[100% OFF] ISO 27001:2013 - Information Security Management System

 

This course is about ISO 27001:2013. The lecture style is presentation-with-voiceover. Firstly, I’ll be explaining an overview of the standard at a high level. Then I will be discussing different clauses and controls in more detail. I’ll be updating this course regularly to cover more and more areas in depth. Examining the curriculum content is going to help you understand the coverage.



So far, I’ve covered:


Annex A Control: Teleworking


Annex A Control: Asset Management


Annex A Control: Cryptography


Annex A Control: Communication Security


This standard is about creating an Information Management System. The goal of an ISMS is to protect the confidentiality & integrity of data while ensuring availability. You can apply this system to any type of organization of any size. It’s based on the same core high-level structure as other management systems. The main clauses include:



Context of the organization


Leadership


Planning


Support


Operation


Performance Evaluation


Improvement


The second part of the standard is about controls. They are listed in Annex A, and are grouped into different categories. They provide organizations with a set of tools that can be used to achieve the objectives of their management system. The list is not exhaustive and more controls do exist and can be implemented. Regardless, it’s important to understand the controls mentioned in Annex A and determine if they are applicable or useful to your organization.


Comments

Popular posts from this blog

[100% OFF] Become a Leader Development Course | Leadership Development

[100% OFF] Ethical Hacking Exam Practice 2023

[100% OFF] How to Motivate Yourself: The Science and Art of Motivation