Skip to main content

WA IT Advisory

Preparation Course for CISM Certification

  • 7 September 2026 - 10 September 2026
  • 9h30 to 16h00
  • Les Berges du Lac, Tunis - Tunisie
  • (+216) 94 882 343 | (+216) 92 960 959

CISM (Certified Information Security Manager) is the world’s leading certification for professionals responsible for managing, designing, and overseeing information security within their organizations. Issued by ISACA, this certification is recognized in more than 180 countries and is an essential credential for pursuing positions such as Chief Information Security Officer (CISO), Security Director, or Senior Cybersecurity Consultant.

WA IT Advisory, an accredited ISACA partner in Tunisia, offers an intensive and structured preparation program designed to help you pass your CISM exam on your first attempt.

Why Earn the CISM Certification?

The CISM certification is much more than a title. It demonstrates your ability to align information security with an organization’s strategic objectives — a highly sought-after skill among major organizations, banks, public-sector institutions, and multinational companies operating across North Africa.

According to ISACA, CISM-certified professionals earn an average of 25% more than their non-certified peers. In Tunisia and across the Maghreb region, demand for certified CISOs significantly exceeds the available supply of qualified professionals.

The CISM certification will enable you to:

  • Take responsibility for your organization’s information security governance
  • Establish and manage an information security program aligned with business risks
  • Lead end-to-end security incident management
  • Justify security investments to senior management
  • Gain access to a global network of more than 30,000 CISM-certified professionals

Target Audience — Who Is This Training For?

This preparation program is designed for IT professionals with at least 3 to 5 years of experience in information security, including:

CISOs and aspiring CISOs seeking to validate their expertise through an internationally recognized certification

IT Directors and CIOs looking to strengthen their understanding of information security challenges

Internal auditors and information security consultants

Compliance and risk professionals (GRC, ISO 27001, SOC)

Security architects seeking to transition into management positions

Prerequisites: No formal prerequisites are required to attend the training. To obtain the official CISM certification, ISACA requires 5 years of professional experience in information security, including 3 years of experience in at least 2 of the 4 CISM domains.

CISM Training Program — The 4 Domains

The CISM exam covers four fundamental domains. Our preparation program addresses each domain in depth through practical exercises, real-world case studies, and exam simulations.

Domain 1 — Information Security Governance (17%)

  • Information security strategy aligned with business objectives
  • Governance frameworks: COBIT, ISO/IEC 27001, NIST
  • Security policies, standards, and procedures
  • Information security roles and responsibilities
  • Security metrics and dashboards

Domain 2 — Information Security Risk Management (20%)

  • Identification and classification of information assets
  • Risk assessment methodologies (ISO 31000, OCTAVE, FAIR)
  • Risk treatment: acceptance, transfer, mitigation, and avoidance
  • Integration of risk management into business processes
  • Continuous monitoring and risk review

Domain 3 — Information Security Program (33%)

  • Design and implementation of an information security program
  • Security controls: preventive, detective, and corrective
  • Application, network, and cloud infrastructure security
  • Security awareness and training
  • Third-party and supply chain management
  • Performance measurement and continuous improvement

Domain 4 — Information Security Incident Management (30%)

  • Incident response planning
  • Incident classification and prioritization
  • Investigation and forensic analysis
  • Coordination with internal and external stakeholders
  • Lessons learned and post-incident improvement
  • Alignment with business continuity (ISO 22301)

Upcoming Trainings

Preparation Course for PMP

  • 28 September 2026
  • 9h00 to 16h00
  • Les Berges du Lac, Tunis - Tunisia

ISO/IEC 27001 Lead Implementer

  • 5 October 2026
  • 9h00 to 16h00
  • Les Berges du Lac, Tunis - Tunisia

ISO 27701 Lead Implementer Training

  • 5 October 2026
  • 9h00 to 16h00
  • Les Berges du Lac — Tunisie

ISO/IEC 27001 Lead Auditor

  • 16 November 2026
  • 9h00 to 16h00
  • Charguia 1 — Tunisie

CISSP Training Session

  • 21 December 2026
  • 9h00 to 16h00
  • Les Berges du Lac, Tunis - Tunisie

QHSE Foundation Training

  • 21 December 2026
  • 9h00 to 16h00
  • Les Berges du Lac, Tunis - Tunisie