ISO / IEC 27001 menyediakan model untuk membangun, menerapkan, memelihara dan meningkatkan ISMS yang dikelola risiko
Kuningan, Jakarta Selatan | 15 – 16 February 2021 | Rp 15.500.000
Kuningan, Jakarta Selatan | 08 – 09 March 2021 | Rp 15.500.000
Kuningan, Jakarta Selatan | 26 – 27 April 2021 | Rp 15.500.000
Kuningan, Jakarta Selatan | 17 – 18 May 2021 | Rp 15.500.000
Jadwal Training 2021 Selanjutnya …
Program Description
This program is an international standard that provides the basis for effective management of confidential and sensitive information, and for the application of information security controls. It enables organizations to demonstrate excellence and prove best practice in Information Security management. Conformance with the standard requires commitment to continually improve control of confidential and sensitive information, providing reassurance to sponsors, shareholders and customers alike.
Re-released in 2013, ISO/IEC 27001 builds upon established foundations as the most widely recognized international standard specifically aimed at information security management. The adoption of an Information Security Management System (ISMS) is a strategic decision driving the coordination of operational security controls across all of the organizations electronic and physical information resources. The standard can be integrated with other management system framework standards, such as the quality standard ISO 9001 and ISO/IEC 20000 for IT service management.
ISO/IEC 27001 provides a model to establish, implement, maintain and continually improve a risk-managed ISMS. The design and implementation of the management system is tailored to the organization’s objectives, information assets, operational processes and governing legal and regulatory security requirements. The Practitioner level qualification assesses your application of ISO/IEC 27001 knowledge to given business scenarios, enabling the candidate to demonstrate more detailed knowledge and capability.
Program Objectives
At the end of the program, the participants will be able to:
- Apply the principles of ISMS policy and its information security scope, objectives, and processes within an organizational context
- Apply the principles of risk management including risk identification, analysis, and evaluation, and propose appropriate treatments and controls to reduce information security risk, support business objectives, and improve information security
- Analyze and evaluate deployed risk treatments and controls to assess their effectiveness and opportunities for continual improvement
- Analyze and evaluate the effectiveness of the ISMS through the use of internal audit and management review to continually improve the suitability, adequacy, and effectiveness of the ISMS
- Understand, create, apply, and evaluate the suitability, adequacy, and effectiveness of documented information and records required by ISO/IEC 27001
- Identify and apply appropriate corrective actions to maintain ISMS conformity with ISO/IEC 27001
ISO/ IEC 27001 Practitioner Program Modules
Module 1: Implementation, Key Publications and Concepts
- What are ISO/IEC 27001:2013 Standard, History and Definitions
- The ISO/IEC 27001 Certification
- The ISO/IEC 2700x Norms
- The Information Security Management System (ISMS)
Module 2: Relations with other standards
- Relation with the ISO 9001, ISO 14001, ISO 20000-1 Standards
- Relations with other standards and regulations (PCI DSS, SOGP, FIPS, HIPAA, SOX, etc.)
Module 3: Implementation and operating of the ISMS
- The Information Security Management System (ISMS)
- Management Responsibilities
- Internal Audit and Management of the ISMS
- Continuous Improvement of the ISMS
Module 4: Implementation of Information Security Controls
Module 5: Implementation of Making the ISO / IEC 27001 an organization
- The Reasons for an Audit
- The different Audit Types and its Expected Audit Results
- Audit the Evidence to Demonstrate Compliance
- Preparation and Participation to a Certification Audit
- Conducting an Audit
Target Audience
This qualification is aimed at those who are:
- Internal managers and personnel working to implement, maintain, and operate an ISMS within an organization
- External consultants supporting an organization’s implementation, maintenance, and operation of an ISMS
- Internal auditors who are required to have an applied knowledge of the standard
Duration
This program is 2 days of intensive training class.
Requirement
Candidate must hold ISO/IEC 27001 Foundation certification to qualify to sit the Practitioner exam.
Assessment
At the end of the program, the participants will be assessed with 2 and half hours of ISO/IEC 27001 Practitioner Exam.
Award
ISO/IEC 27001 Practitioner Certification will be awarded upon successfully passing the exam from APMG International.
SCHEDULE
This event will be held on the specified venue and schedule below:
- 08 – 09 Februari 2021
- 01 – 02 Maret 2021
- 26 – 27 April 2021
- 17 – 18 Mei 2021
- 14 – 15 Juni 2021
- 19 – 20 Juli 2021
- 23 – 24 Agustus 2021
- 13 – 14 September 2021
- 11 – 12 Oktober 2021
- 08 – 10 November 2021
- 06 – 07 Desember 2021
- Time: 09.00 AM – 05.00 PM
VENUE AND TIME
AXA Tower – Kuningan City, Jakarta Selatan
ISO/IEC 27001 Practitioner