|
via Udemy |
Go to Course: https://www.udemy.com/course/es-iso27000/
Certainly! Here's a detailed review and recommendation of the Coursera course based on the provided information: --- ### Course Review: Information Security Management System (ISMS) Based on ISO/IEC 27000:2013 **Overview:** This specialized course delves into the implementation of an Information Security Management System (ISMS) aligned with the ISO/IEC 27000:2013 standard. Taught by Konstantin Dobriansky, a seasoned information security expert and practitioner with over 8 years of experience in leading banks and IT companies, the course is designed to equip both corporate leadership and operational staff with essential knowledge to bolster their organization's information security framework. **Course Content & Structure:** Spanning five sections and comprising 15 lessons, the course balances theoretical foundations with practical application. Each lesson is complemented by assignments aimed at reinforcing the material, making this course highly interactive and applicable to real-world scenarios. Students will explore core topics such as internal regulatory documentation, the organizational structure of ISMS, and essential steps for successful implementation. **What You Will Learn:** - In-depth understanding of ISO/IEC 27000:2013 standards and their family - Developing and managing internal regulations for information security - Building organizational structures for ISMS implementation - Addressing information security policies concerning both office and remote work - Managing information assets, access controls, and cryptographic protections - Physical security measures and ensuring operational safety - Handling information exchanges and vendor relationships - Incident management and maintaining business continuity during technical disruptions - Ensuring compliance with legal and contractual requirements, including recent updates from the 2018 revision of the standard **Pros:** - Expert instruction from an experienced practitioner - Practical exercises to solidify understanding - Comprehensive coverage of technical and organizational aspects - Suitable for managers and staff seeking to elevate their security posture - Focus on real-world application and compliance with international and national standards **Cons:** - The technical depth may be challenging for complete beginners without prior security background - Course language is Russian, which may limit accessibility for non-Russian speakers (unless localized subtitles are available) **Recommendation:** This course is highly recommended for corporate leaders, security professionals, and IT staff who aim to implement or improve their organization's ISMS in accordance with ISO/IEC 27000:2013. Its practical approach ensures that learners can directly apply their knowledge to achieve compliance and strengthen their security environment. If you're looking to understand the intricacies of information security management and build a robust security framework, this course offers valuable insights guided by a knowledgeable instructor. --- Feel free to reach out if you'd like a shorter summary or additional insights!
Этот авторский учебный курс раскрывает вопросы внедрения системы менеджмента информационной безопасности (СМИБ) по стандарту ISO/IEC 27000:2013. Преподаватель курса: Константин Добрянский-специалист по информационной безопасности, методолог, практик, преподаватель с 8-летним опытом работы в ведущих банковских институтах и ИТ компаниях. Курс по информационной безопасности разработан для руководителей и сотрудников компаний, желающих повысить уровень информационной безопасности (ИБ), внедрить СМИБ, подготовить организацию к получению сертификата соответствия требованиям государственных стандартов в отношении обеспечения ИБ, международного стандарта ISO/IEC 27000:2013. Курс состоит из 5 секций и 15 уроков, к каждому из которых подгоитовлено практическое задание для закрепление материала.После прохождения курса вы получите знания о стандартах семейства ISO/IEC 27000:2013, понимание внутренних регламентных документов организации для обеспечения ИБ, ознакомитесь с организационной структурой СМИБ и с необходимыми шагами для её внедрения. Ознакомитесь с требованиями ИБ в отношении персонала в условиях совмещения работы в офисе и удаленно, вопросами управление информационными активами, контролю доступа, криптографическим методам защиты, физической защиты, безопасности производственной деятельности, обмена информацией, взаимоотношениями с поставщиками. Научитесь управлять инцидентами ИБ и обеспечивать непрерывность бизнеса в условиях технических сбоев и неполадок. В заключение автор освещает вопросы соответствия бизнес-процессов ИБ организации законодательным и контрактным требованиям, новации в новой редакции стандарта 2018 г. На протяжении всего курса вы получите ответы на вопросы о назначениях основных технических средств обеспечения ИБ, выполняя практические задания для закрепления учебного материала.