CRISC
Reddit take
Not enough linked mention summaries yet; the source excerpts below are the evidence.
Pros
- I’m on a roll now. I’m studying for CRISC and also learning Python.
- I have previously sat and passed CISA and CRISC but to me CISM was far more nuanced than the other two.
- I have 2 now crisc and cism both just from qanda and the stidy manual.
- Parent context: I am confused about these 2:- Cism or crisc, which one should i pursue first, i am working in the grc domain along with tprm under the Cyber security. My role is mostly on security compliance, vendor assessment, risk and...
- Based on you’re role I would do CRISC first out of the two.
Cons
- Just shows how worthless all those badges or designations are. Big corps love that stuff though. Probably fit right in with banking or insurance companies. Short on talent. Long on credentials.
- I have all isaca staff (CISA, CISM, CRISC) along with PMP and i'm jobless.
- CRISC was way more specific, so I actually had a harder time preparing for it. CISM is much more on the strategic, governance, and alignment side of things.
- I had to do that every question for the CRISC, CISM and for the CISSP (substituting with ISC2 cbok). It is what it is. Best, most right, bla bla bla it's all "according to our book, not real life".
- I took CRISC and then CISM within three months.
Sentiment
23 positive (70%) · 4 mixed (12%) · 6 negative (18%)
Trust + time weighted score: +53% · raw score 52%
What redditors said (10 of 33)
I’m on a roll now. I’m studying for CRISC and also learning Python.
I have previously sat and passed CISA and CRISC but to me CISM was far more nuanced than the other two.
I have 2 now crisc and cism both just from qanda and the stidy manual.
Parent context: I am confused about these 2:- Cism or crisc, which one should i pursue first, i am working in the grc domain along with tprm under the Cyber security. My role is mostly on security compliance, vendor assessment, risk and mitigation, client Security questionnaires etc.. Reply: Honestly from your job description i'm not sure you'll qualify for CISM. Have you any experience with Incident Repsonse and Security Programs? If not, the by default CRISC is your only option.
Based on you’re role I would do CRISC first out of the two.
For CRISC and CISM, I had already most of the ISACA logic in my head, which made the QAE and the exam significantly easier.
It’s more about getting the head around how ISACA Wants us to think than anything else, at least my experience from passing CISA and CRISC a few months ago.
I think CRISC is also a great certification after CISM as it adds a risk logic that does benefit a security manager.
Started with CRISC, studied for 5 days and crushed that one 2 weeks ago.
Just shows how worthless all those badges or designations are. Big corps love that stuff though. Probably fit right in with banking or insurance companies. Short on talent. Long on credentials.
Compare
CRISC vs CompTIA Security+CRISC vs AB-900CRISC vs CompTIA Network+
Related
- ISACA QAE · related · 324 mentions
- AZ-900 · related · 281 mentions
- Destination Certification Masterclass · related · 66 mentions
- CompTIA Security+ · related · 39 mentions
- CCNA · related · 32 mentions
- ISC2 Certified in Cybersecurity · related · 18 mentions