| |
Mar 29, 2026
|
|
|
|
|
IT 505 - Governance, Risk & Compliance This course examines the triad of Governance, Risk and Compliance (GRC) as an essential framework for the management of information technology with business. Governance describes the overall management approach through which senior executives direct and control the entire organization. IT Governance is part of overall governance and focused on determining how best to use technology to support business goals. Risk management comprises a set of processes, tools and techniques to assist the organization in identifying and prioritizing its key assets, identifying risks, qualitatively and quantitatively assessing those risks, and determine mitigation strategies. Compliance refers to the responsibility of organizations and their technology departments to comply with internal and external requirements. Topics include governance and risk frameworks, legal and regulatory requirements such as SOX, HIPAA, FERPA, FISMA, NERC, FERC, BASEL II, ISO and PCI.
Credit(s): 3
Outcomes
- Assess and organize the steps an organization must take to develop comprehensive governance, risk, and compliance strategy and policy.
- Explore the key processes, techniques, roles, and responsibilities of establishing an IT Governance structure.
- Examine and evaluate key aspects of compliance management including the identification of compliance requirements, gap analysis, and implementing compliance practices
- Utilize case studies to apply the processes, tools, and techniques reviewed in this course.
- Critique the processes involved to identify, implement, measure, and monitor metrics as part of a governance, risk, and compliance management program
- Evaluate how best practices established by COSO and ITIL can assist in implementing effective governance, risk, and compliance strategy.
Add to Favorites (opens a new window)
|
|