
|
 |
Aims
The objective of this course is to equip existing auditors of other management systems standards with the knowledge and skills required to perform audits of information security management systems (ISMS) against the national and international standards, statutory requirements and regulations using the principles of ISO 27001.
At the end of this course participants will be able to:
- Explain the purpose of an information security management system (ISMS) and explain the processes involved in establishing, implementing, operating, monitoring, reviewing and improving an ISMS as defined in BS 7799-2:2002, including the significance of these for ISMS auditors;
- Explain the purpose, content and interrelationship of BS 7799-2:2002, ISO/IEC 17799 and ISO 19011, ISO/IEC TR 13335 Parts 3 and 4 (GMITS), EA 7/03 and the legislative framework relevant to an ISMS;
- Interpret the requirements of BS 7799-2:2002 and EA 7/03 in the context of an ISMS audit
undertake the role of an auditor to plan, conduct, report and follow up an audit in accordance with ISO 19011.
Profile
This course is ideal for those who have already successfully completed an ISO 9000, ISO 14001 or OHSAS Lead Auditor Course. The programme is designed to broaden skills and give a thorough understanding of the ISMS requirements and audit criteria. This course is certificated by IRCA; Course No.:A17296.
|