Visão Geral
O curso ISO 27001 Lead Implementer prepara você para liderar a implementação completa de um Sistema de Gestão de Segurança da Informação (SGSI), seguindo as diretrizes da norma da International Organization for Standardization. Aqui o foco já é mais mão na massa: planejamento, execução e melhoria contínua, como as organizações bem estruturadas sempre fizeram.
Conteúdo Programatico
Module 1: Introduction to ISO 27001 and ISMS
- Overview of ISO 27001
- Principles of Information Security
- ISMS Concepts and Terminology
- Relationship with Other Standards
Module 2: Initiating an ISMS Implementation
- Understanding Organizational Context
- Defining ISMS Scope
- Leadership and Stakeholder Engagement
- Initial Gap Analysis
Module 3: Planning the ISMS
- Risk Assessment Methodologies
- Risk Treatment Planning
- Defining Security Objectives
- ISMS Policies and Procedures
Module 4: Implementing the ISMS
- Resource Management
- Awareness and Training
- Communication Strategy
- Documentation and Control
Module 5: Annex A Controls Implementation
- Control Selection and Justification
- Organizational and People Controls
- Physical and Environmental Controls
- Technological Controls
Module 6: Monitoring and Evaluation
- Performance Metrics and KPIs
- Internal Audit Process
- Management Review
- Nonconformities and Corrective Actions
Module 7: Continual Improvement
- ISMS Improvement Strategies
- Incident Management
- Lessons Learned and Optimization
- Maturity Models
Module 8: Certification Preparation
- Audit Preparation (Stage 1 and Stage 2)
- Evidence Collection
- Communication with Auditors
- Maintaining Certification
Module 9: Practical Implementation Project
- ISMS Implementation Roadmap
- Risk Assessment Exercise
- Control Implementation Simulation
- Case Study Analysis