Summary
This one-day course introduces participants to the basic concepts of
implementing and managing an Information Security Management System (ISMS)
as specified in ISO/IEC 27001:2005. Participants will gain an
understanding of the
components of an ISMS, including its scoping and policy, risk management,
performance measurement, management commitment, internal audit, management
review and continuous improvement.
Back to Top»»
Who should participate?
-
IT Professionals wanting to gain an understanding of the principle components of an Information Security Management System (ISMS)
-
Managers responsible for implementing an ISMS
-
Staff involved in the implementation of ISO 27001
-
IT Subject Matter Experts / Advisors
-
Auditors
Back to Top»»
Learning objectives
Participants will gain an understanding of:
-
the fundamentals of information security
-
the interrelationships between ISO 27001 and other
27000-family standards (ISO 27000, 27002, ISO 27003, ISO 27004, and ISO 27005, …)
-
key components of an Information Security Management System (ISMS) in the context of ISO 27001
-
the concepts, approaches, standards, methods and techniques
which lead to effective management of an ISMS
-
the relationship between an Information Security Management System (including risk management, controls and compliance) and the interests of the various stakeholders associated with the ISMS
-
stages of the ISO 27001 Certification process
Back to Top»»
Syllabus
-
Introduction to the ISO 27000 family of standards
-
Introduction to management systems and their process approach
-
General requirements: presentation of clauses 4 to 8 of ISO27001
-
Implementation phases of ISO 27001
-
Introduction to risk management:
guidance from ISO 27005
-
Continuous improvement of the
ISMS
-
Conducting an ISO 27001 Certification
Audit
Back to Top»»
Prerequisites
None
Back to Top»»
Examination and Certification
None
Back to Top»»
General Information
Each participant will receive:
-
A student manual containing over 100 pages of information and practical
examples
-
A 7 CPE (Continuing
Professional Education) participation certificate
Back to Top»»