1. EachPod
EachPod
Certified: The CRISC Audio Course - Podcast

Certified: The CRISC Audio Course

The Bare Metal Cyber CRISC Audio Course is a comprehensive audio training series designed to help you master the CRISC certification with confidence. Each episode delivers in-depth coverage of ISACA’s CRISC domains — from risk governance to monitoring — using a uniquely structured, exam-focused format built for long-term retention. Whether you're studying on the go or doing a deep review, this prepcast is your essential guide to IT risk success.

Education Technology Courses
Update frequency
every day
Average duration
11 minutes
Episodes
93
Years Active
2025
Share to:
Episode 53: Understanding Key Performance Indicators (KPIs)

Episode 53: Understanding Key Performance Indicators (KPIs)

Key Performance Indicators help organizations measure the success of their processes, including risk and control functions. This episode dives into KPI design, interpretation, and alignment with stra…

00:11:46  |   Sat 05 Jul 2025
Episode 52: Risk and Control Reporting Techniques: Heatmaps, Scorecards, and Dashboards

Episode 52: Risk and Control Reporting Techniques: Heatmaps, Scorecards, and Dashboards

Visual reporting tools turn data into decisions. This episode explains how heatmaps, scorecards, and dashboards are used to present risk and control information to stakeholders. You’ll learn the stre…

00:11:08  |   Sat 05 Jul 2025
Episode 51: Techniques for Control Monitoring and Continuous Improvement

Episode 51: Techniques for Control Monitoring and Continuous Improvement

Effective risk professionals don’t just implement controls—they monitor and refine them continuously. This episode explores how organizations use control monitoring techniques like metrics tracking, …

00:10:58  |   Sat 05 Jul 2025
Episode 50: Techniques for Risk Monitoring and Validation

Episode 50: Techniques for Risk Monitoring and Validation

Monitoring keeps risk management alive and responsive. This episode walks you through key techniques for tracking risk levels, validating changes in threat exposure, and detecting breakdowns in respo…

00:09:09  |   Sat 05 Jul 2025
Episode 49: Data Collection, Aggregation, Analysis, and Validation

Episode 49: Data Collection, Aggregation, Analysis, and Validation

Effective risk reporting begins with the right data. In this episode, we explain how to collect, organize, and validate risk and control data from across the enterprise. You'll learn how strong data …

00:10:57  |   Sat 05 Jul 2025
Episode 48: Developing and Executing Risk Treatment Plans

Episode 48: Developing and Executing Risk Treatment Plans

Once risk response decisions are made, treatment plans bring them to life. This episode shows you how to create actionable plans that assign ownership, define timelines, and align with strategy. We a…

00:11:39  |   Sat 05 Jul 2025
Episode 47: Control Testing and Effectiveness Evaluation

Episode 47: Control Testing and Effectiveness Evaluation

Testing is how we know a control works. In this episode, you’ll learn the methodologies used to validate control effectiveness—from walkthroughs and testing procedures to control maturity assessments…

00:11:33  |   Sat 05 Jul 2025
Episode 46: Control Implementation Best Practices

Episode 46: Control Implementation Best Practices

A well-designed control must be implemented carefully to succeed. This episode outlines how to roll out controls across people, processes, and technology with minimal disruption. You’ll explore real-…

00:12:48  |   Sat 05 Jul 2025
Episode 45: Control Design, Selection, and Analysis

Episode 45: Control Design, Selection, and Analysis

A poorly chosen or badly designed control can create more risk than it mitigates. This episode focuses on selecting controls that align with business objectives and designing them to function effecti…

00:11:22  |   Sat 05 Jul 2025
Episode 44: Control Types, Standards, and Frameworks

Episode 44: Control Types, Standards, and Frameworks

Understanding the full landscape of control types is critical for treatment planning. This episode introduces preventive, detective, corrective, and compensating controls, as well as major control fr…

00:12:28  |   Sat 05 Jul 2025
Episode 43: Managing Emerging Risks

Episode 43: Managing Emerging Risks

CRISC candidates must be able to anticipate and respond to new threats as technologies and environments evolve. In this episode, we explore how to define and identify emerging risks, evaluate their p…

00:12:59  |   Sat 05 Jul 2025
Episode 42: Issue, Finding, and Exception Management

Episode 42: Issue, Finding, and Exception Management

Every organization faces control gaps and compliance issues—what matters is how they’re addressed. This episode explains the difference between issues, findings, and exceptions, and outlines how to d…

00:10:05  |   Sat 05 Jul 2025
Episode 41: Managing and Monitoring Third-Party Risks

Episode 41: Managing and Monitoring Third-Party Risks

Identifying third-party risks is only the first step—effective risk professionals must also manage and monitor them throughout the vendor lifecycle. In this episode, you’ll learn how to apply control…

00:09:44  |   Sat 05 Jul 2025
Episode 40: Third-Party Risk Identification and Evaluation

Episode 40: Third-Party Risk Identification and Evaluation

Many IT risks arise from third-party relationships, and this episode explores how to evaluate them properly. You’ll learn how to assess vendors, cloud providers, and outsourced service risks—includin…

00:11:59  |   Sat 05 Jul 2025
Episode 39: Assigning Risk and Control Ownership

Episode 39: Assigning Risk and Control Ownership

Risk management is a team effort, and assigning ownership ensures accountability. This episode dives into the process of identifying the right owners for risk and control responsibilities, clarifying…

00:12:53  |   Sat 05 Jul 2025
Episode 38: Implementing and Documenting Risk Response Decisions

Episode 38: Implementing and Documenting Risk Response Decisions

Once a risk response has been selected, execution is key. This episode explains how to turn response strategies into action plans, how to document decisions for accountability, and how to measure imp…

00:13:40  |   Sat 05 Jul 2025
Episode 37: Understanding Risk Treatment Options (Accept, Mitigate, Transfer, Avoid)

Episode 37: Understanding Risk Treatment Options (Accept, Mitigate, Transfer, Avoid)

Risk treatment is a core function of CRISC professionals. This episode covers the four primary risk response strategies and explains how to apply them in different scenarios. You’ll also learn about …

00:12:47  |   Sat 05 Jul 2025
Episode 36: CRISC Domain 3 Overview: Risk Response and Reporting Essentials

Episode 36: CRISC Domain 3 Overview: Risk Response and Reporting Essentials

Domain 3 shifts the focus from identifying risk to acting on it. In this overview, we explain how CRISC candidates are expected to understand treatment planning, control evaluation, and reporting. Yo…

00:11:10  |   Sat 05 Jul 2025
Episode 35: Domain 2 Review: Key Takeaways and Exam Tips

Episode 35: Domain 2 Review: Key Takeaways and Exam Tips

Wrap up Domain 2 with a focused review of the essential concepts, models, and vocabulary covered throughout your risk assessment study. This episode reinforces how all elements—events, threats, vulne…

00:09:44  |   Sat 05 Jul 2025
Episode 34: Inherent Risk vs. Residual Risk

Episode 34: Inherent Risk vs. Residual Risk

A clear understanding of inherent and residual risk is critical for exam success. This episode explains how to define and compare these two key risk states, and why both are essential for making info…

00:10:29  |   Sat 05 Jul 2025
Disclaimer: The podcast and artwork embedded on this page are the property of Dr. Jason Edwards. This content is not affiliated with or endorsed by eachpod.com.