The ISC2 Governance, Risk and Compliance (CGRC) Certification course equips professionals with the knowledge and practical skills required to integrate governance, performance management, risk management, and regulatory compliance within organizational information systems and cybersecurity programs. Formerly known as CAP (Certified Authorization Professional), the CGRC certification focuses on applying risk-based frameworks and governance principles to support secure and compliant business operations. Participants will gain a strong understanding of information security governance, risk assessment, authorization processes, security controls, and continuous monitoring aligned with the ISC2 Common Body of Knowledge (CBK), helping organizations strengthen cybersecurity governance and regulatory compliance initiatives.
Domains Covered:
Domain 1. Information Security Risk Management Program
Domain 2. Scope of the Information System
Domain 3. Selection and Approval of Security and Privacy Controls
Domain 4. Implementation of Security and Privacy Controls
Domain 5. Assessment and Audit of Security and Privacy Controls
Domain 6. Authorization and Approval of Information Systems
Domain 7. Continuous Monitoring