Home  
  Microsoft  
  Cisco  
  CompTIA  
  CWNP  
  InfoSecurity  
  Forums  
  Blogs  
  Topsites  
  Watch free videos online  
     
  Subnet Calculator  
  Online Degrees  
  Exam Vouchers  
  Free Magazines  
     

  Watch free videos online  
   

 

Junior Member
Registered Member
 
Join Date: Aug 2009
Location: TX
Posts: 8

Certifications: CISSP, GSEC, Security+
bodacious00 is on a distinguished road
Old 03-08-2010, 01:16 AM   #1 (permalink)
Default CISA Study Material

Hello,

I'm planning on attempting the CISA exam in June and would like to know what books you guys recommend. I found many books online, but I'm not really too sure which books are best. Any feedback is appreciated.

Thanks.

bodacious00 is offline   Reply With Quote

Login/register to remove this advertisement.
Certification Consultant
Forum Admin
 
JDMurray's Avatar
 
Join Date: Jul 2003
Location: Surf City USA
Posts: 6,430

Certifications: CISSP, SSCP, CWSP, CWNA, CWTS, Security+, Server+, Network+, A+, DHTI+, PDI+, MSIT InfoSec (CNSS 4011, 4013)
JDMurray is a name known to allJDMurray is a name known to allJDMurray is a name known to allJDMurray is a name known to allJDMurray is a name known to allJDMurray is a name known to all
Old 03-08-2010, 12:35 PM   #2 (permalink)

Have looked for CISA study material reviews at www.isaca.org and www.cccure.org too?



__________________
Moderator of the InfoSec, CWNP, IT Jobs, Virtualization, Java, and Microsoft Developers forums at www.techexams.net
Blog: www.techexams.net/blogs/jdmurray
LinkedIn: www.linkedin.com/in/jamesdmurray
Twitter: www.twitter.com/jdmurray

JDMurray is offline   Reply With Quote
Junior Member
Registered Member
 
Join Date: Aug 2009
Location: TX
Posts: 8

Certifications: CISSP, GSEC, Security+
bodacious00 is on a distinguished road
Old 03-08-2010, 01:31 PM   #3 (permalink)

Thanks JD. I looked at those resources as well, but there wasn't much info I was looking for.

The ISACA site has CISA study aids that are a bit pricey (IMO) and doesn't display customer feedback on the material. I'm not too sure how effective their study material may be.

The AIO CISA book by Gregory seems to be the most popular, as referenced in cccure.org, but I'm not sure if this book can be used alone to pass the exam.

Although I think that the ISACA material may be the best bet to prepare and pass the CISA exam, I'm a pretty cheap guy. I don't really want to spend $130 on a book that has the same material as the AIO $50 book. I don't get reimbursed for study material and only get reimbursed by my employer if I pass the exam.

bodacious00 is offline   Reply With Quote
Senior Member
 
Join Date: Mar 2007
Posts: 12,182

dynamik is a splendid one to beholddynamik is a splendid one to beholddynamik is a splendid one to beholddynamik is a splendid one to beholddynamik is a splendid one to beholddynamik is a splendid one to beholddynamik is a splendid one to behold
Old 03-08-2010, 01:32 PM   #4 (permalink)

I'm going to use the official guides with the AIO book. Seems like that should be enough.

Edit: Just saw your response. It seems like the official guides go into a little more depth, but are more difficult to read. This is a relatively expensive exam that's only offered twice per year, so I'd rather be over-prepared.



__________________
''=~('(?{'.('[-@.^~'^'+_)@*^').'"'.('@.&@-@@<@~$@^~.@^_'^')@@/^)%[%^@/*^@%*}').',$/})')

dynamik is offline   Reply With Quote
Dynamik es una panocha
 
eMeS's Avatar
 
Join Date: Jun 2007
Location: Texas
Posts: 1,435

eMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to behold
Old 03-08-2010, 02:20 PM   #5 (permalink)

I intended to use Amazon.com: CISA Certified Information Systems Auditor Study Guide (9780470231524): David L. Cannon: Books

However I was lazy and ran out of time and only got to do quick pass through the book.

IMO, the exam isn't hard if you meet the experience requirements. It's most accurate to say that the exam is long and covers a lot of territory.

MS



__________________
Certifications: ITIL Expert (v3), ITIL Manager's Certificate in ITSM (v2), ISO/IEC 20000 Consultant, ASQ Certified Six Sigma Black Belt, CISA, MCITP: DBA 2005, PMP, IBM SD SOA, IBM Certified Business Process Analyst - WebSphere Business Modeler Advanced v6.1, Alan Parson's Project+, Planet P Project+

eMeS is offline   Reply With Quote
Senior Member
 
Join Date: Apr 2008
Posts: 205

Certifications: Way too many...
down77 will become famous soon enough
Old 03-08-2010, 07:01 PM   #6 (permalink)

I'm currently using this one for the June attempt:

Amazon.com: CISA Certified Information Systems Auditor All-in-One Exam Guide (9780071487559): Peter H. Gregory: Books

I agree with eMeS, the material is not too bad as long as you have the experience behind it. I expect the test to be a quarter mile long and an inch deep.

You may also want to check for any local ISSA study sessions/groups.

down77 is offline   Reply With Quote
Dynamik es una panocha
 
eMeS's Avatar
 
Join Date: Jun 2007
Location: Texas
Posts: 1,435

eMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to behold
Old 03-08-2010, 07:29 PM   #7 (permalink)

Quote:
Originally Posted by down77 View Post
I expect the test to be a quarter mile long and an inch deep.
That's about it....such as knowing the different phases of audits as well as the types of fire suppression systems in use in data centers....

MS



__________________
Certifications: ITIL Expert (v3), ITIL Manager's Certificate in ITSM (v2), ISO/IEC 20000 Consultant, ASQ Certified Six Sigma Black Belt, CISA, MCITP: DBA 2005, PMP, IBM SD SOA, IBM Certified Business Process Analyst - WebSphere Business Modeler Advanced v6.1, Alan Parson's Project+, Planet P Project+

eMeS is offline   Reply With Quote
-------------------------
 
Paul Boz's Avatar
 
Join Date: Oct 2006
Location: Baton Rouge, LA
Posts: 2,320

Certifications: CCNP, CCIP, CCDP, CCDA, CCNA, CCNA Security, NSTISSI 4011, GSEC, GCFW, GCIH
Paul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to behold
Send a message via AIM to Paul Boz Send a message via MSN to Paul Boz Send a message via Yahoo to Paul Boz
Old 03-08-2010, 07:33 PM   #8 (permalink)

All you need is the official books for the exam. If it's not in the books it's not on the test. That's at least the story with the three people I know with the CISA.



__________________
CCNP | CCIP | CCDP | CCNA, CCDA
CCNA Security | GSEC |GCFW | GCIH
pbosworth@gmail.com
http://twitter.com/paul_bosworth
Blog: http://www.infosiege.net/

Paul Boz is offline   Reply With Quote
Senior Member
 
Join Date: Jun 2009
Location: Toronto
Posts: 445

Certifications: Most Recent: GPEN & CISSP
GAngel has a spectacular aura aboutGAngel has a spectacular aura about
Old 03-09-2010, 03:50 PM   #9 (permalink)

Quote:
Originally Posted by eMeS View Post
That's about it....such as knowing the different phases of audits as well as the types of fire suppression systems in use in data centers....

MS
That's in the cissp books. All theses exams are rehashes of each other with a bit more content in certain areas.

GAngel is offline   Reply With Quote
-------------------------
 
Paul Boz's Avatar
 
Join Date: Oct 2006
Location: Baton Rouge, LA
Posts: 2,320

Certifications: CCNP, CCIP, CCDP, CCDA, CCNA, CCNA Security, NSTISSI 4011, GSEC, GCFW, GCIH
Paul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to beholdPaul Boz is a splendid one to behold
Send a message via AIM to Paul Boz Send a message via MSN to Paul Boz Send a message via Yahoo to Paul Boz
Old 03-09-2010, 04:55 PM   #10 (permalink)

Quote:
Originally Posted by GAngel View Post
That's in the cissp books. All theses exams are rehashes of each other with a bit more content in certain areas.
That's how all certs are lol. Once you've got the foundation knowledge you can really lay into them.



__________________
CCNP | CCIP | CCDP | CCNA, CCDA
CCNA Security | GSEC |GCFW | GCIH
pbosworth@gmail.com
http://twitter.com/paul_bosworth
Blog: http://www.infosiege.net/

Paul Boz is offline   Reply With Quote
Network Security
 
Join Date: Aug 2009
Location: Ypsilanti, MI
Posts: 569

Certifications: CISSP, Security+, MCSE,MCSA,A+
tpatt100 has a spectacular aura abouttpatt100 has a spectacular aura about
Old 03-10-2010, 03:39 AM   #11 (permalink)

Quote:
Originally Posted by eMeS View Post
That's about it....such as knowing the different phases of audits as well as the types of fire suppression systems in use in data centers....

MS
I completed the first two chapters in the CISA All in One and I found myself completing sentences in my mind before I got to them. I am finding quite a bit of rehash from my CISSP studies. Not that i am complaining though.



__________________

CISSP, Security+, MCSE, MCSA, A+

tpatt100 is offline   Reply With Quote
Dynamik es una panocha
 
eMeS's Avatar
 
Join Date: Jun 2007
Location: Texas
Posts: 1,435

eMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to beholdeMeS is a splendid one to behold
Old 03-10-2010, 04:25 AM   #12 (permalink)

Quote:
Originally Posted by tpatt100 View Post
I completed the first two chapters in the CISA All in One and I found myself completing sentences in my mind before I got to them. I am finding quite a bit of rehash from my CISSP studies. Not that i am complaining though.
Now you're making me want to take the CISSP...afraid that it would be a stretch for me though on the experience requirements....

MS



__________________
Certifications: ITIL Expert (v3), ITIL Manager's Certificate in ITSM (v2), ISO/IEC 20000 Consultant, ASQ Certified Six Sigma Black Belt, CISA, MCITP: DBA 2005, PMP, IBM SD SOA, IBM Certified Business Process Analyst - WebSphere Business Modeler Advanced v6.1, Alan Parson's Project+, Planet P Project+

eMeS is offline   Reply With Quote
Senior Member
 
Join Date: Apr 2008
Posts: 205

Certifications: Way too many...
down77 will become famous soon enough
Old 03-10-2010, 11:59 AM   #13 (permalink)

Quote:
Originally Posted by tpatt100 View Post
I completed the first two chapters in the CISA All in One and I found myself completing sentences in my mind before I got to them. I am finding quite a bit of rehash from my CISSP studies. Not that i am complaining though.
I had a very similar experience. I had a few colleagues ask me why I did not take the CISA immediately after I took the CISSP.

eMes,

I am sure if you sit down and match up the domains to your resume you would have more than enough experience to meet the 5 year requirement (minus time served for degrees and certification).

down77 is offline   Reply With Quote
Senior Member
Registered Member
 
Ye Gum Noki's Avatar
 
Join Date: Apr 2006
Location: Bayou George
Posts: 113

Certifications: CISSP, CISA, MCSE:Security, CNE, Security +
Ye Gum Noki is on a distinguished road
Old 03-12-2010, 11:40 AM   #14 (permalink)

I studyied on my own for the CISA and considered several resources. I settled on the ISACA official guide and the question bank. The OG is a hard read and I ended up focusing on the question bank and using the OG as a reference for when I got questions wrong.

I took the CISA in 2008, three years after I had passed the CISSP. Obviously there's going to be some similarities in Information Security related exams, but the CISA was a little easier to me, partly because of the CISSP, I'm sure. But mostly I think it was because I used the ISACA material. I highly recommend the OG and the question bank.

Additionally, a word of caution: Unless you're experienced in IT Audit or understand it greatly, the CISA exam can be challenging for CISSPs and InfoSec folks in general. You have to think like an auditor, which, in some cases, can be different than thinking like an InfoSec Pro.

Good luck to all candidates,

Mr. Ye



__________________
"What we think, or what we know, or what we believe is, in the end, of little consequence. The only consequence is what we do." John Ruskin.

Ye Gum Noki is offline   Reply With Quote
Network Security
 
Join Date: Aug 2009
Location: Ypsilanti, MI
Posts: 569

Certifications: CISSP, Security+, MCSE,MCSA,A+
tpatt100 has a spectacular aura abouttpatt100 has a spectacular aura about
Old 03-13-2010, 08:59 PM   #15 (permalink)

holy crap the CISA 2010 Question database off the ISACA site is 225 dollars



__________________

CISSP, Security+, MCSE, MCSA, A+

tpatt100 is offline   Reply With Quote
Senior Member
Registered Member
 
Ye Gum Noki's Avatar
 
Join Date: Apr 2006
Location: Bayou George
Posts: 113

Certifications: CISSP, CISA, MCSE:Security, CNE, Security +
Ye Gum Noki is on a distinguished road
Old 03-14-2010, 12:27 PM   #16 (permalink)

Yes it's a little pricey, but still cheaper than a seminar or boot camp. Remember it IS coming from the sanctioning body. It's a great study source.

And... the 2009 question bank and OG are cheaper and there's probably not a ton of difference in the two.

Good luck,

Mr. Ye



__________________
"What we think, or what we know, or what we believe is, in the end, of little consequence. The only consequence is what we do." John Ruskin.

Ye Gum Noki is offline   Reply With Quote
Bookmarks
Go Back TechExams.net IT Certification Forums > InfoSec > Security Certifications
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off



All times are GMT. The time now is 06:52 AM.

 
 
Featured Sponsors

TrainSignal - “Hands On” computer training for IT professionals. Network+ Training, MCSE, Cisco & more! Visit Train Signal’s free training site to get loads of Free Computer Training, videos, articles and practice exams.

Preplogic - Sign up now to get Unlimited Access to PrepLogic's entire video training library. Enjoy open access to Microsoft Server 2008, CCNA, CISSP®, PMP and many more. Get Unlimited Access

 

Powered by vBulletin® Version 3.8
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0
TechExams.net © 2002 - 2010