Information security audit

Duration 3 days

The seminar can be held online on the official International Business Academy platform. On completion of the training you will be given a link to the recording, which will be available for one month.
*dates are subject to additional confirmation

Seminar dates

Schedule: 10:00 to 17:30
Cost 365 000 tenge

excluding VAT

* VAT of 16% will be added to the invoice

The price includes:

  • Seminar
  • Exclusive handout materials
  • IBA certificates
  • Notepads, pens
  • Lunches and 2 coffee breaks
Register

The training will cover:

  • the main provisions of the legal and regulatory-methodological framework governing information security audit processes in organisations of various forms of ownership
  • the main types, methods, principles and criteria for conducting IS audits
  • the organisational and methodological foundations of conducting an IS audit
  • the procedure, content and rules for developing the documents drawn up at the preparation stage, during and following an IS audit of organisations of various forms of ownership
  • the basic rules for selecting and subsequently using the software and technical tools used in conducting an IS audit

On completing the training, course participants will be able to:

  • develop the documents drawn up at the preparation stage, during and following an IS audit of organisations of various forms of ownership
  • build relationships correctly with the representatives of the organisations (the company's structural units) involved in conducting the IS audit
  • collect audit evidence and record it correctly
  • use network scanners effectively to audit the security of information systems

And also master:

  • the skills of working with the legal and regulatory-methodological framework for information security auditing
  • the skills relating to the main types, methods, principles and criteria of information security auditing
  • the skills of managing an information security audit programme
  • the skills of independently developing and drawing up organisational and administrative documentation at the preparation stage, during and following an information security audit
  • the skills of conducting an information security audit of organisations of various forms of ownership

Successful completion of this course programme will enable specialists to:

  • effectively organise and conduct an information security audit of organisations of various forms of ownership
  • independently develop and draw up organisational and administrative documentation at the preparation stage, during and following an information security audit
  • build relationships correctly with the representatives of companies (organisations) and structural units involved in conducting an information security audit
  • independently use tools to audit the security of information systems

Target audience

  • employees of organisations engaged to conduct information security audits, who operate information systems and resources or are responsible for their development and implementation
  • heads and staff of IS and IT structural units (CIO, CSO, CISO)
  • employees of companies providing consulting and outsourcing services in the field of information security

Required background: a general understanding of information security management.

Key Account Manager

Natalya Batukhtina
ns@iba.kz +7 702 777 44 11 WhatsApp

Key Account Manager

Юлия Копцева
manager@iba.kz +7 702 777 44 11 WhatsApp
Seminar programme Download programme as PDF
Get a personalised commercial proposal in PDF format
Download proposal as PDF

Programme

Day 1

The relevance of an information security audit of the organisation. Basic terms and definitions

Legal and regulatory-methodological foundations of information security auditing

Main types, methods, principles and criteria of information security auditing

Day 2

Managing the information security audit programme

Preparing for an information security audit, composition and roles of participants

Conducting an information security audit

Day 3

Procedure, content and rules for developing the documents drawn up at the preparation stage, during and following an IS audit

Using tools to audit the security of information systems

The auditor competence concept

All areas