Empowering people - MailChimp

21 downloads 648 Views 359KB Size Report
30 Oct 2013 ... Changes in the 2013 versions of ISO 27001 Standard. ... in 2013. Currently the FDIS (Final Draft International Standard) version of the standard ...
Information Security Management Systems Changes in the 2013 versions of ISO 27001 Standard. 1 Day Course 30/10/2013 in Athens Introduction The well known international and widely accepted standard on information security management ISO 27001:2005 is changing in 2013. Currently the FDIS (Final Draft International Standard) version of the standard is published and the new issue of the standard (ISO 27001:2013) is expected to be released within October 2013. The 2013 issue of the standard is introducing a number of changes from its predecessor. It is important for professionals who deal with Information Security Management Systems to be informed on these changes. This course aims to train delegates on the differences between the ISO 27001:2005 issue with the expected ISO 27001:2013 issue of the standard.

Who Should Attend Designed for professionals such as consultants, internal auditors external auditors and ISMS professionals, who are involved in the design, implementation, and auditing of information security management systems.

Learning Objectives Participants will : •

Take a tour and be informed on the developments of all the standards that belong to the ISO 27k family of standards.



Identify and learn the differences between the ISO 27001:2005 and ISO 27001:2013 standards.



Identify and learn the differences between the information security control objectives as listed in the Annex A of ISO 27001:2005 and ISO 27001:2013 issues.

and will acquired skills to •

interpret the requirements of ISO 27001:2013 in the context of ISMS audit



understand the differences in the design, implementation and audit approach for the new versions of the standards.



Conduct a ‘gap audit’ on organizations that currently implement ISO 27001:2005, report the findings and make a project plan for upgrading Information Security Management Systems to ISO 27001:2013 requirements.

Course Details The course will run for one complete day (8 hours) in the 4 following four sections:

• • • • •

Section  0:  Introduction  and  Welcome   Section  1:  International  Standardization  and  Update  on  the  ISO  27k  Family  of  Standards   Section  2:  Major  Differences  in  the  new  ISO/IEC  FDIS  ISO  27001  2013  body  of  standard     Section  3:  Major  Differences  in  the  new  ISO/IEC  FDIS  ISO  27001  2013    Annex  A  Control  Objectives  of  standard   Section  4:  Exercises  

Course Tutors The training course is delivered by professional and experienced tutors, who are I/T and Information Security specialists. Course tutors are educated to postgraduate level, have completed a significant number of ISMS IRCA approved training seminars, and have conducted a significant number of ISMS external audits under the

ISOQAR Training

Empowering people

accreditation of UKAS. Further, course tutors have participated as ISMS technical experts in European funded programs providing ISMS technical support to beneficiaries.

Course Method The method for this training course consists of lecturing sessions and practical exercises where participants apply the ‘hands-on’ for better and deeper understanding. In particular, this method consist of: • • • •

Lecturing Team work Exercises / Workshops Team presentations.

Continuing Professional Development Participants will be provided with a training certificate. As this is a structured course, it entitles participants to request the acquiring of 8 hours of CPD points. Prerequisites Delegates that wish to participate in this course should have prior knowledge of the ISO 27001:2005. More information can be obtained by contacting Mrs Irene Vasilakaki at: Tel. (Office): +357 26 222172 Tel. (Call Forwarding from Greece): +30 210 6218021 e-mail: [email protected] [email protected]

ISOQAR Training

Empowering people