Certified Information Security Manager
Develop your IT leaders' ability to manage and govern enterprise information security. CISM focuses on security risk management, program development, and incident management — critical capabilities for protecting your organization.






Get your team CISM Certified in 1 week.
with Intellectual Point
Certification guarantee or full refund*
Bridge technical teams with executive leadership
Real-world governance case studies
Flexible scheduling for working professionals

A Rapid Growth Industry & In High-Demand
Your security managers will bridge the gap between technical teams and executive leadership. CISM training at Intellectual Point equips employees with governance, risk management, and program development skills that directly strengthen your organization's security posture.
Train your team anytime, anywhere
Flexible scheduling that fits around your employees' workload. No disruption to operations.
Enterprise volume licensing available
The ISACA Certified Information Security Manager (CISM) course is designed for professionals who are responsible for governing, designing, overseeing, and assessing an enterprise information security program. This 5-day, 40-hour course prepares learners for the current CISM exam and focuses on management-level security decision-making rather than purely technical implementation.
The course is aligned to ISACA's four current CISM job practice domains: Information Security Governance, Information Security Risk Management, Information Security Program, and Incident Management. Across the week, participants learn how to align security strategy to business objectives, manage risk in a structured way, build and oversee a security program, and lead incident readiness and response activities.
Because CISM is a management-oriented certification, the course emphasizes governance, communication, prioritization, policy, metrics, risk response, third-party oversight, and executive reporting.
There are no formal prerequisites to attend this course or to register for the CISM exam. The exam itself is open to anyone with an interest in information security. However, CISM is intended for professionals who already have exposure to information security, governance, risk, audit, compliance, IT management, or incident response. To earn the CISM certification after passing the exam, ISACA requires professional information security management work experience.
Course Overview
The ISACA Certified Information Security Manager (CISM) course is designed for professionals who are responsible for governing, designing, overseeing, and assessing an enterprise information security program. This 5-day, 40-hour course prepares learners for the current CISM exam and focuses on management-level security decision-making rather than purely technical implementation.
The course is aligned to ISACA's four current CISM job practice domains: Information Security Governance, Information Security Risk Management, Information Security Program, and Incident Management. Across the week, participants learn how to align security strategy to business objectives, manage risk in a structured way, build and oversee a security program, and lead incident readiness and response activities.
Because CISM is a management-oriented certification, the course emphasizes governance, communication, prioritization, policy, metrics, risk response, third-party oversight, and executive reporting.
Training Pre-requisites
There are no formal prerequisites to attend this course or to register for the CISM exam. The exam itself is open to anyone with an interest in information security. However, CISM is intended for professionals who already have exposure to information security, governance, risk, audit, compliance, IT management, or incident response. To earn the CISM certification after passing the exam, ISACA requires professional information security management work experience.

Why Intellectual Point?
Every detail of your training experience is designed to maximize certification success and real-world readiness.
All backed by our enterprise-grade support team and Exam Pass Guarantee
Our Facilities
Take a look inside Intellectual Point's state-of-the-art training and testing facilities.
Course
Curriculum
Updated regularly in accordance with job market research and employer interviews
The CISM exam consists of 150 multiple-choice questions with a 4-hour time limit. ISACA reports scores on a 200 to 800 scale, with 450 or higher required to pass. The four domain weights are: Information Security Governance (17%), Information Security Risk Management (20%), Information Security Program (33%), and Incident Management (30%). ISACA allows four attempts within a rolling 12-month period with increasing wait times.
Enterprise governance, organizational culture, legal/regulatory/contractual requirements, and security roles and responsibilities. Development of an information security strategy aligned to business goals, governance frameworks, standards, budgets, resources, and business cases. Communicating governance expectations to stakeholders and integrating security governance into corporate governance processes.
Emerging threat and risk landscape, vulnerability and control deficiency analysis, and practical risk assessment methods. Risk treatment and response options, assignment of ownership, monitoring, escalation, and reporting. Using risk information to support management decisions, prioritization, and investment planning.
Building and maintaining the security program: people, tools, technologies, asset identification and classification. Use of industry standards and frameworks for program design and alignment. Security policies, procedures, guidelines, and program metrics. Designing controls that support business requirements and measurable security outcomes.
Control implementation and integration, control testing and evaluation, awareness and training, third-party and external service management, and executive reporting. Incident readiness: incident response plan, business impact analysis, business continuity planning, disaster recovery planning, classification, training, testing, and exercises. Incident operations: tools and techniques, investigation, evaluation, containment, communications, eradication, recovery, and post-incident review.
Cross-domain case studies that require governance, risk, program, and incident-management judgment. Review of the most testable management concepts, leadership-oriented question framing, and best answer exam strategy. Timed practice, knowledge-gap identification, and final revision planning. Guidance for scheduling the exam, preparing documentation, and planning the certification path.
Upskill your team in security management
Enroll Your Team
Select courses, assign seats, and onboard your employees in minutes through our enterprise dashboard.
Live Instructor-Led Training
Your team trains with industry veterans through live sessions, hands-on labs, and real-world simulations.
Certified & Deployment-Ready
Employees earn industry certifications and return to work with skills they can apply immediately.
Enroll Your Team
Select courses, assign seats, and onboard your employees in minutes through our enterprise dashboard.
Live Instructor-Led Training
Your team trains with industry veterans through live sessions, hands-on labs, and real-world simulations.
Certified & Deployment-Ready
Employees earn industry certifications and return to work with skills they can apply immediately.
A Complete Skillset
The technical skills your team will gain provide a comprehensive foundation of expertise and proficiency across the field.
Plus dedicated support for your organization from our enterprise services team
Certificate of Completion
A recognized certification for your employees to validate their training, demonstrate competence, and strengthen your organization's credentials.

A Complete Workforce Development Ecosystem
Give your workforce access to industry-recognized courses, certification prep, and hands-on labs across cybersecurity, cloud computing, AI, and IT infrastructure.
Continuous technical training for modern teams

AI powered studying material for teams

Scalable training solutions for organizations

“Intellectual Point delivers practical, high-quality training that prepares professionals to earn industry certifications.”
NVIDIA
Government & Public Sector
Enterprise Organizations
Ready to Upskill Your Teams?
Explore enterprise training solutions.
TESTIMONIALS
What Our Students Say About
Intellectual Point
“I went in to Intellectual Point not knowing what to expect when studying for the Security+ Certification. The instructor I had was very good in breaking the concepts. He was also very helpful during the multiple review sessions prior to exam. The Simulations, and the sample exam questions definitely prepared me thoroughly for the exam. It was a big time commitment but well worth it in the end.”
“I had no IT experience and with 4 weeks I felt prepared to take the SEC + exam. Prem and Stephen are both very patient and explain the material in a way that keeps your attention. There are a lot of resources made available to help you.”
“I had an incredible experience at Intellectual Point. The instructors there are true experts in their field, and I owe my success in acing my SEC+ exam to their excellent guidance and teaching.”
“I've recently completed the Cyber Warrior Pathway, includes Comptia Sec+, CEH and CISSP courses at Intellectual Point, and I couldn't be happier with the experience. Not only did I achieve a 100% pass rate on both exams on my first attempt, the instructors were truly exceptional.”
“I went in to Intellectual Point not knowing what to expect when studying for the Security+ Certification. The instructor I had was very good in breaking the concepts. The Simulations, and the sample exam questions definitely prepared me thoroughly for the exam.”
“I went in to Intellectual Point not knowing what to expect when studying for the Security+ Certification. The instructor I had was very good in breaking the concepts. He was also very helpful during the multiple review sessions prior to exam. The Simulations, and the sample exam questions definitely prepared me thoroughly for the exam. It was a big time commitment but well worth it in the end.”
“I had no IT experience and with 4 weeks I felt prepared to take the SEC + exam. Prem and Stephen are both very patient and explain the material in a way that keeps your attention. There are a lot of resources made available to help you.”
“I had an incredible experience at Intellectual Point. The instructors there are true experts in their field, and I owe my success in acing my SEC+ exam to their excellent guidance and teaching.”
“I've recently completed the Cyber Warrior Pathway, includes Comptia Sec+, CEH and CISSP courses at Intellectual Point, and I couldn't be happier with the experience. Not only did I achieve a 100% pass rate on both exams on my first attempt, the instructors were truly exceptional.”
“I went in to Intellectual Point not knowing what to expect when studying for the Security+ Certification. The instructor I had was very good in breaking the concepts. The Simulations, and the sample exam questions definitely prepared me thoroughly for the exam.”
FAQ
Frequently Asked Questions
Yes. This course includes a CISM exam voucher as part of the training package offered by Intellectual Point.
This course is designed to align to the current official ISACA CISM exam content outline and certification requirements. It is an exam-preparation course for the CISM credential.
No. You may take the exam before meeting the experience requirement. However, ISACA requires qualifying work experience before it will grant the CISM certification.
CISM is designed for professionals involved in information security governance, risk management, security program oversight, and incident management at a management or leadership level.
ISACA administers CISM as a computer-based exam through PSI. Candidates may test at authorized PSI exam centers or use online remote proctoring where available.
This Intellectual Point course is delivered in English. ISACA offers the CISM exam in multiple languages, including English.
CISM is management-focused. It emphasizes governance, risk, program management, policy, metrics, stakeholder communication, and incident leadership rather than deep hands-on configuration or engineering.
Professionals who want to validate leadership-level security management capability often use CISM to complement broader technical or audit-focused certifications.
UPSKILL YOUR WORKSPACE
Invest in Your Most Valuable Asset: Your People
Empower your teams with industry-recognized training in cybersecurity, cloud, AI, and IT. Discover enterprise training solutions designed to help your organization
Related Courses
ISACA CISA
Build expertise in IT audit, compliance, and governance to protect organizational integrity.
ISC2 CISSP
Master enterprise security architecture, risk management, and governance across eight critical domains.
EC-Council Certified Ethical Hacker
Master penetration testing, vulnerability assessment, and offensive security methodologies.