Your organization needs to migrate from IT-centric information security management that is rife with a lack of proper segregation of duties, to a fully mature program that is planned, deployed, monitored, and continually improved according to a set of internationally recognized standards. Better yet, your organization can then move forward to have its information security management system certified by the International Organization for Standardization, or ISO.
Exploring the use of ISO/IEC standards 27001 and 27002, this course provides critical information for understanding the business drivers for information security, as well as the core concepts for planning and implementing information security according to the internationally accepted best practices. This course also includes thorough instruction of the recently released risk assessment framework ISO/IEC Standard 27005:2008, and how it can support the ISO 27001 information security management system.
Learn more...