Course Outline

Day 1: Introduction to ISO 27005, Concepts, and Implementation of a Risk Management Program for Government

  • Section 01: Course Objectives and Structure
  • Section 02: Standard and Regulatory Framework for Government
  • Section 03: Concepts and Definitions of Risk for Government
  • Section 04: Implementing a Risk Management Program for Government
  • Section 05: Establishing Context for Government Operations

Day 2: Risk Identification, Evaluation, and Treatment as Specified in ISO 27005 for Government

  • Section 06: Risk Identification for Government
  • Section 07: Risk Analysis for Government
  • Section 08: Risk Evaluation for Government
  • Section 09: Quantitative Risk Assessment Methods for Government
  • Section 10: Risk Treatment for Government

Day 3: Information Security Risk Acceptance, Communication, Consultation, Monitoring, and Review for Government

  • Section 11: Information Security Risk Acceptance for Government
  • Section 12: Information Security Risk Communication and Consultation for Government
  • Section 13: Information Security Risk Monitoring and Review for Government

Day 4: Risk Assessment Methodologies for Government

  • Section 14: OCTAVE Method for Government
  • Section 15: MEHARI Method for Government
  • Section 16: EBIOS Method for Government
  • Section 17: Harmonized Threat and Risk Assessment (TRA) Method for Government
  • Section 18: Applying for Certification and Closing the Training for Government

Day 5: Certification Exam for Government

Requirements

A thorough understanding of ISO/IEC 27005 is essential, along with comprehensive knowledge of risk assessment and information security practices for government. This foundation ensures effective management and mitigation of risks in alignment with public sector workflows, governance, and accountability requirements.
 35 Hours

Number of participants


Price per participant

Testimonials (4)

Upcoming Courses

Related Categories