- 7 September 2026 - 10 September 2026
- 9h30 to 16h00
- Les Berges du Lac, Tunis - Tunisie
- (+216) 94 882 343 | (+216) 92 960 959
CISM (Certified Information Security Manager) is the world’s leading certification for professionals responsible for managing, designing, and overseeing information security within their organizations. Issued by ISACA, this certification is recognized in more than 180 countries and is an essential credential for pursuing positions such as Chief Information Security Officer (CISO), Security Director, or Senior Cybersecurity Consultant.
WA IT Advisory, an accredited ISACA partner in Tunisia, offers an intensive and structured preparation program designed to help you pass your CISM exam on your first attempt.
Why Earn the CISM Certification?
The CISM certification is much more than a title. It demonstrates your ability to align information security with an organization’s strategic objectives — a highly sought-after skill among major organizations, banks, public-sector institutions, and multinational companies operating across North Africa.
According to ISACA, CISM-certified professionals earn an average of 25% more than their non-certified peers. In Tunisia and across the Maghreb region, demand for certified CISOs significantly exceeds the available supply of qualified professionals.
The CISM certification will enable you to:
- Take responsibility for your organization’s information security governance
- Establish and manage an information security program aligned with business risks
- Lead end-to-end security incident management
- Justify security investments to senior management
- Gain access to a global network of more than 30,000 CISM-certified professionals
Target Audience — Who Is This Training For?
This preparation program is designed for IT professionals with at least 3 to 5 years of experience in information security, including:
CISOs and aspiring CISOs seeking to validate their expertise through an internationally recognized certification
IT Directors and CIOs looking to strengthen their understanding of information security challenges
Internal auditors and information security consultants
Compliance and risk professionals (GRC, ISO 27001, SOC)
Security architects seeking to transition into management positions
Prerequisites: No formal prerequisites are required to attend the training. To obtain the official CISM certification, ISACA requires 5 years of professional experience in information security, including 3 years of experience in at least 2 of the 4 CISM domains.
CISM Training Program — The 4 Domains
The CISM exam covers four fundamental domains. Our preparation program addresses each domain in depth through practical exercises, real-world case studies, and exam simulations.
Domain 1 — Information Security Governance (17%)
- Information security strategy aligned with business objectives
- Governance frameworks: COBIT, ISO/IEC 27001, NIST
- Security policies, standards, and procedures
- Information security roles and responsibilities
- Security metrics and dashboards
Domain 2 — Information Security Risk Management (20%)
- Identification and classification of information assets
- Risk assessment methodologies (ISO 31000, OCTAVE, FAIR)
- Risk treatment: acceptance, transfer, mitigation, and avoidance
- Integration of risk management into business processes
- Continuous monitoring and risk review
Domain 3 — Information Security Program (33%)
- Design and implementation of an information security program
- Security controls: preventive, detective, and corrective
- Application, network, and cloud infrastructure security
- Security awareness and training
- Third-party and supply chain management
- Performance measurement and continuous improvement
Domain 4 — Information Security Incident Management (30%)
- Incident response planning
- Incident classification and prioritization
- Investigation and forensic analysis
- Coordination with internal and external stakeholders
- Lessons learned and post-incident improvement
- Alignment with business continuity (ISO 22301)
Upcoming Trainings
Preparation Course for PMP
-
28 September 2026
-
9h00 to 16h00
-
Les Berges du Lac, Tunis - Tunisia
ISO/IEC 27001 Lead Implementer
-
5 October 2026
-
9h00 to 16h00
-
Les Berges du Lac, Tunis - Tunisia
ISO 27701 Lead Implementer Training
-
5 October 2026
-
9h00 to 16h00
-
Les Berges du Lac — Tunisie
ISO/IEC 27001 Lead Auditor
-
16 November 2026
-
9h00 to 16h00
-
Charguia 1 — Tunisie
CISSP Training Session
-
21 December 2026
-
9h00 to 16h00
-
Les Berges du Lac, Tunis - Tunisie
QHSE Foundation Training
-
21 December 2026
-
9h00 to 16h00
-
Les Berges du Lac, Tunis - Tunisie