Information security management system

Duration 5 days

The seminar can be held online on the official International Business Academy platform. On completion of the training you will be given a link to the recording, which will be available for one month.
*dates are subject to additional confirmation

Seminar dates

Schedule: 10:00 to 17:30
Cost 544 500 tenge

excluding VAT

* VAT of 16% will be added to the invoice

The price includes:

  • Seminar
  • Exclusive handout materials
  • IBA certificates
  • Notepads, pens
  • Lunches and 2 coffee breaks
Register

The course aims to familiarise participants with the modern approach to ensuring information security (IS), to reveal the importance of IS for the successful operation of the enterprise, to explain the main stages of developing and implementing an IS management system, and to introduce the main provisions of the world's leading IS standards.

The course is intended for heads of structural units of organisations, heads and specialists of IT units responsible for security and/or technical support in the field of IT, staff of information security units and security services, representatives of analytical services, risk managers and internal audit staff.

Course participants should have work experience in information technology or information security units.

On completing this course participants will be able to:

  • Draw up a plan for developing and implementing an ISMS at their own enterprise
  • Define mechanisms and approaches to managing current IS risks
  • Take a well-founded approach to selecting controls for the required level of security
  • Assess the quality of the work performed by internal and external IS auditors

Key Account Manager

Natalya Batukhtina
ns@iba.kz +7 702 777 44 11 WhatsApp

Key Account Manager

Юлия Копцева
manager@iba.kz +7 702 777 44 11 WhatsApp
Seminar programme Download programme as PDF
Get a personalised commercial proposal in PDF format
Download proposal as PDF

Programme

Day 1

Introduction to the ISO/IEC 27001-2013 standard

The mechanism of interaction and application of the standards. Their structure. Terms and definitions

Annex «A» of the ISO/IEC 27001 standard. The concept of security measures and controls

Fundamentals of building an ISMS. Scope. The concept and significance of IS risks

Day 2

Analysing the enterprise's assets

IS risk management

ISMS documentation

Day 3

Implementing the Information Security Management System

Types of assets. Their inventory

Factors affecting the value of assets, their ranking

Identifying and assessing risks. Assessment criteria

Day 4

Control mechanisms and objectives

Defining procedures for implementing IS controls

Completing the ISMS implementation

Day 5

Internal audit of the ISMS for compliance with the requirements of the ISO/IEC 27001 standard

The need for an audit, its types, goals and objectives. The auditor's duties

Completing the audit

All areas