ISO/IEC 27002 Manager enables participants to gain the knowledge and skills needed to assist an organisation in selecting, implementing, and managing ISO/IEC 27002-based information security controls. The course will assist participants in developing a thorough understanding of how to treat information security risks
Fees
COURSE OUTLINES
Day 1: Introduction to ISO/IEC 27002
- Training course objectives and structure
- Standards and regulatory frameworks
- Fundamental concepts of information security, cybersecurity, and privacy
- Information security management system (ISMS) and ISO/IEC 27002
- Selection and design of controls
- Information security policies, procedures, and roles and responsibilities
Day 2 Information assets, people controls, physical controls, and operational security controls
- Information assets and access controls
- People controls
- Physical controls
- Operational security controls
Day 3 Information security incident management and monitoring of information security controls
- Protection of information systems and network controls
- Supplier relationships and ICT supply chain
- Information security incident management
- Information security testing
- Monitoring information security controls
- Continual improvement
- Closing of the training course
- Certification Exam (2 Hours)
- Domain 1: Fundamental principles and concepts of information security, cybersecurity, and privacy.
- Domain 2: Information security controls based on ISO/IEC 27002.
COURSE DETAILS
- Training material containing over 350 pages of information and practical examples will be distributed.
- In case of exam failure, you can retake the exam within 12 months for free.
- Explain the fundamental concepts of information security, cybersecurity, and privacy based on ISO/IEC 27002.
- Discuss the relationship between ISO/IEC 27001, ISO/IEC 27002, and other standards and regulatory frameworks.
- Support an organisation in effectively determining, implementing, and managing information security controls based on ISO/IEC 27002.
- This training is based on both theory and best practices used in the implementation and management of information security controls.
- Participants are encouraged to communicate and discuss with each other while partaking in exercises and quizzes.
- The structure of quizzes is similar to that of the certification exam.
PREREQUISITES
The main requirements for participating in this training course are having a fundamental understanding of ISO/IEC 27002 and comprehensive knowledge of information security.