Certified in Risk and Information Systems Control (CRISC) Training in Norway

  • Learn via: Online Instructor-Led / Classroom Based / Onsite
  • Duration: 4 Days
  • Level: Expert
  • Price: From NOK 50,000 +TAX
  • Upcoming Date:
  • UK & Norway Based Global Training Provider
  • Build the confidence to identify, assess and manage IT risks across the enterprise.
  • Designed for IT risk and compliance professionals who want to formalise and demonstrate their expertise.
  • Delivered with official ISACA courseware and access to the 2025 Questions, Answers & Explanations (QAE) Database.


The Certified in Risk and Information Systems Control (CRISC) course is a four-day official ISACA training programme designed to build practical IT risk management knowledge while preparing participants for the CRISC examination.

CRISC is a globally recognised certification focused on IT and enterprise risk management, helping professionals connect technology-related risk with business priorities and organisational objectives. The course covers the four CRISC domains: Governance, Risk Assessment, Risk Response and Reporting, and Technology and Security.

Through realistic business scenarios and exam-focused activities, participants develop their ability to identify, assess, prioritise and manage IT risks while understanding how effective risk management supports wider enterprise goals.

As part of the learning experience, participants receive official ISACA course materials together with access to the Questions, Answers & Explanations Database 2025, providing comprehensive and current resources for exam preparation.

We can organize this training at your preferred date and location. Contact Us!

Prerequisites

Participants should have:

  • At least three years of professional experience in IT risk management or control, covering a minimum of two CRISC domains, including either Governance or Risk Assessment
  • Familiarity with risk frameworks, organisational governance and control processes

Who Should Attend

This course is particularly relevant for:

  • IT risk and compliance professionals working towards CRISC certification
  • Business analysts, project managers and auditors involved in risk-related activities
  • IT managers responsible for risk oversight
  • Information security officers
  • Governance and risk management specialists

What You Will Learn

By the end of the course, participants will be able to:

  • Explain the governance structures, frameworks and organisational culture factors influencing IT risk management
  • Identify, assess and prioritise IT risks using established risk assessment methodologies
  • Develop and implement risk response strategies that support enterprise objectives
  • Design, monitor and evaluate IT controls for effectiveness and maturity
  • Communicate relevant risk and control information to stakeholders to support informed decision-making
  • Recognise how emerging technologies, regulations and security practices can affect enterprise risk
  • Apply practical exam strategies and preparation techniques for the CRISC examination

Training Outline

Introduction to the CRISC Exam

  • Overview of the CRISC certification
  • Exam structure and scoring
  • Effective exam preparation strategies

Domain 1 – Governance

  • Strategy, goals and objectives
  • Organisational structure, culture, ethics and accountability
  • Risk appetite and risk tolerance
  • Enterprise risk frameworks
  • Policies and standards
  • Legal and regulatory requirements
  • Maintaining risk registers and risk profiles
  • Stakeholder communication and reporting

Domain 2 – Risk Assessment

  • Identifying risk events and applying threat modelling
  • Vulnerability management and scenario development
  • Business Impact Analysis
  • Residual risk evaluation
  • Risk analysis methodologies
  • Updating risk registers
  • Developing a risk-aware culture through training and awareness

Domain 3 – Risk Response and Reporting

  • Risk response options and treatment planning
  • Control design, selection and implementation
  • Managing issues, findings and exceptions
  • Vendor and supply chain risk management
  • Monitoring and analysing KPIs, KRIs and KCIs
  • Reporting emerging risks to relevant stakeholders

Domain 4 – Technology and Security

  • Technology roadmaps and enterprise architecture
  • IT operations and lifecycle management
  • Disaster recovery
  • Security frameworks and standards
  • Security awareness training
  • Data lifecycle management
  • Data privacy and protection
  • Emerging technologies and their potential risk implications


Exam Readiness

The final part of the course supports participants in developing an effective approach to the certification examination through:

  • Mock exam review
  • Time-management techniques
  • Test-taking and question-answering strategies

CRISC Exam and Assessment

The course prepares participants for the CRISC certification examination. The CRISC exam is booked separately through ISACA and is delivered online.

The examination:

  • Contains 150 multiple-choice questions
  • Has a duration of four hours
  • Is scored on a scale of up to 800
  • Requires a minimum score of 450 to pass

Practice questions and mock examination activities are incorporated into the course to support preparation.

CRISC Exam Distribution from 3 November 2025

From 3 November 2025, the four CRISC domains remain unchanged, although their weighting within the examination is adjusted as follows:

  • Domain 1 – Governance: 26%
  • Domain 2 – Risk Assessment: 22%
  • Domain 3 – Risk Response and Reporting: 32%
  • Domain 4 – Technology and Security: 20%

Hands-On Learning

Alongside examination preparation, the course provides opportunities to apply risk management concepts to realistic organisational situations. Participants engage in:

  • Scenario-based group exercises and tabletop simulations
  • Workshops focused on developing and analysing risk registers
  • Mock examination practice supported by instructor-led review
  • Case studies based on realistic enterprise risk challenges

Important Change to ISACA Product Access Periods

Effective 16 April 2026, ISACA is reducing product access periods from 12 months to 6 months across exams, QAE products, Online Review Courses, non-sponsored webinars and Virtual Workshops.

How the New Access Periods Work

1. Assignment and Redemption Window

Products must be assigned and redeemed within 6 months of the original purchase date.

2. Access and Completion Window

Once a product has been redeemed, learners have 6 months of access in which to use it. This period includes accessing learning materials, scheduling examinations and, where applicable, sitting the examination.

What Does This Mean for Learners?

  • Review Manuals: Long-term access will continue.
  • QAE Databases and Online Review Courses: Available for 6 months following redemption.
  • Exams: Must be scheduled and completed within 6 months of redemption.

Participants are encouraged to redeem their products promptly and plan their study and examination schedules early so that they can make full use of the available access period.

Why Choose Us

Experience Certified in Risk and Information Systems Control (CRISC) in Norway through Bilginç IT Academy's live and interactive virtual classroom environment, accessible from your home, office, or any location. Connect with expert trainers in real time and bring the energy of classroom learning into the digital experience.

  • Live Instructor-Led Sessions: Join scheduled training sessions with your instructor and fellow delegates in real time.
  • Interactive Learning Experience: Take part in discussions, practical exercises, group activities, and Q&A sessions throughout the course.
  • Expert Trainer Network: Learn from experienced trainers with strong industry backgrounds and practical field expertise.
  • Over 30 Years of Training Expertise: Benefit from Bilginç IT Academy's long-standing experience in delivering professional training since 1995.
  • Flexible and Scalable Delivery: Access live virtual classrooms from Norway and worldwide, with flexible planning options for individual and corporate training needs.

Experience Certified in Risk and Information Systems Control (CRISC) in a focused classroom environment in Norway. Bilginç IT Academy's carefully selected training venues provide a professional setting where delegates can interact directly with expert trainers and peers.

  • Experienced Trainers: Learn from specialists with extensive field experience and real-world knowledge.
  • Professional Training Venues: Attend courses in comfortable, well-equipped classrooms designed to support effective learning.
  • Focused Classroom Experience: Benefit from limited class sizes that encourage discussion, interaction, and personalized support.
  • Quality-Driven Learning: Develop practical skills through structured, up-to-date, and professionally designed training content.

Meet your team's training needs with Bilginç IT Academy's onsite Certified in Risk and Information Systems Control (CRISC) in Norway solution, delivered at your office or preferred location. Align your team's development with your business goals through a training experience tailored to your organization.

  • Tailored Course Content: Adapt the training program to your organization's projects, team structure, and specific business requirements.
  • Time and Cost Efficiency: Reduce travel, accommodation, and operational costs while maximizing the value of your training investment.
  • Team-Focused Learning: Help your employees develop around the same knowledge base and strengthen collaboration across your organization.
  • Simplified Planning and Tracking: Manage the training process, participant development, and organizational requirements with greater control.


Contact us for more detail about our trainings and for all other enquiries!

Certified in Risk and Information Systems Control (CRISC) Training Course in Norway Schedule

Join our public courses in our Norway facilities. Private class trainings will be organized at the location of your preference, according to your schedule.

We can organize this training at your preferred date and location.
23 august 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX
31 august 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX
06 september 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX
10 september 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX
04 oktober 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX
08 oktober 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX
01 november 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX
20 november 2026 (4 Days)
Oslo, Bergen, Stavanger
NOK 50,000 +TAX

Other trainings and courses related to the Certified in Risk and Information Systems Control (CRISC)

Norway represents a pinnacle of digital integration, with Oslo, Bergen, and Stavanger leading the way in sustainable technology and maritime informatics. Oslo, the economic and governmental hub, is home to the University of Oslo, an institution that has been a catalyst for scientific research since 1811. The Norwegian tech sector is characterized by its early adoption of green-tech and advanced automation within the energy sector. Our training initiatives in Norway focus on delivering high-level IT skills that align with the country's high standards for digital governance and environmental sustainability. By fostering a deep understanding of software architecture and cybersecurity, we support Norway's transition into a fully digitized, carbon-neutral economy through professional excellence.

By using this website you agree to let us use cookies. For further information about our use of cookies, check out our Cookie Policy.