Course Code: IT 192
612 Course Visits
ISO 27001 Information Security Management
Course Sector:
Information Technology
Course Dates and Locations
Choose a date and location to book your seat
No.
Date
Days
Location
Fees
Enrollment
01
21 - 25 Sep 2025
5 Days
Online, Virtual
$2,150
Introduction
Training course introducion / brief

ISO/IEC 27001:2022 is the newest version of ISO 27001 and was published in October 2022. While not significantly different from the previous standard, ISO 27001:2022 has notable changes that include scoping, planning, operation and performance evaluation. 

This training program is designed to help participants understand the principles of information security and the requirements for an information security management system based on ISO/IEC 27001:2022. This training program will cover the fundamental concepts and topics including: 

     Management system documentation and the requirements of ISO 27001;

  •         Planning, scoping and communication throughout your ISO 27001 project; and
  •       The key steps involved in an ISO 27001 risk assessment.
  •       The main information security management concepts, principles, and definitions
  •       The main ISO/IEC 27001 requirements for an information security management system (ISMS)
  •       Approaches, methods, and techniques used for the implementation and management of an 

Course Objectives
At the end of the training course, participants will be able to

  •        Explain the relation between ISO/IEC 27001 and other ISO standards, such as ISO/IEC 27002 and ISO/IEC 27003.

  •       Distinguish between other ISO Management system standards.
  •       Understand the structure of ISO/IEC 27001.
  •       Identify the main requirements of ISO/IEC 27001 for an ISMS.
  •       Gain an understanding of the main concepts of Information security.
  •       Learn the concepts of threat, vulnerability, and information security risk.
  •       Describe the main characteristics of Artificial intelligence and cloud computing.
  •       Analyse how ISMS objectives are set.
  •       Recognize the key roles and responsibilities of interested parties regarding the ISMS.
  •     Interpret the requirements of ISO/IEC 27001 regarding leadership and commitment of the top management.
  •       Interpret the development life cycle of an information security policy.
  •       Explore the different activities of the risk management process.

  •       Identify the criteria that should be considered when selecting a risk assessment methodology.

  •       Know how risks are identified, analysed, and evaluated.

  •       Explain the requirements of ISO/IEC 27001 regarding documented information.

  •       Identify the main processes necessary for the operation of an ISMS.

  •       Interpret the requirements of ISO/IEC 27001 regarding management review and continual improvement.

Course Audience
Who is this course for, and can benefit the most
This training course will benefit IT professionals and personnel interested in pursuing a career in cybersecurity, Network Administrators, and Cybersecurity Associates.
Course Outline
The course aims and learning outcomes

       Domain I: Fundamental Principles and Concepts of an Information Security Management System (ISMS) 

  •        The main standards of the ISO/IEC 27000 family
  •       Other information security regulations, industry standards, and best
  •       practices
  •       Advantages of implementing an ISMS based on ISO/IEC 27001
  •       The definition of management system and management system standards
  •       The structure of ISO/IEC 27001
  •      The main requirements of ISO/IEC 27001, clauses 4 to 10

          “Plan-Do-Check-Act” (PDCA) cycle

  •       The main concepts of information security related to ISO/IEC 27001
  •       The relationship between information security elements
  •       The concept of information confidentiality, integrity, and availability
  •       Information security vulnerabilities, threats, and risks
  •       The main characteristics of artificial intelligence and cloud computing

   Domain II: Information Security Management System (ISMS) – Identifying and interpreting the requirements of ISO/IEC 27001 for an ISMS

 

  •       Knowledge of typical ISMS objectives
  •       What typically constitutes an organization’s internal and external context
  •       Roles and responsibilities of interested parties relevant to ISMS
  •       The role of the top management in regards to the ISMS implementation
  •       Different policies, such as highlevel general, high-level specific, and topic specific
  •       Information security policy and its development life cycle
  •       The processes required to manage information security risks

        Selection of the risk assessment methodology

  •       Risk identification, analysis, and evaluation
  •       Risk treatment options
  •       Main competence and awareness activities
  •       Resource management during the ISMS implementation process
  •       Training and awareness activities and communication principles
  •       Types of documented information relevant to the ISMS
  •       Operational planning requirements of ISO/IEC 27001

 

         Concepts of monitoring, measurement, analysis, and performance

  •       Evaluation and their differences
  •       Internal and external audits
  •       Nonconformities, action plans, and corrective actions
  •       Management review activities
  •       Definition and benefits of continual improvement
  •       Type and function of security controls
  •       Annex A controls of ISO/IEC 27001

Providers and Associations
Providing the best training services and benefits to our valued clients
Boost certificate of completion
BOOST's Professional Attendance Certificate “BPAC” is always given to the delegates after completing the training course, and depends on their attendance of the program at a rate of no less than 80%, besides their active participation and engagement during the program sessions.
ENDORSED EDUCATION PROVIDER
Over all rating
Excellent
Average
Below average
Flexible deadlines
Customized dates accordance to your schedule
Shareable Certificate
Earn certificate upon completion
COURSE METHODOLOGY

Our Training programs are implemented by combining the participants' academic knowledge and practical practice (30% theoretical / 70% practical activities).

At The end of the training program, Participants are involved in practical workshop to show their skills in applying what they were trained for. A detailed report is submitted to each participant and the training department in the organization on the results of the participant's performance and the return on training. Our programs focus on exercises, case studies, and individual and group presentations.

Trending Courses
The most bespoke and flexible training courses
01
Sep
- 05 -
Days
Certified Business Analysis Professional- IIBA
Dubai, UAE
18
Aug
- 05 -
Days
ISO 55001 2014 Lead Auditor (Asset Management Systems) – Lead Auditor
Muscat, Oman
13
Apr
- 05 -
Days
OSHA: Occupational Safety and Health Administration Standards
Riyadh, KSA
10
Feb
- 05 -
Days
The Scheduling Professional (PMI-SP Exam Preparation)
Dubai, UAE
20
Jan
- 05 -
Days
Certified Treasury Professional
Dubai, UAE
24
Nov
- 03 -
Days
Happiness To Have and Hold
Dubai, UAE
15
Dec
- 05 -
Days
The Business Analyst (PBA) - PMI Certified
Dubai, UAE
17
Feb
- 05 -
Days
Artificial Intelligence for Leaders
Abu Dhabi, UAE
07
Apr
- 05 -
Days
IOSH Managing and Working Safely
Abu Dhabi, UAE
30
Jun
- 05 -
Days
The Risk Management Professional (PMI-RMP Exam Preparation)
Istanbul, Turkey
10
Aug
- 05 -
Days
Emotional Intelligence and Advanced Communication Skills for Leaders
Salalah, Oman
01
Sep
- 05 -
Days
Introduction to Machine Learning and Artificial Intelligence
Abu Dhabi, UAE
20
Jan
- 05 -
Days
Leading and Building a Positive, Motivated, and Empowered Teams
Online, Virtual
10
Nov
- 05 -
Days
Practical Negotiation Skills for Contract Management
Jeddah, KSA
14
Sep
- 05 -
Days
Competitive Bidding: Understanding Procurement Bids
Riyadh, KSA
18
May
- 05 -
Days
Professional in Business Analysis (PMI-PBA Exam Preparation)
Jeddah, KSA