|
I´º
°ê»Ú¹q¸£½]®Ö¨ó·|ISACA©ó2010¦~±À¥X·sªº¡u°ê»Ú¸ê°T·ÀI±±¨î®v»{ÃÒ¡vÃÒ·Ó(Certified in Risk and Information Systems ControlTM, CRISCTM)¡AISACA¨Ì¾Ú¨ä¯S¦³¤§ª¾ÃѰ]²£¡B¿W¥ßªº¥«³õ¬ã¨s¤Î¥@¬É¦U¦a¸Ó»â°ì¤§±M®a§ë¤Jµo®iCRISCÃÒ·Ó¡ACRISC«Y¯S§O¬°¨º¨Ç§Q¥Îµo®i¡B¹ê¬I¤ÎºûÅ@¸ê°T¨t²Î±±¨î¨Ó¿ëÃѨú޲z·ÀI¤§¸ê°T¬ì§Þ±M·~¤H¤h¦Ó³]p¡C
¦ó¿×CRISC?
²{¤µ¥ø·~¡A¡u·ÀI(risk)¡v§êºtÃöÁ䨤¦â¡A´X¥G¨CÓ·~°È¨M©w³£»ÝnIT»P¥ø·~±M·~¤Hû¥H¥¿Å·ÀI»P³ø¹S¡C¦³®ÄºÞ²z¥ø·~·ÀI¬O¥ø·~¦¨¥\¤£¥i©Î¯Êªº¡C
CRISC»{ÃÒ«Y¬°¤U¦C±M·~¤H¤h¦Ó³]p¡G
¢wIT±M¤Hû
¢w·ÀI±M·~¤Hû
¢w·~°È¤ÀªR¤Hû
¢w±M®×¸g²z
¢wªk¥O¿í´`¤Hû
¢w¥ø·~¸gÀç¤Hû
CRISC«ÂI»â°ì
CRISC»{ÃÒµÛ«©ó¤U¦C¤Ó»â°ì¡G
¢w·ÀI¿ëÃÑ¡B¦ôp©Mµû¦ô(Risk identification, assessment and evaluation)
¢w·ÀI¦^À³(Risk response)
¢w·ÀIºÊ±±(Risk monitoring)
¢w¸ê°T¨t²Î±±¨î³]p»P¹ê¬I(IS control design and implementation)
¢w¸ê°T¨t²Î±±¨îºÊ±±»PºûÅ@(IS control monitoring and maintenance)
CRISC»{ÃÒn¨D
¬°¤F¨ú±oCRISC»{ÃÒ¡A¥Ó½ÐªÌ¥²¶·¡G
¢wÃÒ©ú¦Ü¤Ö5¦~ªºIT©Î¥ø·~¸gÀç¸gÅç
¢wÃÒ©ú¦Ü¤Ö3¦~ªºCRISC«ÂI»â°ì¸gÅç
¢w³q¹L CRISC¦Ò¸Õ
¢w¿í¦uISACAªºÂ¾·~¹D¼w¦u«h
¢w¦P·N¿í¦uCRISC«ùÄò¶i׬Fµ¦
²Ä¤@¦¸CRISC¦Ò¸Õ±N¦b2011¦~¤U¥b¦~Á|¦æ¡C
¨ã¦³8¦~¥H¤W¬ÛÃö¸gÅ礧±M·~¤Hû©ó¤µ¦~4¤ë¥i¥H¥H¡u¯ª¤÷±ø´Ú¡]grandfathering¡^¡vÁŧK¦Ò¸Õ¦Óª½±µ¥Ó½ÐCRISC±M·~»{ÃÒ¡A¡u¯ª¤÷±ø´Ú¡]grandfathering¡^¡v¤§¥Ó½Ð´Á±N¶}©ñ¤@¦~¡C¦p±ý¤F¸Ñ§ó¦h¦³ÃöCRISC±M·~¸ê®æªº¸ê®Æ¡A½ÐÂsÄý www.isaca.org/crisc¡C
CRISC»P¨ä¥LISACA±M·~»{ÃÒ¤§¬Û¤¬Ãö«Y
CRISC»P°ê»Ú¹q¸£½]®Ö¨ó·|¥t¥~¤TÓ±M·~»{ÃÒ¬Û»²¬Û¦¨¡C
- CRISC«Y¬°°Ñ»PÀç¹B¼h±³B²z·ÀIªº±M¤~´£¨Ñ±M·~»{ÃÒ¡FCGEIT¦®¦b¬°¾á¥ô¸ê°Tªv²z¤Î·ÀIºÞ²z¤§«nºÞ²z¡B¿Ô¸ß¤Î½T«O¨¤¦â¤§¸ê°T¬ì§Þ±M¤~´£¨Ñ±M·~»{ÃÒ¡C
„X - CRISC¬O¬°»Ýn³]p¡B¹ê¬I¤ÎºûÅ@¸ê°T¨t²Î±±¨îªº¸ê°T¬ì§Þ¤Î¥ø·~±M¤~¦Ó³]¡F¦ÓCISA¬°°õ¦æ±±¨î³]p¤ÎÀç¹B®ÄªG¿W¥ßÂЮ֪º¸ê°T¬ì§Þ±M¤~¦Ó³]p¡C
„X - ¼W¶i®ø¶OªÌ©M¤½²³¹ï¥»»{ÃÒ©M«ùÃҪ̪º«H¤ß
„X - CRISC±M·~»{ÃÒ«Y¬°¤u§@¥ç¥]¬A¨ì¦w¥þ¡BÀç¹B¤Îªk¥O¿í´`ªº¸ê°T¬ì§Þ±M¤~¦Ó³]¡F¦ÓCISM¦®¦b¬°ºÞ²z¡B³]p¡BºÊ±±¤Î/©Îµû¦ô¥ø·~¸ê°T¦w¥þªº¤H¤~´£¨Ñ±M·~»{ÃÒ¡A¸ê°T¦w¥þ¥]¬A¿ëÃѤκ޲z¸ê°T¦w¥þªº·ÀI¡C
¯ª¤÷±ø´Ú(Grandfathering )
¥Ó½Ð»Ý²Å¦X¤U¦C¸ê®æ:
¦Ü¤Ö8¦~¸ê°T©Î¥ø·~¸gÅç¡A¨ä¤¤»Ý¦³CRISC©Ò¦³5ÓDomain©Ò¦C²Ö¿n¸gÅç¦Ü¤Ö6¦~¤ÎCRISC Domain 1,2,3©Ò¦C¤u§@¸gÅç¦Ü¤Ö3¦~¡C¤£¥i¥H¶È¦³¨ä¤¤¤@¶µ¡C
¥Ó½Ð®É¶¡¡G2010/04~2011/06
¥Ó½Ð¬yµ{¡G
- ¥ý¦ÜISACAÁ`·|¥Ó½ÐID number(www.isaca.org/profile)
„X - ú¥æ¶O¥Î
„X - ¶ñ¼gCIRSC¥Ó½Ðªí
¥Ó½Ð¶O¥Î:
- 2010/10/31¡G¥ý´Á¥Ó½ÐºI¤î¤é¡@¡@ISACA·|û: US$495 ¡@«DISACA·|û: US$625
„X - 2011/06/30¡G³Ì«á¥Ó½ÐºI¤î¤é¡@¡@ISACA·|û: US$595 ¡@«DISACA·|û: US$725
|