|
via Udemy |
Go to Course: https://www.udemy.com/course/information-security-risk-assessment-process-iso-270012013/
Do you know why is it critical for companies and institutions to manage "Critical Information" and associated "Information Security Risks"? Do you know what happens when IS Security Risks incident occurs? What are the consequences and risks involved? Do you know how companies and IS Consultants, practically perform IS risk assessment to manage and maintain Information Security Infrastructure? What ISO/IEC 27001:2013 ISMS standard prescribes for IS Security Risk Assessment and Treatments?All these questions will be answered through a practical course, where standards' requirements are linked with real-world examples, risk assessment models, and techniques.ISO 27001 is the internationally recognized specification for Information Security Management System (ISMS) and is the most popular standard for Information Security. It serves as an IT Governance framework for organizations and businesses to enable the development and implementation of ISO 45001-prescribed controls to secure information assets.COURSE OVERVIEW In this course, you will get an insight into how companies and institutions perform Information Security IS Risk Assessment and manage or treat IS Risks, Threats, and Vulnerabilities. This course will give you conceptual and practical knowledge about IS Security Risk Assessment and Management as per ISO 27001.COURSE TOPICSUnderstanding ISO 27001 ISMS Risk Assessment Understanding Information Security, Protection, and ISO 27001 PrinciplesKey Objectives of Information Security and ProtectionNetworks, Information, and Data AvailabilityInformation Asset Matrix and CIA TriadUnderstanding Risk, Activity or Event, and Adverse Impact or OutcomeDifferent Categories of Risks Faced by Institutions and OrganizationsUnderstanding Information Security Risks and Possible Adverse ImpactsUnderstanding Cybersecurity RiskInformation Asset, Data Governance and ISO 27001 Protection ControlsInformation Security IS Risk Assessment and Purpose of IS Risk AssessmentRisk Assessment with Quantitative CalculationRisk Assessment - Assets Based Approach ABA - Risks Threats and VulnerabilitiesOverview of Threat, Vulnerability, Consequences and Mitigation PlanRisk Assessment - Understanding High, Medium and Low Risk LevelsRisk Matrix /methodology - 5 by 5 Risk Assessment MatrixUnderstanding When to Use a Risk Assessment MatrixApplication of Risk Assessment Matrix for Risk Rating CalculationRigorous Risk Cases and Risk Assessment AnalysisExample - Preparing Risk Register after Risk Assessment Calculations - Cybersecurity Risk as an ExampleRisk Treatment OptionsImplementing Controls - Preventive, Detective and Corrective ControlsInformation System Defense ControlsISO 27001 - Risk Mitigation Strategy and ControlsMultiple Choice Questions MCQs are also part of this courseYou will be able to "prepare Asset Risk, Impact and Likelihood Matrix", "perform Risk Assessment using Methodology", "prepare Vulnerability and Threat Matrix", "perform Risk and Financial Impact Pyramid Analysis", "apply Treatment Options", "understand Controls Categories" etc. as per ISO 27001 - Information Security Management System.To test your knowledge, the MCQs test is also part of this courseOther Benefits?After attending this course you will be able to:- apply concepts in your IS Security job - communicate with IS Security and IS Audit professionals - apply for jobs in organizations where ISO 27001 ISMS is implemented or to be implemented- pursue a career progression in IS Security domain - get the certificate of course completion etc.Who is this course for:Information System IS Security, IS Audit, IT Professionals and StudentsIS Security ConsultantsRisk Management Professionals and StudentsInternal Audit Professionals and StudentsFinance Professionals and StudentsCISA, CISM studentsCompliance professionalsAnyone who wants to learn the ISO 27001 standard's requirements for Information Security