楼主: cisamaqing

[讨论] CGEIT 认证学习讨论区

[复制链接]
论坛徽章:
0
11#
发表于 2008-9-4 08:28 | 只看该作者

Congratulation...


Congratualtion.. Just like CISA and CISM certifications, when they were started, no one really paid attention to the grandfather provision...

Anyway, good job.  Personally, I felt that this certification might not be as demanding as others as of now, but who knows down the road...

Enjoy.

使用道具 举报

回复
论坛徽章:
0
12#
发表于 2008-9-5 09:19 | 只看该作者
想具体了解一下,这个人认证本身的价值何在?也没有看到专门的知识体系,如果具备了CISA、CISM、Cobit、ITIL等相关认证,还需要花钱去申请这样一个证书吗?

使用道具 举报

回复
论坛徽章:
0
13#
发表于 2008-9-5 23:24 | 只看该作者

回#12 Islin

个人浅见如下:

1. 总的来看,这是个行业的前瞻问题。 (下面细谈)
2. 如已在 IT Auditing 职位上了,不妨把它拿到手。有多大价值,谁也说不清楚。 但有没有价值?肯定有。
3. 如能让单位报销,别犹豫,先拿下再说。 就像当年的CISA,CISM一样,CISM 当时有Grandfather Provision, 看都没看,后来还不是去考。

Background: (欢迎交流,again,个人的见解,肯定有主观的成分)

IT Audit , Information Security, Information Risk Control, 这些tangle在一起的concept,早晚会被一些Framework统一。 干了几十年CPA的人,看口闭口COSO,以为COSO就能对付所有IT的Risk, 当然不能。作Control的人, 如ISACA, 又大力推行CoBit;IT Service的行业, ITIL是法宝; ISO 也不甘寂寞,把英国人的标准7799搞成ISO2700x; 外部的regulations, NIST, FFIEC (FDIC,OCC,etc), DoD, SOX (404, 302), 这不是千条万缕吗? 这是从1990 年到现在不到20年的时间, IT 的发展给整个社会带来的Impact。  证据之一:90年以前,美国法律中有关Privacy的内容主要只有一部:GLBA。  现在有多少?Patriot, SOX (accountability), PCI,。。。

讲到底, 一个字:怕!(Fear)

怕什么?怕损失,损失金钱,名誉,有形的,无形的,等等等等。 所以有了什么Risk,Control,Vulnerability,Threat,“IT Governance” 等概念。
CISA,CGEIT,CISSP,CISM,CIA,CCSP,MCSE/Security, 都是从不同的角度来 address 这些问题,就看你在什么行业,位置。
CEO/CFO/CTO/CXO: CGEIT
Audit Manager/InfoSec/IT: CISA, CIA,CISSP, CISM, etc...

Information system 的Governance(这词不好翻,找不到恰当的中文词,欢迎指教。)将来会成为新的统合的感念。 所以,大家都这么积极行动。

Again, 分享感受,欢迎交流。

- Ddolphi

使用道具 举报

回复
论坛徽章:
0
14#
发表于 2008-9-10 15:58 | 只看该作者
这几个domain还不是很明白,再研究研究。。。

使用道具 举报

回复
论坛徽章:
0
15#
发表于 2008-9-11 14:53 | 只看该作者
grandfather provision有什么具体的要求吗?请教一下ddolphi...

使用道具 举报

回复
论坛徽章:
0
16#
发表于 2008-9-11 14:57 | 只看该作者
Requirements for CGEIT Certification
Under the Grandfathering Provision

Until 31 October 2008, highly experienced professionals who have had a significant management, advisory and/or assurance role relating to the governance of IT, can apply for certification as a CGEIT without being required to pass the CGEIT examination. To earn the CGEIT designation during this period, applicants are required to:

Submit evidence of appropriate work
Agree to adhere to the ISACA Code of Professional Ethics
Agree to comply with the CGEIT Continuing Professional Education Policy
CGEIT Certification Presentation
Work Experience

In order to qualify for the CGEIT certification under the grandfathering provision an applicant must provide evidence of management, advisory or oversight experience associated with the governance of the IT-related contribution to an enterprise. Eight (8) years of such experience is required and is defined and described specifically by the CGEIT job practice domains and task statements.

Specifically, an applicant must have:

a minimum of one year experience relating to the development and/or maintenance of an IT governance framework (CGEIT domain one (1)) and;
additional broad experience related to any two or more of the remaining domains (CGEIT domains two (2) through six (6) )
Work Experience Substitutions
To recognize other management experience and/or the achievement of IT-governance related credentials, advanced degrees and certificates, up to three (3) years of experience can be substituted as follows:

Two-Year Substitution – Other Management Experience

Up to two (2) years of experience may be substituted for other management experience gained that is not specific to IT governance (e.g. consulting, auditing, assurance or security management role unrelated to the CGEIT domains).

One-Year Substitution – Credentials, Advanced Degrees and Certificates

One (1) year of experience may be substituted for each credential held (in good standing), advanced degree (post-graduate) or certificate programs which includes an IT governance and/or management component or are specific to one or more of the CGEIT domains. These include:

Certified Information Systems Auditor (CISA) issued by ISACA
Certified Information Security Manager (CISM) issued by ISACA
Implementing IT Governance using COBIT and Val IT certificate issued by ISACA (available in 2008)
ITIL Service Manager certification program
Chartered Information Technology Professional (CITP) issued by the British Computer Society
Certified Information Technology Professional (CITP) issued by the American Institute of CPAs
Project Management Professional (PMP) issued by the Project Management Institute
Information Systems Professional (I.S.P.) issued by the Canadian Information Processing Society
Advanced (post-graduate) degree from an accredited university in governance, information technology, information management or business administration (for example: Masters in Corporate Governance, Masters of Business Administration, Masters in Information and Operations Management, Masters of Information Systems Management, Masters in Information Technology)
Certified Internal Auditor (CIA) issued by the Institute of Internal Auditors
Certified Business Manager (CBM) issued by The Association of Professionals in Business Management
Prince2 – Registered Practitioner certification from the Office of Government Commerce
Applicants who have earned/acquired other credentials, advanced degrees and/or certificates that include a significant IT governance and/or information management component and are not listed above are welcome to submit them to the CGEIT Certification Board for consideration.

ISACA Code of Professional Ethics
ISACA sets forth a Code of Professional Ethics to guide the professional and personal conduct of ISACA members and credentials holders. To view a copy of the code please go to: www.isaca.org/ethics.

CGEIT Continuing Professional Education (CPE) Policy
CGEIT certified professionals are required to remain current with new practices, trends and technologies by adhering to a CPE policy. As such, each individual must maintain an adequate level of current knowledge and proficiency in the field of IT governance. Those who successfully comply with the continuing professional education policy will be better equipped to support the Board of Directors and executive management. To view a copy of the policy, please go to www.isaca.org/cgeitcpepolicy.

Application Process

In order to be considered for CGEIT certification under the grandfathering provision an applicant must:

Obtain an ISACA identification (ID) number
Remit (pay) the appropriate application fee
Submit a completed CGEIT application for certification under the grandfathering provision
1. Obtain an ISACA Identification (ID) Number
You already have an ISACA ID number if you are a member, prior member, CISA, CISM, purchaser, or created on online account for any other purpose. If so, please login to the site to determine your ID number, which is provided on the page upon a successful login. In addition, please ensure that your profile (My Profile) information is current.

If you do not already posses an ISACA ID number, you may obtain one by creating an online profile at www.isaca.org/profile. After creating your online account, navigate to My ISACA to determine your ID number. If you have any questions or difficulty, please contact feedback@isaca.org.

2. Remit the Appropriate Application Fee
The payment of an application fee is required to be considered for CGEIT certification under the grandfathering provision. Your application will not be reviewed until payment is received. The amount of the fee is dependent on your ISACA membership and/or ISACA certification status at the time of receipt of your payment and is as follows:

ISACA member         US $595
CISA and/or CISM who are not an ISACA member         US $660
All others         US $725
In order to take advantage of the ISACA member application fee you must become an ISACA prior to submitting your application. To join as an ISACA member please go to: www.isaca.org/membership.

The application fees above include a non-refundable application processing fee of US $100. Applicants who withdraw their application or have their application denied by the CGEIT Certification Board will receive a refund less this amount.

Note: Your application and supporting documentation will be reviewed by the CGEIT Certification Board. You will receive an e-mail reply when your application is received. Please allow up to twelve (12) weeks for the processing of your completed Application. You will receive notification of the CGEIT Certification Board’s decision via email and postal mail.

3. Access Payment Options and the Application Form.

使用道具 举报

回复
论坛徽章:
0
17#
发表于 2008-9-11 15:00 | 只看该作者
刚刚发问,才注意到isaca应该有详细说明,简单看了下,总结如下:
1、8年工作经验;
2、交申请费595~725之间;

经验中要求至少一年domain1(IT治理框架)经验,其它domain2到6中至少有两到三方面的经验;
申请费中如果申请撤回或不成功,需要扣除100美元。

另外有一些经验替代方面的东东...

使用道具 举报

回复
论坛徽章:
0
18#
发表于 2008-9-12 23:32 | 只看该作者

Responding to Rockblue:

It certainly catches people's eyes when it came out.  However,  it (CGEIT) has not been widely recognized as the other popular ones.   Again, you don't compare oranges with apples here if you go strict in a sense of definitions.  Indeed, they are different things in terms of the nature of the certifications.  

That being said, CISA, CISSP, CISM and all others on the popular DoD list, to be specific, DoD 8570.01-M, are all so called "popular" certifications.  CGEIT, on the other hand, in the same domain (let's put it in this way first), is not, so far.

If someone is pursuing these popular ones, he / she should be encouraged to do so.   The experienced ones who had one or more of these certs should, by all means, get the CGEIT via grandfather provision.   Just for the sake of broden your vision in this industry.

This is just my 2 cents.  FYI

Good luck and get prepared.  (BTW, having a plan won't upset God, at least.  But it sure does put your wife in peace. )

Ciao.

- Ddolphi

[ 本帖最后由 ddolphi 于 2008-9-12 10:37 编辑 ]

使用道具 举报

回复
论坛徽章:
0
19#
发表于 2008-9-15 14:05 | 只看该作者
thank you, Ddolhi.
When GOD laughs, HE is not upset. That's why we should always plan.

im now applying for CISA and will try to apply for the CGEIT after receiving confirmation for CISA.

thanks again.

使用道具 举报

回复
论坛徽章:
0
20#
发表于 2008-10-11 13:55 | 只看该作者
CISA和CISM都有Question、Answer And Explanation。

CGEIT除了看资料,有考试样题和解答么?这个也很关键。

想着COBIT的考试题目估计最接近了,大家是怎么找相关测试题目的?

使用道具 举报

回复

您需要登录后才可以回帖 登录 | 注册

本版积分规则 发表回复

TOP技术积分榜 社区积分榜 徽章 团队 统计 知识索引树 积分竞拍 文本模式 帮助
  ITPUB首页 | ITPUB论坛 | 数据库技术 | 企业信息化 | 开发技术 | 微软技术 | 软件工程与项目管理 | IBM技术园地 | 行业纵向讨论 | IT招聘 | IT文档
  ChinaUnix | ChinaUnix博客 | ChinaUnix论坛
CopyRight 1999-2011 itpub.net All Right Reserved. 北京盛拓优讯信息技术有限公司版权所有 联系我们 未成年人举报专区 
京ICP备16024965号-8  北京市公安局海淀分局网监中心备案编号:11010802021510 广播电视节目制作经营许可证:编号(京)字第1149号
  
快速回复 返回顶部 返回列表