1. Introduction
Understand the basics of the standard, including how it is defined, its origins and an overview of its purpose.
2. Benefits
Learn about the benefits of implementing ISO 27001, including protecting sensitive data, adhering to GDPR and data protection regulations, and qualifying for preferred status contractors and tendering for contracts that require certification.
3. Implementation
Our learning provides a foundation for implementing an ISMS and achieving certification, with modules covering:
- Defining goals – the importance of aligning ISO certification with business goals.
- ISMS Elements – learn the elements of an Information Security Management System from scope to certification.
- Risk-based thinking – discover how to evaluate security risks, their threats and potential effects.
- Processes – understand a process approach to effective ISMS implementation.
- Plan Do Check Act – learn how the Plan Do Check Act process supports ISMS design and operation.
4. Security Clauses
Gain an understanding of the main ISO Security Clauses, categories and security controls needed for certification including:
- Information security policies
- Information security organisation
- Human resource security
- Asset management
- Access control
- Cryptography
- Physical and environmental security
- Operations security
- Communications security
- Systems acquisition, development and maintenance
- Supplier relationships
- Information security incident management
- Information security aspects of business continuity
- Compliance
5. Structure
Understand the main ISO 27001 Clauses, such as operations and performance monitoring, measuring and analysing, which make up the structure of the standard.
6. Certification
Learn how your organisation can gain certification, including building an information security management system, and the role auditing stages and surveillance surveys play.