ISMS Lead Auditor
ISO 27001 Information Security Management System
The ISO 27001 training enhances delegate’s understanding in Information Security Management System (ISMS) principles and develop necessary expertise to perform a Information Security Management System audit by applying widely recognized audit principles, procedures and techniques. With ISO/IEC 27001 certification you can demonstrate to existing and potential customers, suppliers and shareholders the integrity of data, systems and commitment to information security. It can also lead to new business opportunities with security-conscious customers; it can improve employee ethics and strengthen the notion of confidentiality across the enterprise. It also allows you to enforce information security and reduce the possible risk of fraud, information loss and disclosure. This training will give hands-on experience and the delegates will be able to master audit techniques and become competent to manage audit related program, team, communication with customers, conflict resolution and much more.
Target Audience
This qualification has been designed to develop knowledge and skills required to conduct a full audit of an organization in Information Security Management System targeting IT professionals who want to be aware of entire ISMS auditing process.
Course Prerequisites
There are no official prerequisites for ISO 27001 Auditor training course, however Shengel ED recommends following expertise:
- Knowledge of ISO 27001 requirements, including principles and concepts
- Basic understanding of core elements of a management system and the interrelationship between top management responsibility, policy, objectives, planning, implementation, measurement, review and continual improvement
Course Duration
The recommended guided learning hours for this qualification is 5 Days (40 hours).
Day 1: Introduction to Information Security Management System (ISMS) and ISO 27001
Day 2: IT security controls, audit principles, preparation and launching of an audit
Day 3: On-site audit activities
Day 4: Closing the audit
Day 5: Certification Exam
Learning Outcomes
Delegates will able to:
- Understand normative, regulatory and legal framework related to Information Security
- Comprehend fundamental principles Information Security and ISO 27001 certification process
- Prepare for ISO 27001 certification audit
- Apply risk based thinking, leadership and process management Effectively communicate during the audit
- Execute end-2-end Audit process : document review, interview, observation, technical verification, sampling techniques, evaluation, and validation
- Report audit findings and document nonconformities
- Conduct closing meeting and conclude ISO 27001 audit
- Evaluate corrective action plans
- Perform ISO 27001 surveillance and internal audit
Assessment Methodology
This qualification is assessed by written examination.