives
Governance 20%

Risk Governance

  • Risk Monitoring and Reporting
  • Enterprise Risk Management and Risk Management Frameworks
  • Risk Treatment Plans
  • Three Lines of Defense
IT Risk Assessment 20%

Control Design and Implementation

  • Control Identification and Selection
  • Control Testing and Effectiveness Evaluation
Risk Response and Reporting 32%

Risk Monitoring and Reporting

  • Risk Treatment Plans
  • Key Control Indicators (KCIs)
Information Technology and Security 22%

Information Technology Principles

  • System Development Life Cycle (SDLC)

Information Security Principles

  • Data Privacy and Data Protection Principles
Official Information http://www.isaca.org/certification/crisc-certified-in-risk-and-information-systems-control/pages/default.aspx