Learning Objectives
The aim of the training is to provide the necessary knowledge and skills to conduct and manage effective Information Security Management System internal audits in accordance with ISO 27001 and ISO 19011 requirements. The workshops in the training content allow the participant to learn the audit process not only verbally but also by practice.
Target group
Managers who will ensure the effective establishment and implementation of ISO 27001 Information Security Management System in organizations, employees involved in the execution of ISO 27001 Information Security Management System and auditor consultants.
Content
-
Information Security Concept and General Definitions
-
Context of the Organization
-
Leadership
-
Activities to Identify Risks and Opportunities
-
Information Security Purposes and Planning to Achieve Them
-
Support
-
Operations Planning and Control
-
Internal Audit
-
Management Review
-
Improvement
-
Annex-A Articles
-
Control Types
-
Audit Principles
-
Auditor Features
-
Starting the Study
-
Field Inspection Activities (Opening Meeting, Interviews, Writing Nonconformities, Reporting, Closing Meeting)