Learn the requirements of
ISO
27001, the Information Security Standard, and how to relate the requirements to
your business management system. Understand how process-based management systems
are responsible for ensuring customer requirements are determined and consistently
fulfilled over time.
Information security has come to the forefront recently because of risks stemming
from ever-improving technology and growing concerns of global threats. Managing
information security and how an organization protects valuable information assets,
including those owned by customers and suppliers, is only accomplished through well-designed
and implemented management systems. Information is both nebulous and critical –
the challenge facing any organization is:
- How do we discern valuable information from the minutia?
- How can we be assured our business process controls are in place and effective?
This class teaches how to develop an Information Security Management System (ISMS) with particular
concern for the three types of essential controls (contractual, hardware/software,
physical and human), the requirements of
ISO
27001 and how to audit a system for conformity to the standard. Learn how scope
and other front end work will differentiate between an effective, easily managed
system and an
ISMS
without focus and costing the organization more than it is meant to protect.
Who should attend?
- Information security professionals
- VP/Directors of IT or Information Security
-
ISO
Managers/Management Reps
- Process owners
- Systems professionals or people who want to understand how management systems work
You will learn how to:
- Plan and execute
ISMS
development or transition projects ensuring conformity to
ISO
27001
- Identify and implement the controls (contractual, hardware/software, physical and
human) necessary for ensuring the
ISMS
protects the information most valuable to the organization
- Perform risk assessment to identify information assets and the threats to and vulnerabilities
of those assets
- Relate fiduciary concerns to the performance of the
ISMS
- Develop reliable and pliable systems, particularly effective for organizations where
process objectives are constantly changing
- Determine and communicate the resources necessary to enable the system
- Communicate the roles and responsibilities within the
ISMS
to the organization
- Conduct and lead 1st, 2nd and 3rd party audits, particularly on undocumented systems
and audit for process effectiveness against measurable objectives
- Relate the capabilities of the organization to the expectations of customers, top
management and shareholders
- Use the
ISMS
to work proactively and not reactively
- Explain to customers how the organization protects information most valuable to
them
Please contact us with your particular learning and system issues. We will customize
the training to focus on the information specific to your organization and industry.
Duration: 5 days
Schedule and Public Pricing:
This class is only offered in-house.
In-house Pricing: Please contact us
Need help? Call us at 800 666 9001
|