
Bob Salmans
Cybersecurity & Governance, Risk, and Compliance (GRC)
Core ISACA paths for governance, audit, risk, cybersecurity, and early-career ITCA coverage.
Certification architecture
Use ITCA fundamentals for early-career coverage, then map CISA, CISM, and CRISC to audit, security management, and risk teams.
Certification tier
Give early-career and cross-functional teams a shared baseline across computing, networks, software, cybersecurity, and data.
Foundational ISACA certificates for teams building broad IT, cybersecurity, data, and infrastructure literacy.
Certification tier
Map ISACA's core professional certifications to the roles your team owns: CISA for audit, CISM for security management, CRISC for risk.
Audit, control, and assurance coverage for teams responsible for IT audit and governance evidence.
Security management and governance coverage for leaders responsible for security programs.
Risk identification, assessment, response, and control design for risk and compliance teams.
Certification tier
Build the senior bench that can connect audit evidence, security leadership, and risk controls into a board-ready governance program.
A combined leadership path for organizations that need audit, security management, and risk coverage represented.
ISACA training is most valuable when it maps to the governance responsibilities your team must own: audit work, security leadership, and risk control management.
Role-based paths
Match ISACA training to the actual roles your team holds. Each path bundles the right cert tracks plus the operational depth engineers need day-to-day.
CISA and ITCA foundations for auditors building evidence and assurance programs.
CISM and cybersecurity fundamentals for security leaders responsible for governance and program ownership.
CRISC and governance fundamentals for teams documenting and managing enterprise technology risk.
Platform depth
Platform-by-platform deep dives for the specificISACA tools your team operates.
CISA, CISM, CRISC, and ITCA paths for audit, security management, and risk teams.
Broad entry-level coverage across computing, networking, software, cybersecurity, and data.

Hands-on ISACA practice
Human-led training is the point: engineers practice real skills with expert guidance, not just video playback.
Why CBT Nuggets
The platform features IT directors evaluating us against Pluralsight, Udemy Business, and LinkedIn Learning ask about most often.
Practitioner-led
Built and taught by engineers who have spent decades running production ISACA infrastructure — not crowd-sourced contributors.

Cybersecurity & Governance, Risk, and Compliance (GRC)

Offensive Security & Security Operations

End-User Productivity & Project Management
Team outcome
Manager reporting gives IT leaders a clearer view of assigned training, completion progress, and certification coverage.
Best fit for: compliance-sensitive teams that need evidence of progress before a review, renewal, or internal governance checkpoint.
Common questions IT directors ask when evaluating ISACA training for their team.