Information Security Risks Management (ISRM) according to ISO/IEC 27001:2022 and ISO/IEC 27002:2022
Description:
- Ability to understand the process approach in Information Security Risk Management (ISRM)
- Ability to understand the basic principles and process of the ISRM according to the ISO 27001 requirements, ISO 27002 and ISO 27005 guidelines
- Ability to establish and maintain Information Security Risk criteria and methods
- Ability to identify the IS requirements of interested parties, threads and vulnerabilities
- Ability to perform the IS Risk Assessment and Treatment according to the ISO 27001 requirements
- Ability to verify the effectiveness of the implemented measures
Previous skills/knowledge: Basic knowledge of management systems.
Authorized Partners:
Teaching requirements: Trainer to be a qualified ISO9001/QMS and/or other MS with knowledge in ISMS, Risk Management and/or ISO 27001 Lead Auditor (Recommended)
Objectives to achieve: To get the necessary knowledge and skills to:
- Be able to understand the process approach in Information Security Risk Management
- Be able to understand the ISO 27001 standard requirements regarding ISRM
- Be able to perform the IS Risk Assessment and Treatment
- Be able to formulate Risk Treatment Plan and effectively manage Information Security Risks