Workshop: Auditor ISMS

Inter-company training

Who is the training for?

All public

Level reached

Intermediate

Duration

3,00 day(s)

Price per participant: 1350 € excluding VAT, total: 1390,50 € 3% VAT included.

Language(s) of service

EN

Goals

After this training, the participant should be able to write or understand policies and procedures concerning:

  • List typical tasks of an information security manager
  • Understand auditor requirements like impartiality, competence, responsibility, openness, confidentiality and responsiveness to complaints
  • Explain the standard approach to audit an ISMS (ISO 27006) by heart
  • Debate compliance with security controls (ISO 27001 Annexe A)
  • Recognise ways to collect evidence for compliance or non compliance on any security control
  • Use technical documents and ISO standards (ISO 27007 and 27008) to plan and perform audits
  • Assess criticality of non compliances and propose improvements

Contents

In this workshop, participants will get acquainted to the standard ISO 27001, the recognised standard to manage information security in an organisation. This workshop trains both internal and external auditors to review and check correct implementation of an ISMS. It starts by explaining basics on audit (ISO 19011, ISO 17021, audit techniques and audit principles) and includes practical trainings and exercises.

The course teaches requirements on certification process (ISO 27006) and means to audit internally (inspired by ISO 27007 Guidelines for ISMS auditing and ISO 27008 Guidelines for auditors on information security controls). During the last day, there is a written knowledge test allowing to check if the participant acquired the competences to perform ISMS audits.

Certificate, diploma

Certificate of Audit Implementor, Attendance certificate

Mode of organisation

Please fill out the registration form in the "Training" section on our website www.itrust.lu

These courses might interest you