Skip Navigation LinksTraining > Course Offerings > ISMS Lead Auditor Using ISO 27001
Hot Topics
Information Security Management Systems Lead Auditor Using ISO 27001


Sign up now for QMS Lead Auditor training in Las Vegas, NV

Related Links

Learn the requirements of ISO 27001, the Information Security Standard, and how to relate the requirements to your business management system. Understand how process-based management systems are responsible for ensuring customer requirements are determined and consistently fulfilled over time.

Information security has come to the forefront recently because of risks stemming from ever-improving technology and growing concerns of global threats. Managing information security and how an organization protects valuable information assets, including those owned by customers and suppliers, is only accomplished through well-designed and implemented management systems. Information is both nebulous and critical – the challenge facing any organization is:

  • How do we discern valuable information from the minutia?
  • How can we be assured our business process controls are in place and effective?

This class teaches how to develop an Information Security Management System (ISMS) with particular concern for the three types of essential controls (contractual, hardware/software, physical and human), the requirements of ISO 27001 and how to audit a system for conformity to the standard. Learn how scope and other front end work will differentiate between an effective, easily managed system and an ISMS without focus and costing the organization more than it is meant to protect.

Who should attend?

  • Information security professionals
  • VP/Directors of IT or Information Security
  • ISO Managers/Management Reps
  • Process owners
  • Systems professionals or people who want to understand how management systems work

You will learn how to:

  • Plan and execute ISMS development or transition projects ensuring conformity to ISO 27001
  • Identify and implement the controls (contractual, hardware/software, physical and human) necessary for ensuring the ISMS protects the information most valuable to the organization
  • Perform risk assessment to identify information assets and the threats to and vulnerabilities of those assets
  • Relate fiduciary concerns to the performance of the ISMS
  • Develop reliable and pliable systems, particularly effective for organizations where process objectives are constantly changing
  • Determine and communicate the resources necessary to enable the system
  • Communicate the roles and responsibilities within the ISMS to the organization
  • Conduct and lead 1st, 2nd and 3rd party audits, particularly on undocumented systems and audit for process effectiveness against measurable objectives
  • Relate the capabilities of the organization to the expectations of customers, top management and shareholders
  • Use the ISMS to work proactively and not reactively
  • Explain to customers how the organization protects information most valuable to them

Please contact us with your particular learning and system issues. We will customize the training to focus on the information specific to your organization and industry.

Duration: 5 days

Schedule and Public Pricing:

This class is only offered in-house.

In-house Pricing: Please contact us

Need help? Call us at 800 666 9001


ISO Standards on this site have been provided by ANSI, the U.S. Member of the ISO