ISO 27001

Master the essentials of Information Security Management Systems with our engaging course designed around ISO 27001 standards. Gain expertise in implementing robust security controls, managing risks effectively and ensuring continual improvement of information security practices. Enroll now to secure your knowledge in aligning with industry best practices.

Face-to-Face Apr 28, 2025 - Apr 30, 2025
updated
beginner
ISO 27001
MYR 5250

Training Provider Pricing

Material Fees: MYR 400

Pax:

MYR 7200

Features

3 days (9:00 AM - 5:00 PM)
21 modules
3 intakes
English

Subsidies

HRDC Claimable logo

What you'll learn

  • Design metrics and performance indicators according to ISO 27004.
  • Understand the legal framework and principles of information security.
  • Learn about the ISO 27001 certification process including audit stages.
  • Explore clauses 4 to 8 of ISO 27001 in detail.
  • Develop competencies in risk management following ISO 27005.
  • Create effective information security policies and manage external relationships.
  • Implement information security controls based on ISO 27002 guidelines.
  • Cultivate skills for incident management and operational handling of an ISMS.

Why should you attend?

This course provides a deep dive into the Information Security Management System (ISMS) as delineated by ISO 27001. It begins with an exploration of the normative, regulatory, and legal framework that underpins information security, alongside the fundamental principles that guide its practice. As participants progress, they will become familiar with the ISO 27001 certification process, including initial and full audits, and gain insights into the detailed presentation of ISO 27001 clauses 4 to 8. The course further delves into related standards such as ISO 27002 for implementing controls and ISO 27005 for risk management in information security. Emphasis is placed on key roles and responsibilities within ISMS, understanding threats and vulnerabilities, risk analysis, policy creation, and third-party relationships. Additionally, students will learn about information architecture, data flows, document management frameworks, incident management based on ISO 27035 guidance, and operations management of an ISMS. Finally, the course covers the development of metrics and performance indicators in line with ISO 27004.

Course Syllabus

Normative, regulatory and legal framework related to information security
Fundamental principles of information security
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
Lunch
1 hour
Short Break
15 mins
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
End of Day 1
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
Lunch
1 hour
Short Break
15 mins
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
End of Day 2
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
Lunch
1 hour
Short Break
15 mins
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
End of Day 3

Minimum Qualification

graduate

Target Audience

entry level
engineers
mid level managers
senior managers

Methodologies

lecture
slides
case studies
labs
group discussion
q&A

Why should you attend?

This course provides a deep dive into the Information Security Management System (ISMS) as delineated by ISO 27001. It begins with an exploration of the normative, regulatory, and legal framework that underpins information security, alongside the fundamental principles that guide its practice. As participants progress, they will become familiar with the ISO 27001 certification process, including initial and full audits, and gain insights into the detailed presentation of ISO 27001 clauses 4 to 8. The course further delves into related standards such as ISO 27002 for implementing controls and ISO 27005 for risk management in information security. Emphasis is placed on key roles and responsibilities within ISMS, understanding threats and vulnerabilities, risk analysis, policy creation, and third-party relationships. Additionally, students will learn about information architecture, data flows, document management frameworks, incident management based on ISO 27035 guidance, and operations management of an ISMS. Finally, the course covers the development of metrics and performance indicators in line with ISO 27004.

What you'll learn

  • Design metrics and performance indicators according to ISO 27004.
  • Understand the legal framework and principles of information security.
  • Learn about the ISO 27001 certification process including audit stages.
  • Explore clauses 4 to 8 of ISO 27001 in detail.
  • Develop competencies in risk management following ISO 27005.
  • Create effective information security policies and manage external relationships.
  • Implement information security controls based on ISO 27002 guidelines.
  • Cultivate skills for incident management and operational handling of an ISMS.

Course Syllabus

Normative, regulatory and legal framework related to information security
Fundamental principles of information security
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
Lunch
1 hour
Short Break
15 mins
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
End of Day 1
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
Lunch
1 hour
Short Break
15 mins
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
End of Day 2
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
Lunch
1 hour
Short Break
15 mins
Short Break
15 mins
Short Break
15 mins
Recap and Q&A
15 mins
End of Day 3
MYR 5250

Training Provider Pricing

Material Fees: MYR 400

Pax:

MYR 7200

Features

3 days (9:00 AM - 5:00 PM)
21 modules
3 intakes
English

Subsidies

HRDC Claimable logo

Minimum Qualification

graduate

Target Audience

entry level
engineers
mid level managers
senior managers

Methodologies

lecture
slides
case studies
labs
group discussion
q&A
Close menu