Visão Geral
O curso ISO 27001 Foundation apresenta os fundamentos da gestão de segurança da informação, seguindo as boas práticas da norma internacional International Organization for Standardization. Aqui você entende como proteger dados, reduzir riscos e estruturar um Sistema de Gestão de Segurança da Informação (SGSI) de forma sólida, como sempre foi feito nas organizações mais maduras.
Conteúdo Programatico
Module 1: Introduction to Information Security
- Information Security Concepts
- CIA Triad (Confidentiality, Integrity, Availability)
- Information as an Asset
- Security Threats and Vulnerabilities
Module 2: Overview of ISO 27001
- Purpose of ISO 27001
- Structure of the Standard (Clauses and Annex A)
- Benefits of Implementation
- ISO 27001 vs Other Standards
Module 3: Information Security Management System (ISMS)
- ISMS Definition and Scope
- Context of the Organization
- Leadership and Commitment
- ISMS Policy and Objectives
Module 4: Risk Management in ISO 27001
- Risk Assessment Process
- Risk Treatment Options
- Risk Acceptance Criteria
- Statement of Applicability (SoA)
Module 5: Annex A Controls
- Organizational Controls
- People Controls
- Physical Controls
- Technological Controls
Module 6: Performance Evaluation
- Monitoring and Measurement
- Internal Audit Basics
- Management Review
- Continual Improvement
Module 7: Certification Process
- Certification Requirements
- Audit Process (Stage 1 and Stage 2)
- Roles of Auditors
- Maintaining Certification
Module 8: Practical Applications
- Implementing Basic Controls
- Security Awareness Practices
- Common Challenges
- Real-World Case Examples