CYBERSEC 2022 uses cookies to provide you with the best user experience possible. By continuing to use this site, you agree to the terms in our Privacy Policy. I Agree
Kuro is currently an cyber security consultant of EY Consulting, and likes to participate in information security community activities. Experience in information security audit, and network architecture security design. At present, I focus on serving enterprise security architecture blueprint planning, information security maturity assessment, information system risk control assessment, and strive to create cost-effective information security solutions for enterprises. Possess valid ISC2 CISSP、 ISACA CISM、CISA、CGEIT and CRISC.
#
Cybersecurity risk trends are changing rapidly, and companies need to proactively establish mechanisms to detect whether cyber risks affect the enterprise environment.
I will discuss the NISTIR 8286 ERM, COBIT 2019 framework, the concept of risk monitoring and risk response, and let the audience understand the use of Key Risk Indicator (KRI) and Key Performance Indicator (KPI) in information security risk management, so as to realize enterprise business goals.
#
When information security governance has become a trend, have you ever thought about what is the correct concept of information security governance?
The agenda will share the four information security certificates (CISA/CISM/CRISC/CGEIT) of ISACA, and introduce why they are the goal of information security practitioners, and talk about some ways to prepare for the exam. Finally, discuss the benefits and help of the research certificate.