ISO/IEC 27001. Information Security Management System. (Udemy.com)

Learn how your company can protect its information and get certified to ISO/IEC 27001

Created by: Cristian Vlad Lupa

Produced in 2019

icon
What you will learn

  • Understand the requirements of ISO/IEC 27001 and the information security controls
  • Participate in information security audits
  • Understand information security principles and concepts
  • Have a solid knowledge of the requirements for information security controls required by ISO/IEC 27001
  • Understand what is required for an organization to obtain ISO/IEC 27001 certification
  • Participate in the implementation of an Information Security Management Systems
  • Understand information security controls and guidelines for their implementation according to ISO/IEC 27002

icon
Quality Score

Content Quality
/
Video Quality
/
Qualified Instructor
/
Course Pace
/
Course Depth & Coverage
/

Overall Score : 86 / 100

icon
Course Description

ISO/IEC 27001 is one of the world's most popular standards and this ISO certification is very sought after, as it demonstrates a company can be trusted with information because it has sufficient controls in place to protect it.

Google, Apple, Adobe, Oracle and many other tech giants, financial institutions, health services providers, insurance companies, education institutions, manufacturing and service companies, large and small business around the world have decided to implement this standard and to get this certification as a proof of their capability to protect the confidentiality, integrity and availability of the information they process.

My course explains the requirements of ISO/IEC 27001 along with the controls in Annex A of this standard to help you understand how an information security management system can be implemented, what are the requirements of this standard and what are the solutions to ensure conformity.

My course is structured into 2 parts:

- the first one is about the management system requirements of ISO/IEC 27001. Context of the organization, leadership, information security policy and objectives, information security risk assessment and treatment, competence and awareness, documented information, operational planning and control, internal audit, management review, nonconformity and corrective action along with all the other requirements of the standard are discussed.

- the second part of the course is all about the controls from Annex A of ISO/IEC 27001 - there are 114 information security controls and all are addressed in the lessons. The topics cover aspects like: Information security policies, organization of information security, mobile devices and teleworking, security of human resources, asset management, classification of information, media handling, access control, user responsibilities, system and application access control, cryptography, physical and environmental security, equipment security, operations security, protection from malware, backup, logging and monitoring, control of operational software, technical vulnerability management, communications security, network security management, information transfer, system acquisition, development and maintenance, security in development and support, supplier relationships, incident management, information security as part of business continuity management, redundancies and compliance.

After going through all the lessons of this course you will have a solid knowledge of what is required for an information security management system, how can an organization implement such a system and get certified to ISO/IEC 27001.

With the information here you can:

- work as a consultant for the implementation of this system in different companies;

- participate in audits (internal or external) on ISO/IEC 27001;

- work in a company that implemented an information security management system or

- if you are manager or owner of a business you will know what is the international standard for information security and start implementing it in your company.

If none of the options above suits your profile you can use the information in my course for awareness on information security and get to know what are the security requirements that so many organizations around the world have decided to adopt.

From my course you will get condensed information that you can re-visit anytime you need and after going through this course Udemy offers the possibility to download a certificate for successful completion so you can demonstrate your competence in the information security field.
Who this course is for:
Information security managersInformation security consultants and auditorsInformation security officersInformation security risk specialistsManagers and business ownersPeople involved in the implementation and administration of information security management systems according to ISO/IEC 27001

icon
Instructor Details

Cristian Vlad Lupa

Cristian is an experienced auditor, consultant and trainer who has been working in conformity evaluation for more than 15 years,
Passionate about standards and how their use can help organizations improve, Cristian has been involved in more than 500 audits in different European countries as well as numerous consulting projects on different standards.

A certified auditor and risk assessor, Cristian is today the managing director of RIGCERT - accredited certification body operating in Europe.

icon
Reviews

4.3

281 total reviews

5 star 4 star 3 star 2 star 1 star
% Complete
% Complete
% Complete
% Complete
% Complete

By Ray K on 11/22/2020

Compared with other webinars, this gives a more comprehensive discussion on each chapter which will be useful for dive into the Infosec area.

By Eline van Tunen on 11/15/2020

Very informative, but it was a lot of information without interaction or examples to relate the material to.

By WPS Admin on 11/8/2020

Wenig Hintergrund.

By Pushkar Dilip Kumar on 11/8/2020

It was very informative

By semuka karim Diddy on 11/8/2020

it was a great and interesting lectures i have learn a lot

By Simon Sioto Maabe on 11/8/2020

Impressive. Content is explained in simple terms and detailed.

By Arlene Yuzon on 11/8/2020

Not to mention of Instructor's clear training/explanations on each of the topic, I must also say that I'll continue all courses related to ISMS :-) Thank you!

By Borut Kmetic on 11/8/2020

Good explanation of the standard and controls. Useful as future interpretation resource.

By Bryan Baxter on 11/1/2020

great course , learnt a lot

By Mariela Nonisa on 10/26/2020

It is great.

By Syed Shayan ul Hasnat on 10/17/2020

up till now the instructor has successfully made understood the course content.

By Sunil Vishwakarma on 10/16/2020

Nice one.