
ISO/IEC 27001:2022 is the newest version of ISO 27001 and was published in October 2022. While not significantly different from the previous standard, ISO 27001:2022 has notable changes that include scoping, planning, operation and performance evaluation.
This training program is designed to help participants understand the principles of information security and the requirements for an information security management system based on ISO/IEC 27001:2022. This training program will cover the fundamental concepts and topics including:
Management system documentation and the requirements of ISO 27001;
Explain the relation between ISO/IEC 27001 and other ISO standards, such as ISO/IEC 27002 and ISO/IEC 27003.
Explore the different activities of the risk management process.
Identify the criteria that should be considered when selecting a risk assessment methodology.
Know how risks are identified, analysed, and evaluated.
Explain the requirements of ISO/IEC 27001 regarding documented information.
Identify the main processes necessary for the operation of an ISMS.
Interpret the requirements of ISO/IEC 27001 regarding management review and continual improvement.
Domain I: Fundamental Principles and Concepts of an Information Security Management System (ISMS)
Our Training programs are implemented by combining the participants' academic knowledge and practical practice (30% theoretical / 70% practical activities).
At The end of the training program, Participants are involved in practical workshop to show their skills in applying what they were trained for. A detailed report is submitted to each participant and the training department in the organization on the results of the participant's performance and the return on training. Our programs focus on exercises, case studies, and individual and group presentations.