ISO 27002 Foundation: information security management code of practice
Your security controls must address your organisation's risks and working practices. Understand ISO 27002 to connect information security control principles with your organisational context. Develop a shared language with specialists and a framework for contributing to a structured approach.
- Duration
- 2 days 14 hours
- Code
- ISO27002F Code
- Certification
- ISO/IEC 27002: Information security controls Certification
Accredited training for the ISO/IEC 27002: Information security controls certification.
Presentation
ISO/IEC 27002 is an international framework providing information security management best-practice guidance. These practices help organisations achieve the highest possible reliability in their inter-organisational activities. This requires suitable measures, including policies, processes, organisational strategies, and software and hardware tools.
This ISO/IEC 27002 Foundation course provides the foundations for implementing information security controls effectively under ISO 27002:2013. You will explore the relationships between ISO/IEC 27001, ISO/IEC 27002, ISO/IEC 27003, ISO/IEC 27004 and ISO/IEC 27005. You will then become familiar with approaches, methods and techniques for implementing information security controls.
At the end of the course, you can take the PECB Certified ISO/IEC 27002 Foundation examination and obtain the PECB ISO/IEC 27002 Foundation credential. This PECB certification demonstrates your understanding of basic information security management methods.
Objectives
By the end of the ISO 27002 Foundation course, you will be able to:
- understand the principles, processes and operation of an information security management system;
- understand the relationships between ISO 27001:2013 and ISO 27002:2013, and other standards and regulatory frameworks;
- master techniques, methods and practices for implementing an ISMS;
- pass the ISO 27002 Foundation examination and obtain the PECB Certified ISO 27002 Foundation credential.
The skills you acquire can be applied to organisations of any size and type, offering the following benefits:
- effective identification and implementation of recognised information security controls;
- definition of their own information security management guidelines;
- high levels of credibility and trust;
- compliance with applicable regulations and standards.
Program
Day 1: fundamentals
- Introduction to ISO/IEC 27002 and its relationships with other ISO standards.
- Definition of an information security management system (ISMS).
Day 2: controls
- Implementing information security controls under ISO 27002: approaches, methods and techniques.
Final half-day:
- ISO 27002 Foundation certification examination (duration: 1 hour).
Please note: PECB ISO/IEC 27002 Foundation course materials are available in French.
Audience
This course is intended for:
- anyone seeking an introduction to information security management and controls, including fundamental processes;
- anyone considering a career in information security management.
Prerequisites
There are no prerequisites for the ISO 27002 Foundation course.
Teaching and assessment methods
- Initial skills assessment
- Training materials provided to participants
- Continuous assessment throughout the course
- End-of-course feedback questionnaire
- Combination of theory and practical application
- Attendance records
- Post-course follow-up evaluation
- Case study
Course highlights
Practical activities based on real cases with 200 pages of documentation; 14 CPD credits; PECB certification examination included in the course fee; one free retake within 12 months if you do not pass.
Dates and sessions
Choose the date and delivery format that suit you.
No upcoming sessions are currently available.
fr
en