Course

Information Security Management Systems – ISMS

ISO/IEC 27001:2013 ISMS Implementer training

Information is a valuable asset for an organization. Securing Information of all types throughout its lifecycle is a multifold challenge. Technology alone is not sufficient to implement robust Information Security Program for an organization. Technology has to be backed by People and Processes and driven by management framework to reap the benefits of Information Security initiatives. The workshop-based training teaches participants the necessary steps for implementation of information security management system based on ISO 27001:2013 requirements.

After the training completion participants will be able to:

  • Understand requirements of ISO 27001:2013
  • Understand issues and interested parties requirements
  • Develop scope for ISO 27001 and policy
  • How to identify information assets and information risk ownership
  • How to identify threats, vulnerabilities and impacts
  • Conduct Risk Assessment
  • Prepare Risk Treatment plans
  • Prepare Statement of Applicability
  • Develop ISMS implementation plan