ISO/IEC 27001 Foundation


This course enables participants to learn about the best practices for implementing and managing an Information Security Management System (ISMS) as specified in ISO/IEC 27001:2013, as well as the best practices for implementing the information security controls of the eleven domains of the ISO 27002. This training also helps to understand how ISO/IEC 27001 and ISO 27002 relate with ISO 27003 (Guidelines for the implementation of an ISMS), ISO 27004 (Measurement of information security) and ISO 27005 (Risk Management in Information Security).

Who Should Attend:

  • Members of an information security team
  • IT Professionals wanting to gain a comprehensive knowledge of the main processes of an Information Security Management System (ISMS)
  • Staff involved in the implementation of the ISO/IEC 27001 standard
  • Technicians involved in operations related to an ISMS
  • Auditors
  • CxO and Senior Managers responsible for the IT governance of an enterprise and the management of its risks

Course Content:

  • Introduction to the ISO/IEC 27000 family of standards
  • Introduction to management systems and the process approach
  • Fundamental principles information security
  • General requirements: presentation of the clauses 4 to 8 of ISO/IEC 27001
  • Implementation phases of ISO/IEC 27001 framework
  • Continual improvement of Information Security
  • Conducting an ISO/IEC 27001 certification audit
  • Principles and design of information security controls
  • Documentation of an information security control environment
  • Monitoring and reviewing the information security controls
  • Examples of implementation of information security controls based on ISO 27002 best practices

Duration:

2 Days

Exam Information:

  • Duration : 1 Hour
  • Question format : Essay-type questions
  • Exam language : English

Pre-requisite:

None

For more information write to us: