Home/ Courses/ ISACA/ CISA
ISACA Authorised Advanced · Audit 2026 ECO Top-Recognised IT-Audit Cert

CISA
Information Systems Auditor

The most-recognised IT-audit credential in the world. The cert most often required for IT-audit, internal-audit-IT and audit-manager roles in MY banking, listed companies and BNM-regulated industries.

Duration: 4 days / 32 hrs
💻Format: Instructor-Led + Audit Sims
🌐Delivery: On-site · Virtual · Hybrid
Pass rate: 94%
📅Next intake: 15 May 2026
CISA training session at Nexperts Academy
🔍

Audit fluency

Plan, execute and report on IT audits across all 5 CISA domains

📝

Evidence + workpapers

ISACA-grade workpaper standards and audit-trail discipline

🏛

Frameworks

COBIT 2019, ISO 27001, NIST CSF, BNM RMiT mapped

📊

Findings + reporting

Defending findings to audit committees and executive sponsors

What this course is

Where IT audit stops
being a checkbox exercise.

CISA is ISACA's flagship IT-audit credential. It is the cert most often required for IT-audit, internal-audit-IT, audit-manager and risk-and-controls roles at MY's banks, listed companies, GLCs, BNM-regulated industries and the Big-4 and second-tier audit firms (PwC, KPMG, EY, Deloitte, BDO, RSM).

At Nexperts, CISA is delivered as a 4-day intensive that walks all five exam domains with hands-on audit-workpaper exercises, MY-context case studies and full ISACA-style mock exams. By day 4 you've planned an IT audit, executed control testing, documented workpapers and defended findings to a simulated audit committee.

CISA is the credential that opens the audit-committee door. It is the cert most often listed in MY job ads under 'must-have' for IT-audit, IT internal-audit and senior controls-testing roles. In banking it is increasingly mandated; in BNM-regulated industries it is the de-facto standard.

The 2024+ CISA update sharpened the focus on emerging-tech audit (AI, cloud, blockchain), cybersecurity-control testing and the BNM RMiT impact on IT-audit programmes. We map every domain to MY enterprise audit reality.

Who should take this course
💼

IT auditors

Performing IT audits in banks, insurance, capital markets, telcos, GLCs.

🔍

Internal auditors

Already doing financial / operational audit. CISA adds IT-audit credibility.

🏛

External auditors

Big-4 and second-tier audit firms. CISA is the staff-progression cert.

🔐

GRC analysts

Owning controls testing and audit programmes. CISA is the recognised credential.

📚

Risk consultants

Delivering IT-audit and SOX-style engagements to MY clients.

📈

CIO direct reports

Auditing technology operations from a second-line lens.

Prerequisites
5 years of professional information-systems-auditing experience
Substitutions allowed (degree, ISACA cert, finance audit) up to 3 years
Comfortable reading control matrices, audit programmes and workpapers
ISACA membership recommended (50% exam-fee saving)
Don't yet have 5 years experience? You can sit the exam first; ISACA grants the cert when experience is verified within 5 years.