Get in Touch

Course Outline

I. Introduction to Information Security
1. Systemic management of information security
2. Benefits and added value for the organization

II. Overview of ISO 27001 Requirements
1. Key requirements of the standard
2. Critical areas for attention
3. Identification of documentation needs
4. Overview of Annex A

III. Information Security Management System Aligned with ISO 27001
1. Core components of the ISMS per ISO 27001
2. Exercises in interpreting and analyzing ISO 27001 requirements

IV. Audits – General Overview
1. Introduction to auditing concepts
2. Comprehensive audit process
3. Audit criteria
4. Types of audits

V. Audit Planning and Preparation
1. Defining audit criteria and scope
2. Assembling the audit team
3. Process-oriented approach to internal audits
4. Key considerations for developing control question lists
5. Executing audits per ISO 19011:2018
6. Practical exercises

VI. Conducting the Audit – On-site Procedures
1. Auditing techniques
2. Collecting objective evidence
3. Identifying and demonstrating non-conformities
4. Competencies of an effective auditor
5. Practical exercises

VII. Documenting Audit Findings
1. Crafting precise findings
2. Documenting non-conformities
3. Identifying and documenting insights and improvement opportunities
4. Summary of audit results – Audit Report
5. Practical exercises

VIII. Effective Post-Audit Activities
1. Responsibilities for initiating corrective actions
2. The importance of accurately determining root causes of non-conformities
3. Defining corrective actions
4. Evaluating the effectiveness of implemented actions
5. Post-audit activities related to insights and improvement potentials
6. Practical exercises

IX. Discussion and Summary

Requirements

Target Audience

  • Professionals preparing for the role of Lead Auditor for ISO 27001:2023.
  • Any individual with an interest in the subject matter.
 35 Hours

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories