PPT - SIGMA-GIZ Academies - Topic 3 - Georgia-Information security.pdf

Support for Improvement in Governance and Management  SIGMA
GEORGIA
Information
security
Information Security in Georgia
Digital Governance Agency
Anna Metreveli
Certified Lead Implementer | Auditor of ISMS
Consultant of ISO 27001 | ISO 22301 | ISO 20000-1 | ISO 9001 |
NIST | Risk Management | ITIL
LEPL Digital Governance Agency
Ministry of Justice of Georgia
Tbilisi, Georgia, 2023
ISACA CISM
ISACA CISA
ISO 27001 Lead Auditor/Lead Implementer
ISO 22301 Lead Auditor/Lead Implementer
ISO 9001 Lead Auditor/Lead Implementer
ISO 20000-1 Lead Implementer
ISO 31000
SANS GIAC - Global Information Security Fundamentals (GISF)
ITIL Foundation for IT Service Management
Solid experience in the ICT & IS fields
Proficiency of IS Team
There are three categories of subjects of critical information system (109 Organizations)
71 - Government organizations
8 - Subjects of the
telecommunication field
30 - Private sector
The new amendment made in 2022 of the law is based on international standards and experience
Methodology of identifying critical information system subjects
Law of Georgia on Information Security
Energy Insurance Banking
Transportation and
logistics
Industries We Monitor
ISO 27001 By BSI/TÜV/PECB
CISA/CISM By ISACA
SANS By GIAC (Global Information Assurance Certification)
CISSP By (ISC)²
Certified Information Security Manager By DGA
IS Manager Requirements
Authorization of
ISMS auditors
Certification for IS
Managers
ISMS
Monitoring/Audit
Outsourcing of
ISMS Audit
ISMS
Implementation
Outsourcing
Outsourcing IS
Manager
ISMS Compliance
Preparation of
ISMS
Documentation
ISMS Trainings
IS Department Duties
• Ministry of Justice of Georgia
• National Archives of Georgia
• Legislative Herald of Georgia
• National Bureau of Enforcement
4 ongoing projects with
the first category
critical information
system subjects
Ongoing Projects of ISMS Implementation
Trainings for subjects of
critical information
system
Trainings for any
interested parties
Activities to raise
awareness on IS in
different state and
public organizations
Trainings and awareness raising activities
To provide more up-to-date international trainings
for our team members.
To implement new version of the standard ISO
27001 in the law of Georgia on Information
Security.
To establish ISMS certification centre in
accordance with international standards.
Our Objectives
Thanks for your
Attention!
1 of 11

More Related Content

Similar to PPT - SIGMA-GIZ Academies - Topic 3 - Georgia-Information security.pdf(20)

Privacy Management for Smart CitiesPrivacy Management for Smart Cities
Privacy Management for Smart Cities
Open & Agile Smart Cities77 views
EuroPriSe and ISDP 10003 2015EuroPriSe and ISDP 10003 2015
EuroPriSe and ISDP 10003 2015
Marco Moreschini145 views
EuroPriSe and ISDP10003  2015 - EuroPriSe and ISDP10003  2015 -
EuroPriSe and ISDP10003 2015 -
Marco Moreschini36 views
Risk based it auditing for non it auditors (basics of it auditing) final 12Risk based it auditing for non it auditors (basics of it auditing) final 12
Risk based it auditing for non it auditors (basics of it auditing) final 12
Thilak Pathirage -Senior IT Gov and Risk Consultant285 views
Ipen 2019 roma   status of privacy engineering standardisation v2Ipen 2019 roma   status of privacy engineering standardisation v2
Ipen 2019 roma status of privacy engineering standardisation v2
Privacy Data Protection for Engineering896 views
SC27 Privacy related projects update SC27 Privacy related projects update
SC27 Privacy related projects update
Yoshihiro Satoh575 views
Usulan utk PT35-01 Teknologi Informasi dan Kualitas Data 19 okt2016Usulan utk PT35-01 Teknologi Informasi dan Kualitas Data 19 okt2016
Usulan utk PT35-01 Teknologi Informasi dan Kualitas Data 19 okt2016
Sarwono Sutikno, Dr.Eng.,CISA,CISSP,CISM,CSX-F293 views
ISO/IEC 27001:2013  An Overview ISO/IEC 27001:2013  An Overview
ISO/IEC 27001:2013 An Overview
Ahmed Riad .40K views
Cyber Security and Cloud SecurityCyber Security and Cloud Security
Cyber Security and Cloud Security
IT Governance Ltd573 views
S nandakumarS nandakumar
S nandakumar
IPPAI208 views
S nandakumar_bangloreS nandakumar_banglore
S nandakumar_banglore
IPPAI813 views

More from Support for Improvement in Governance and Management SIGMA (20)

Launch of the Principles of Public Administration - 6 Nov 2023 - Photo galleryLaunch of the Principles of Public Administration - 6 Nov 2023 - Photo gallery
Launch of the Principles of Public Administration - 6 Nov 2023 - Photo gallery
Support for Improvement in Governance and Management SIGMA 1K views
Day 4 - Meet with BE DPA.pdfDay 4 - Meet with BE DPA.pdf
Day 4 - Meet with BE DPA.pdf
Support for Improvement in Governance and Management SIGMA 93 views
Day 4 - OESO - Belgian DPA Presentation.pdfDay 4 - OESO - Belgian DPA Presentation.pdf
Day 4 - OESO - Belgian DPA Presentation.pdf
Support for Improvement in Governance and Management SIGMA 98 views
Day 1 - EDPB Priorities and work programme.pdfDay 1 - EDPB Priorities and work programme.pdf
Day 1 - EDPB Priorities and work programme.pdf
Support for Improvement in Governance and Management SIGMA 207 views
Day 02 -  Meeting DPAs from Western Balkans and Eastern Partnership countriesDay 02 -  Meeting DPAs from Western Balkans and Eastern Partnership countries
Day 02 - Meeting DPAs from Western Balkans and Eastern Partnership countries
Support for Improvement in Governance and Management SIGMA 262 views
Day 02 - EDPS Technology & Privacy unit.pdfDay 02 - EDPS Technology & Privacy unit.pdf
Day 02 - EDPS Technology & Privacy unit.pdf
Support for Improvement in Governance and Management SIGMA 260 views
Day 02 -  S+E-TZ-Western Balkans+EPR.pdfDay 02 -  S+E-TZ-Western Balkans+EPR.pdf
Day 02 - S+E-TZ-Western Balkans+EPR.pdf
Support for Improvement in Governance and Management SIGMA 257 views
Day 4 -  Federal Service Integrator.pdfDay 4 -  Federal Service Integrator.pdf
Day 4 - Federal Service Integrator.pdf
Support for Improvement in Governance and Management SIGMA 58 views
Day 02 -  Data-protection EDPB.pdfDay 02 -  Data-protection EDPB.pdf
Day 02 - Data-protection EDPB.pdf
Support for Improvement in Governance and Management SIGMA 72 views
Day 01 - DataProtectionWeek - The ItalianSupervisory Authority.pdfDay 01 - DataProtectionWeek - The ItalianSupervisory Authority.pdf
Day 01 - DataProtectionWeek - The ItalianSupervisory Authority.pdf
Support for Improvement in Governance and Management SIGMA 347 views
Day 01 - DataProtectionWeek - Norwegian DPA_SIGMA.pptxDay 01 - DataProtectionWeek - Norwegian DPA_SIGMA.pptx
Day 01 - DataProtectionWeek - Norwegian DPA_SIGMA.pptx
Support for Improvement in Governance and Management SIGMA 359 views
Photo Gallery - Academies Topic 3Photo Gallery - Academies Topic 3
Photo Gallery - Academies Topic 3
Support for Improvement in Governance and Management SIGMA 68 views
PPT - SIGMA-GIZ Academies - Topic 3 - UKR.pdfPPT - SIGMA-GIZ Academies - Topic 3 - UKR.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - UKR.pdf
Support for Improvement in Governance and Management SIGMA 88 views
PPT - SIGMA-GIZ Academies - Topic 3 - Moldova.pdfPPT - SIGMA-GIZ Academies - Topic 3 - Moldova.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - Moldova.pdf
Support for Improvement in Governance and Management SIGMA 94 views
PPT - SIGMA-GIZ Academies - Topic 3 - Georgia.pdfPPT - SIGMA-GIZ Academies - Topic 3 - Georgia.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - Georgia.pdf
Support for Improvement in Governance and Management SIGMA 99 views
PPT - SIGMA-GIZ Academies - Topic 3 - Azerbaijan.pdfPPT - SIGMA-GIZ Academies - Topic 3 - Azerbaijan.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - Azerbaijan.pdf
Support for Improvement in Governance and Management SIGMA 100 views
PPT - SIGMA-GIZ Academies - Topic 3 - Armenia.pdfPPT - SIGMA-GIZ Academies - Topic 3 - Armenia.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - Armenia.pdf
Support for Improvement in Governance and Management SIGMA 105 views
PPT - SIGMA-GIZ Academies - Topic 3 - Process optimisation.pdfPPT - SIGMA-GIZ Academies - Topic 3 - Process optimisation.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - Process optimisation.pdf
Support for Improvement in Governance and Management SIGMA 9 views
PPT - SIGMA-GIZ Academies - Topic 3 - ISO in public sector.pdfPPT - SIGMA-GIZ Academies - Topic 3 - ISO in public sector.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - ISO in public sector.pdf
Support for Improvement in Governance and Management SIGMA 9 views
PPT - SIGMA-GIZ Academies - Topic 3 - Public Service Hall Georgia.pdfPPT - SIGMA-GIZ Academies - Topic 3 - Public Service Hall Georgia.pdf
PPT - SIGMA-GIZ Academies - Topic 3 - Public Service Hall Georgia.pdf
Support for Improvement in Governance and Management SIGMA 5 views

PPT - SIGMA-GIZ Academies - Topic 3 - Georgia-Information security.pdf

  • 2. Information Security in Georgia Digital Governance Agency Anna Metreveli Certified Lead Implementer | Auditor of ISMS Consultant of ISO 27001 | ISO 22301 | ISO 20000-1 | ISO 9001 | NIST | Risk Management | ITIL LEPL Digital Governance Agency Ministry of Justice of Georgia Tbilisi, Georgia, 2023
  • 3. ISACA CISM ISACA CISA ISO 27001 Lead Auditor/Lead Implementer ISO 22301 Lead Auditor/Lead Implementer ISO 9001 Lead Auditor/Lead Implementer ISO 20000-1 Lead Implementer ISO 31000 SANS GIAC - Global Information Security Fundamentals (GISF) ITIL Foundation for IT Service Management Solid experience in the ICT & IS fields Proficiency of IS Team
  • 4. There are three categories of subjects of critical information system (109 Organizations) 71 - Government organizations 8 - Subjects of the telecommunication field 30 - Private sector The new amendment made in 2022 of the law is based on international standards and experience Methodology of identifying critical information system subjects Law of Georgia on Information Security
  • 5. Energy Insurance Banking Transportation and logistics Industries We Monitor
  • 6. ISO 27001 By BSI/TÜV/PECB CISA/CISM By ISACA SANS By GIAC (Global Information Assurance Certification) CISSP By (ISC)² Certified Information Security Manager By DGA IS Manager Requirements
  • 7. Authorization of ISMS auditors Certification for IS Managers ISMS Monitoring/Audit Outsourcing of ISMS Audit ISMS Implementation Outsourcing Outsourcing IS Manager ISMS Compliance Preparation of ISMS Documentation ISMS Trainings IS Department Duties
  • 8. • Ministry of Justice of Georgia • National Archives of Georgia • Legislative Herald of Georgia • National Bureau of Enforcement 4 ongoing projects with the first category critical information system subjects Ongoing Projects of ISMS Implementation
  • 9. Trainings for subjects of critical information system Trainings for any interested parties Activities to raise awareness on IS in different state and public organizations Trainings and awareness raising activities
  • 10. To provide more up-to-date international trainings for our team members. To implement new version of the standard ISO 27001 in the law of Georgia on Information Security. To establish ISMS certification centre in accordance with international standards. Our Objectives