Course Outline
- The need for Information Security for government
- Information Security Management System (ISMS) concepts and definitions
- Information risk management
- Corporate governance
- Organizational responsibilities
- Policies, standards, and procedures
- ISO/IEC 27002, 27001, and 13335
- Information security controls
- Incident management
- Legal framework - personal data, Data Protection Act (DPA), Computer Misuse Act (CMA), Intellectual Property Rights (IPR) and copyright, HR and employment issues
- Cryptographic models
- Data Communications and networks
- Physical security
- Auditing and gap analysis
- Training and raising awareness
- Business continuity
- Security investigations and forensics
Requirements
Although often perceived as an IT issue, information security is in fact a subject relevant to all business units within the government. The CiSMP program is ideal for members of information security management teams, IT managers, security and systems managers, information asset owners, and employees with legal compliance responsibilities for government.
The course will serve as a stepping stone to more advanced qualifications (either managerial or technical) and complements existing project management and service management programs for government.
Testimonials (5)
The fact that there were practical examples with the content
Smita Hanuman - Standard Bank of SA Ltd
Course - Basel III – Certified Basel Professional
Speed of response and communication
Bader Bin rubayan - Lean Business Services
Course - ISO/IEC 27001 Lead Implementer
The knowledge and understanding of the trainer on the training material was exceptional. The trainer was well aware of the subject, provided practical examples in relevance. I would highly recommend him as a trainer for this training.
Tayyeb Mahmood - Ajman Municipality
Course - COBIT 2019 Foundation
The trainer was extremely clear and concise. Very easy to understand and absorb the information.
Paul Clancy - Rowan Dartington
Course - CGEIT – Certified in the Governance of Enterprise IT
The trainer was very motivated and knowledgeable. The trainer was not only capable of information transfer, she also brought it with humor to lighten the dry theoretical training subject.