|
Description
This BSI competency course on “ISO 27001:2005 Internal Auditor” teaches a general understanding of the concepts of the ISO 27001:2005 standard and the principles and practices of effective internal audits in accordance with ISO 19011:2002, “Guidelines for Quality and/or Environmental Management Systems Auditing.”
Experienced instructors explain the clauses of ISO 27001:2005 in detail and guide students through internal audits that are required for an information security management system based on ISO 27001:2005. Students gain necessary auditing skills through a balance of formal classroom tutorials, practical role-playing, group workshops, and open forum discussions.
This course comprises the following two RABQSA TPECS Competency Units whose outcomes are certified by RABQSA:
- IS – Information Security Management Systems
- AU – Management Systems Auditing
Attendees successfully completing this course receive a Certificate of Attainment for each of the RABQSA Competency Units listed above.
Audience
This course is intended for individuals interested in conducting, managing, or participating in firsty party (internal) audits, plus Information Security Managers, and management system implementation team members.
Duration
The course is taught as a three-day class.
Class Hours
Day 1: 8:00 AM – 5:30 PM
Day 2: 8:00 AM – 5:00 PM
Day 3: 8:00 AM – 5:30 PM
Course Materials
Students receive comprehensive course manuals with reference materials.
Fee
The class is $1895 per student. To confirm your enrollment, pre-payment will be required.
Early Bird Discount
If you pay at least 60 days in advance, you will receive a $100 discount, reducing the fee to $1795.
Learning Objectives
- Understand information security management definitions, concepts, and guidelines
- Understand the purpose of the ISO 27000 series
- Understand the requirements of the ISO 27001:2005 standard
- Understand the roles and responsibilities of the auditor
- Apply ISO 19011:2002 definitions, concepts, and guidelines
- Recognize the principles, practices, and types of audits
- Conduct all phases of an internal audit
- Prepare and present effective reports
- Understand the RABQSA's certification scheme
Prerequisite
A prior review of the ISO 27001:2005 and ISO 27002:2005 standards and knowledge of information security practices and an understanding of auditing principles is suggested for this course.
Logistics
There are written tests on each of the competency units on Days 2 and 3. Detailed exam instructions will be provided. Certificates of Attainment in each competency unit will be provided for students who are deemed “Competent” for each competency unit. Certificates of Attendance are provided to those who do not pass the competency test(s). Students will be given the opportunity to retake the test(s).
Contact
If you have any questions about this course,
please call us at 770-517-7944 or send an e-mail to Larry@WhittingtonAssociates.com. |