ISO/IEC 27002 Foundation & Implementation ISO 27001

Formation inter-entreprise

Durée

 16,00 heure(s)

Langue(s) de prestation

EN

Prochaine session

 17.09.2026
Lieu
 Luxembourg

Prix

520,00€

Qui organise cette formation ?

Fondation créée en 2015 par la Chambre de Commerce et l’Association des Banques et Banquiers Luxembourg (ABBL), la House of Training est un organisme agréé de formation professionnelle continue qui s'engage à contribuer activement à la compétitivité et à l'attractivité du Luxembourg en développant les compétences de ceux qui font vivre son économie.

À qui s'adresse la formation?

  • Professionals engaged in or responsible for information security management
  • Individuals seeking to gain knowledge about the main processes of an information security management system and information security controls
  • Individuals interested to pursue a career in information security

Objectifs

Foundation training course provides information on the fundamental concepts of information security, cybersecurity and privacy based on ISO/IEC 27002.

  • Explain the fundamental concepts of information security, cybersecurity, and privacy based on ISO/IEC 27002
  • Discuss the relationship between ISO/IEC 27001, ISO/IEC 27002, and other standards and regulatory frameworks.
  • Interpret the ISO/IEC 27002 organizational, people, physical, and technological controls in the specific context of an organisation.

Contenu

Day 1:Information Security Management System – ISO 27001/2023 versus ISO 27002/2022 (Information technology - Security techniques - Code of practice for information security controls)

  • Terminology: Management System, Process, Continuous Improvement, Incident etc.
  • Presentation of ISO 27001 (Information Security Management System) and ISO 2700
  • Context of organisation
    • Tools for the context analysis
    • Internal and external issue
  • Leadership
    • Policy
    • Rules and responsibilities
    • Values
  • Plan
    • Risk Assessment
    • Objectives and Action Plan
  • Support
    • Infrastructure
    • Traning and Skills
    • Communication
    • Documented Information
  • Operations
    • Operational Control
    • Interested parties (subcontractors and external parties)
    • Risk treatment
  • Performance
    • Monitoring KPI’s
    • Regulatory conformity (GDPR and others)
    • Internal Audit
    • Management Review
  • Continuous Improvement
    • Incidents, nonconformities and corrective actions

Day 2: People, physical, and technological controlsbased on ISO 27002: 2022

  • Clause 5 Organizational (37 controls)
  • Clause 6 People (8 controls)
  • Clause 7 Physical (14 controls)
  • Clause 8 Technological (34 controls)
  • Appendix A – Using attributes

Atelier: Case Study Exercise

  • Presentation by different groups

Prochaine session

Date
Ville
Language & prix
17.09.2026

18.09.2026
Luxembourg
EN 520,00€

Ces formations pourraient vous intéresser

EN
Journée
Informatique et systèmes d'information - Informatisation - Conduite projet informatique - Méthode agile