COURSE DESCRIPTION:
This two-day training program is designed to provide participants with the knowledge and practical skills required to effectively monitor, measure, evaluate, and audit an Information Security Management System (ISMS) based on ISO/IEC 27001:2022.
The course focuses on ensuring the ongoing effectiveness, compliance, and continual improvement of an organization's ISMS. Participants will gain a thorough understanding of ISO/IEC 27001:2022 requirements related to performance evaluation, internal auditing, management review, corrective actions, and continual improvement. The program also
covers the planning and execution of internal audits, audit reporting, nonconformity management, evidence gathering techniques, and preparation for certification and surveillance audits.
By the end of the course, participants will be able to:
• Understand the monitoring, measurement, analysis, and evaluation requirements of ISO/IEC 27001:2022
• Establish meaningful ISMS metrics, key risk indicators (KRIs), and key performance indicators (KPIs)
• Plan, conduct, document, and report internal ISMS Audits
• Identify nonconformities, observations, and opportunities for improvement
• Evaluate the effectiveness of information security controls and risk treatment
• Support management reviews and continual improvement activities.
• Prepare their organization for certification, surveillance, and recertification audits.
Target Audience:
This course is ideal for Information Security Officers, Internal Auditors, Compliance Officers, Risk Managers, IT Managers, ISMS Team Members, and professionals responsible for implementing, maintaining or auditing an ISO/IEC 27001.
COURSE FEE:
ISACA Member Php9,975.00
Non-Member Php14,175.00
Fees are subject to 12% VAT