ISO/IEC 27002 Introduction Training Course
Why Should You Attend?
The ISO/IEC 27002 Introduction training course equips you with a comprehensive understanding of Information Security Management Systems (ISMS) and Information Security Controls as outlined in ISO/IEC 27002. By participating in this training, you will gain insight into the significance of ISMS and Information Security Controls, along with the benefits they offer to businesses, society, and governments.
Who Should Attend?
- Individuals interested in Information Security Management and Information Security Controls
- Professionals seeking to deepen their knowledge about the core processes of Information Security Management Systems and Information Security Controls
Learning Objectives
- Understand the Information Security standards and best practices for implementing and managing Information Security Controls
- Gain a clear understanding of the controls essential for managing Information Security risks, particularly relevant for government operations and public sector workflows.
Course Outline
Day 1: Overview of Information Security Controls Based on ISO/IEC 27002 for Government
Requirements
Runs with a minimum of 4 + people. For 1-to-1 or private group training, request a quote.
ISO/IEC 27002 Introduction Training Course - Booking
ISO/IEC 27002 Introduction Training Course - Enquiry
ISO/IEC 27002 Introduction - Consultancy Enquiry
Consultancy Enquiry
Testimonials (4)
The fact that there were practical examples with the content
Smita Hanuman - Standard Bank of SA Ltd
Course - Basel III – Certified Basel Professional
Speed of response and communication
Bader Bin rubayan - Lean Business Services
Course - ISO/IEC 27001 Lead Implementer
The trainer was extremely clear and concise. Very easy to understand and absorb the information.
Paul Clancy - Rowan Dartington
Course - CGEIT – Certified in the Governance of Enterprise IT
I genuinely enjoyed the real examples of the trainer.
Joana Gomes
Course - Compliance and the Management of Compliance Risk
Upcoming Courses
Related Courses
Introduction to ISO27001
7 HoursBasel III – Certified Basel Professional
21 HoursDescription:
Basel III is a global regulatory framework for bank capital adequacy, stress testing, and market liquidity risk. Initially agreed upon by the Basel Committee on Banking Supervision in 2010-2011, the implementation of these standards was extended to March 31, 2019. Basel III enhances bank capital requirements by increasing liquidity and reducing leverage.
Basel III complements rather than replaces Basel I and II by requiring different levels of reserves for various forms of deposits and other borrowings.
Navigating this complex and evolving regulatory landscape can be challenging. Our training program, accredited by the Basel Certification Institute, is designed to help you manage these changes effectively and understand their impact on your institution. The quality and relevance of our training materials are guaranteed to be current and practical.
Objectives:
- Prepare participants for the Certified Basel Professional Examination.
- Equip attendees with hands-on strategies and techniques for defining, measuring, analyzing, improving, and controlling operational risk within a banking organization.
Target Audience:
- Board members with risk oversight responsibilities
- Chief Risk Officers (CROs) and Heads of Risk Management
- Risk Management team members
- Compliance, legal, and IT support staff
- Equity and credit analysts
- Portfolio managers
- Rating agency analysts
Overview:
- Introduction to Basel norms and amendments to the Basel Accord (III)
- Regulations for market, credit, counterparty, and liquidity risk
- Stress testing methodologies and procedures, including how to formulate and conduct stress tests
- The potential impacts of Basel III on the international banking sector, with practical examples of its application
- The need for new Basel norms
- An in-depth look at the Basel III norms
- Objectives of the Basel III norms
- A timeline for Basel III implementation
CGEIT – Certified in the Governance of Enterprise IT
28 HoursDescription:
This four-day event (CGEIT training) is designed to ensure that participants pass the challenging CGEIT exam on their first attempt. The CGEIT qualification, awarded by ISACA, is an internationally recognized symbol of excellence in IT governance. It is tailored for professionals responsible for managing IT governance or those with significant advisory or assurance responsibilities in this area. Achieving CGEIT status will provide wider recognition in the marketplace and increased influence at the executive level, particularly for government.
Objectives:
This seminar has been designed to prepare participants for the CGEIT examination by enabling them to supplement their existing knowledge and understanding, thereby better preparing them to pass the exam as defined by ISACA.
Target Audience:
This training course is intended for IT and business professionals with significant IT governance experience who are undertaking the CGEIT exam.
Governance, Risk Management & Compliance (GRC) Fundamentals
21 HoursCourse Goal:
To ensure that an individual has a core understanding of GRC processes and capabilities, and the skills necessary to integrate governance, performance management, risk management, internal control, and compliance activities for government.
Overview:
- GRC Basic Terms and Definitions
- Principles of GRC
- Core Components, Practices, and Activities
- Relationship of GRC to Other Disciplines
ISO 27001:2023 Internal Auditor of the Information Security Management System
35 HoursObjectives
- Acquiring a comprehensive understanding of ISO 27001:2023 for government
- Developing expertise in conducting audits in compliance with the standard
- Familiarizing participants with best practices and methodologies
ISO 27001:2023 Lead Auditor of the Information Security Management System
35 HoursObjectives
- To acquire a comprehensive understanding of ISO 27001:2023 for government
- To gain knowledge on conducting audits in accordance with the standard
- To familiarize participants with best practices in information security management
ISO 27001:2023 Requirements
14 HoursObjectives
- To gain a thorough understanding of the changes introduced in the ISO 27001:2023 edition for government agencies.
- To acquire knowledge on conducting audits in compliance with the updated standard.
- To familiarize participants with best practices and methodologies for effective implementation and maintenance of information security management systems.
PECB ISO/IEC 27001 Foundation
14 HoursWhy Should You Attend?
The ISO/IEC 27001 Foundation training provides a comprehensive understanding of the essential elements required to implement and manage an Information Security Management System (ISMS) as outlined in ISO/IEC 27001. This training course will cover various components of the ISMS, such as policy development, procedures, performance measurement, management commitment, internal audits, management reviews, and continuous improvement.
Upon completion of this course, you will be eligible to take the certification exam and apply for the “PECB Certified ISO/IEC 27001 Foundation” credential. This certification demonstrates your proficiency in the fundamental methodologies, requirements, framework, and management approaches necessary for government and public sector organizations.
Who Should Attend?
- Individuals involved in Information Security Management within their organizations
- Professionals seeking to gain knowledge about the core processes of Information Security Management Systems (ISMS)
- Those interested in advancing their careers in Information Security Management for government and other public sector entities
Educational Approach
- Lecture sessions are enriched with practical questions and real-world examples to enhance understanding.
- Practical exercises include case studies and group discussions to reinforce learning.
- Practice tests simulate the Certification Exam environment, providing a realistic assessment of your knowledge and readiness.
PECB ISO/IEC 27001 Lead Auditor
35 HoursISO/IEC 27001 Lead Auditor Training
The ISO/IEC 27001 Lead Auditor training equips participants with the essential expertise to conduct Information Security Management System (ISMS) audits by applying widely recognized audit principles, procedures, and techniques.
Why Should You Attend?
This training course will provide you with the knowledge and skills necessary to plan and execute internal and external audits in accordance with ISO 19011 and the ISO/IEC 17021-1 certification process.
Through practical exercises, you will gain mastery of audit techniques and become competent in managing an audit program, leading an audit team, communicating effectively with customers, and resolving conflicts.
After acquiring the necessary expertise to perform these audits, you can take the examination and apply for the “PECB Certified ISO/IEC 27001 Lead Auditor” credential. Holding a PECB Lead Auditor Certificate will demonstrate your capabilities and competencies in auditing organizations based on best practices.
Who Should Attend?
- Auditors aiming to perform and lead ISMS certification audits
- Managers or consultants seeking to master the ISMS audit process
- Individuals responsible for maintaining compliance with ISMS requirements
- Technical experts preparing for an ISMS audit
- Expert advisors in Information Security Management
Learning Objectives
- Understand the operations of an ISMS based on ISO/IEC 27001
- Recognize the relationship between ISO/IEC 27001, ISO/IEC 27002, and other standards and regulatory frameworks
- Understand an auditor’s role in planning, leading, and following up on a management system audit according to ISO 19011
- Learn how to lead an audit and manage an audit team
- Learn how to interpret the requirements of ISO/IEC 27001 in the context of an ISMS audit
- Acquire the competencies of an auditor to plan, lead, draft reports, and follow up on audits in compliance with ISO 19011
Educational Approach
- This training combines theoretical knowledge with best practices used in ISMS audits
- Lecture sessions are supplemented with examples based on case studies
- Practical exercises include role-playing and discussions based on a case study
- Practice tests mirror the Certification Exam to prepare participants for government and industry certification requirements
PECB ISO/IEC 27001 Lead Implementer
35 HoursISO 9001 and ISO 27001 – Interpretation and Internal Auditor
21 HoursPECB ISO/IEC 27001 Transition
14 HoursISO/IEC 27001 Lead Auditor (certification course)
35 HoursWho Can Attend?
- Auditors seeking to perform and lead information security management system (ISMS) audits for government and private sector organizations
- Managers or consultants aiming to master the ISMS audit process for government entities
- Individuals responsible for maintaining conformity with ISMS requirements within their organization, including those in public sector roles
- Technical experts preparing for ISMS audits in various sectors, including government agencies
- Expert advisors in information security management for government and other organizations
Learning Objectives
By the end of this training course, participants will be able to:
- Explain the fundamental concepts and principles of an ISMS based on ISO/IEC 27001
- Interpret the ISO/IEC 27001 requirements for an ISMS from the perspective of an auditor, ensuring alignment with public sector standards
- Evaluate ISMS conformity to ISO/IEC 27001 requirements in accordance with fundamental audit concepts and principles, applicable to both government and private entities
- Plan, conduct, and close an ISO/IEC 27001 compliance audit, adhering to ISO/IEC 17021-1 requirements, ISO 19011 guidelines, and best practices in auditing for government and other organizations
- Manage an ISO/IEC 27001 audit program, ensuring effective governance and accountability in the public sector
Educational Approach
- This training is based on both theoretical knowledge and best practices used in ISMS audits for government and other sectors
- Lecture sessions are enriched with examples drawn from real-world case studies, including those relevant to the public sector
- Practical exercises include role-playing and discussions centered around a comprehensive case study, ensuring participants can apply their learning in real scenarios
- Practice tests are designed to closely mirror the Certification Exam, providing valuable preparation for certification in ISMS auditing for government and other organizations
Compliance and the Management of Compliance Risk
21 HoursAudience
All staff who require a comprehensive understanding of Compliance and Risk Management for government operations.
Format of the Course
The course will be delivered through a combination of:
- Facilitated Discussions
- Slide Presentations
- Case Studies
- Practical Examples
Course Objectives
By the end of this course, participants will be able to:
- Understand the key aspects of Compliance and the national and international initiatives aimed at managing related risks for government.
- Define methods for establishing a Compliance Risk Management Framework within an organization and its staff.
- Explain the roles of Compliance Officer and Money Laundering Reporting Officer, and how these positions should be integrated into governmental operations.
- Identify critical areas in Financial Crime, particularly as they pertain to International Business, Offshore Centers, and High-Net-Worth Clients for government.