SlideShare a Scribd company logo
1 of 5
Objective
Candidates can expect to gain knowledge and understanding in the following upon successful completion
of the education and examination components related to this certification.
problems and measure ROI based on performance metrics. The outcomes of this program include:
• • Understanding and effectively auditing the intent of ISO 27001 in the new Annex SL format
• • Understanding the organization and its context & Issues
• • Understanding the needs and expectations of interested parties
• • Identifying issues
• • Leadership and commitment for the quality management system
• • Understanding risks and opportunities
• • Determination of security requirements for products and services and selection of controls
• from Annex A
• • Performance evaluation
• • Identification and reporting of non-conformances in the process audit
• • Evaluating corrective actions for root cause and effectiveness
• • Auditing techniques including effective auditing of management
LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN
ISO27001: Lead Auditor
Program Overview
ISO 27001:2013 Lead Auditor is a 5-day course that offers an in-depth understanding of the concepts of the
ISO 27001:2013 standard and the principles and practices of performing and reporting on effective
information security management system audits in accordance with ISO 19011 standard.
Experienced instructor with over 15 years in ISMS explain the clauses of ISO 27001:2013 in detail and guide
students through the audit process, which is required for creating and maintaining an Information Security
Management System based on ISO 27001:2013.
Students will gain auditing skills and knowledge through a balance of classroom training, practical role-
playing, group workshops, case studies and open forum discussions. This is currently one of the most
dynamic ISO 27001 courses available due to its progressive, hands-on and workshop oriented approach.
This course does not require any IT technical skills as this is a management system standard.
Workshop Chronology
Day 1: 9:00am – 5:00pm
Day 2: 9:00am – 5:00pm
Day 3: 9:00am – 5:00pm
Day 4: 9:00am – 5:00pm
Day 5: 9:00am – 5:00pm
• There will be an online training followed by
multiple choice exam of 100 marks.
• You need to acquire 60+ marks to clear the
exam.
• If you fail, you can retake the exam after one
day.
• Incase Participant do not score passing % then
they will be granted a 2nd attempt at no
additional cost. Re-examination can be taken
up-to 30 days from date of 1st exam attempt.
Target Audience:
• Project managers.
• Project Board members
• Senior Responsible Owners
• Team Managers
• Product Delivery Managers
• Project Assurance
• Business Change Analysts
• Project Support
• Project and Program Office personnel
• Operational line managers/staff
LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN
ISO27001: Lead Auditor
Prerequisites:
There are no mandatory pre-requisite for ISO
27001 but below are few recommendations.
• Recommended to have training on ISO 27001
through a qualified training institution.
• Recommended to have work experience in
quality and security.
Course Benefit
This course will help you:
• Identify the aims and benefits of an ISO 27001:2013 audit
• Interpret ISO 27001:2013 requirements for audit application
• Learn to conduct and audit a risk assessment process and learn the methodology of risk
assessments
• Learn how suitable controls are chosen based on Annex A
• Plan, conduct and follow-up auditing of the risk register and the selection of controls
• Grasp the application of risk-based thinking, leadership and process management
• Access the latest auditor techniques and identify appropriate use
• Build stakeholder confidence by managing processes in line with the latest requirements
Workshop Outline
DAY 1
Auditing a Security Management System
Module 1: Information Security Management
Systems
Activity 1 – Understanding Information Security
Module 2: Information Security Concepts
Module 3: The Audit Process for ISMS
Activity 2 – Audit Planning Considerations
Module 4: Auditing the ISO 27001 Standard
Activity 3 – Security Terminology
Module 5: Context of the Organization
Activity 4 – Auditing Organizational Context
Module 6: Leadership
Activity 5 – Auditing Security Policy
DAY 2
Auditing a Security Management System
ReCap Day 1
Module 7: Planning
Activity 6 – Auditing Security Objectives
Activity 7 – Conducting and auditing a Risk
assessment process, Risk register and selection of
controls from Annex A
Module 8: Support
Activity 7 – Competence and Awareness
Module 9: Operation
Activity 8 – Operational Controls
Module 10: Performance Evaluation
Activity 9 – Security Performance Evaluation Method
Module 11: Improvement
Activity 10 – Effectiveness of the Security
Management System
Tepat Training & Consultancy PLT
Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang
Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com
ISO27001: Lead Auditor
DAY 3
Conducting and Leading Management System
Audits
ReCap Day 2
Module 1: ISO 19011 Overview
Activity 1 – Successful Auditing
Module 2: Managing an Audit Program
Activity 2 – Scheduling Considerations
Activity 3 – Audit Objective, Scope and Criteria
Activity 4 – Auditor Competencies
Activity 5 – Selecting the Audit Team
Module 3: Audit Planning and Preparation
Activity 6 – Additional Information Required for an
Audit
Activity 7 – Determining Sources of Objective
Evidence
Activity 8 – The Audit Plan
Activity 9 – Audit Work Documents
DAY 4
Conducting and Leading Management System
Audits
ReCap Day 3
Module 4: Performing the Audit
Activity 10 – Develop 5 Strategies to Build
Relationships
Activity 11 – Personality Types
Activity 12 – Opening Meeting
Activity 13 – Audit Interviews
Activity 14 – Nonconformity Report
Activity 15 – Closing Meeting
Module 5: Reporting Audit Outcomes
Activity 16 – Draft Audit Report
Activity 17 – Corrective Action
Workshop Outline
DAY 5
Case Study & Examination
ReCap Day 4
Case Studies – Live Case & Group Discussion
Exam
Tepat Training & Consultancy PLT
Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang
Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com
ISO27001: Lead Auditor
Trainer Profile
Capt. A. Rajkumar CISP, CISA, BCMS IRCA Lead Auditor ISO 9001 & ISO 14001, OSHAS, ISO 27001,
ISO 22301, SA 8000
Capt. Rajkumar holds a degree in Physics and Computer Science and advanced diploma in
applied sciences. He is a certified Master Mariner in the merchant marine with a career at
sea spanning over 16 years. After his retirement from a sea career, for the last decade, he
has implemented and trained over 100 MNC’s & GLC’s for various standards and regulatory
compliances in the ASEAN region and Asia.
He was a primary player in bringing ISO 20000-1 IT Service Management to Malaysia and
had assisted Kompakar Inc, an MSC status company, Certified to ISO 20000-1, the first 20000
certificate in ASEAN region. He has also consulted trained and helped certify Pentasoft
Malaysia, a CMMI Level 5 company in IT Service Management ISO 20000, one of the very
few software development companies in the world to achieve this standard.
His experience in Telco goes back to 2004 when he did work for Telekom and GITN. He also
was engaged with Greenpacket, Macrokiosk, NTT, Redtone, Hitachi Sunway, AIMS, Strateq
DC and other Telco players in setting up their QMS and Information Security, Business
Continuity standards.
He was one of the first batch of BS 7799 (Old Version of ISO 27001) qualified auditors in
Malaysia. He has worked with companies like Petronas, Charigalli Gas, Sapura Crest,
Kanchana Oil, PT Pertamina in Risk Assessments, GITN Telekom Malaysia, DigiCert POS
Malaysia in Information Security management & Project Management Implementation &
training.
Tepat Training & Consultancy PLT
Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang
Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com
ISO27001: Lead Auditor

More Related Content

What's hot

Pmp capm exam preparation
Pmp capm exam preparationPmp capm exam preparation
Pmp capm exam preparationFreedom Monk
 
Project management slide - Introduction
Project management slide - IntroductionProject management slide - Introduction
Project management slide - IntroductionAlbert Poghosyan
 
PMP Exam Preparation Workshop
PMP Exam Preparation WorkshopPMP Exam Preparation Workshop
PMP Exam Preparation WorkshopCeltem Learning
 
Increasing Project Success through Project Management Maturity Based on ISO 2...
Increasing Project Success through Project Management Maturity Based on ISO 2...Increasing Project Success through Project Management Maturity Based on ISO 2...
Increasing Project Success through Project Management Maturity Based on ISO 2...PECB
 
CompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltailsCompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltailsCRAW CYBER SECURITY PVT LTD
 
Introduction to PMP, Professional responsibility and Introduction to project ...
Introduction to PMP, Professional responsibility and Introduction to project ...Introduction to PMP, Professional responsibility and Introduction to project ...
Introduction to PMP, Professional responsibility and Introduction to project ...Gunesh Apte
 
1.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 11.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 1reddvise
 
11.6 Implement Risk Responses
11.6 Implement Risk Responses11.6 Implement Risk Responses
11.6 Implement Risk ResponsesDavidMcLachlan1
 
project Scope management
project Scope management project Scope management
project Scope management Mohamed , PMP
 
Anosha jamshed projectmanager
Anosha jamshed projectmanagerAnosha jamshed projectmanager
Anosha jamshed projectmanageranosha jamshed
 
Mapa procesos pmbok 5
Mapa procesos pmbok 5Mapa procesos pmbok 5
Mapa procesos pmbok 5Pedro Arcas
 
Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...
Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...
Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...GlobalSkillup
 
Product based planning
Product based planning Product based planning
Product based planning Ian Cammack
 
Pmp presentation chapter 1 to 7
Pmp presentation chapter 1 to 7Pmp presentation chapter 1 to 7
Pmp presentation chapter 1 to 7Saad Merie
 
PMI-ACP Agile free sample from EVOLVE
PMI-ACP Agile free sample from EVOLVEPMI-ACP Agile free sample from EVOLVE
PMI-ACP Agile free sample from EVOLVEKristinRomanoPMPPMIR
 
10.1 Plan Communication Management
10.1 Plan Communication Management10.1 Plan Communication Management
10.1 Plan Communication ManagementDavidMcLachlan1
 

What's hot (20)

Pmp capm exam preparation
Pmp capm exam preparationPmp capm exam preparation
Pmp capm exam preparation
 
Project management slide - Introduction
Project management slide - IntroductionProject management slide - Introduction
Project management slide - Introduction
 
PMP Exam Preparation Workshop
PMP Exam Preparation WorkshopPMP Exam Preparation Workshop
PMP Exam Preparation Workshop
 
Increasing Project Success through Project Management Maturity Based on ISO 2...
Increasing Project Success through Project Management Maturity Based on ISO 2...Increasing Project Success through Project Management Maturity Based on ISO 2...
Increasing Project Success through Project Management Maturity Based on ISO 2...
 
14 key changes in pmbok ® guide sixth edition
14 key changes in pmbok ® guide sixth edition14 key changes in pmbok ® guide sixth edition
14 key changes in pmbok ® guide sixth edition
 
CompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltailsCompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltails
 
CMMI & PMBOK & OPM3
CMMI & PMBOK & OPM3CMMI & PMBOK & OPM3
CMMI & PMBOK & OPM3
 
Introduction to PMP, Professional responsibility and Introduction to project ...
Introduction to PMP, Professional responsibility and Introduction to project ...Introduction to PMP, Professional responsibility and Introduction to project ...
Introduction to PMP, Professional responsibility and Introduction to project ...
 
1.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 11.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 1
 
1. project integration management
1. project integration management1. project integration management
1. project integration management
 
11.6 Implement Risk Responses
11.6 Implement Risk Responses11.6 Implement Risk Responses
11.6 Implement Risk Responses
 
project Scope management
project Scope management project Scope management
project Scope management
 
Anosha jamshed projectmanager
Anosha jamshed projectmanagerAnosha jamshed projectmanager
Anosha jamshed projectmanager
 
Mapa procesos pmbok 5
Mapa procesos pmbok 5Mapa procesos pmbok 5
Mapa procesos pmbok 5
 
Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...
Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...
Complete Online PMP Study Training Material for PMP Exam Provided Free for PM...
 
Product based planning
Product based planning Product based planning
Product based planning
 
Pmp presentation chapter 1 to 7
Pmp presentation chapter 1 to 7Pmp presentation chapter 1 to 7
Pmp presentation chapter 1 to 7
 
PMI-ACP Agile free sample from EVOLVE
PMI-ACP Agile free sample from EVOLVEPMI-ACP Agile free sample from EVOLVE
PMI-ACP Agile free sample from EVOLVE
 
10.1 Plan Communication Management
10.1 Plan Communication Management10.1 Plan Communication Management
10.1 Plan Communication Management
 
Pmp in summary
Pmp in summaryPmp in summary
Pmp in summary
 

Similar to I01letor20so201leutor2020

ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...IEVISION IT SERVICES Pvt. Ltd
 
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SRS.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SRBakthavatchalam Subramani
 
ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training Drew Kahrs
 
PECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by KinvergPECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by KinvergKinverg
 
Online ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor TrainingOnline ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor TrainingWillardSorenson
 
Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001PECB
 
Awareness of iatf 16949
Awareness of iatf 16949Awareness of iatf 16949
Awareness of iatf 16949Pavan Patil
 
Risk elimination and safety committee
Risk elimination and safety committeeRisk elimination and safety committee
Risk elimination and safety committeeHpm India
 
english_bok_ismp_202306.pptx
english_bok_ismp_202306.pptxenglish_bok_ismp_202306.pptx
english_bok_ismp_202306.pptxssuser00d6eb
 
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education fieldComparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education fieldSadanand Borade
 
Stella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMSStella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMSStella Brits
 
SAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal AuditingSAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal AuditingSwitzerland09
 
continuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdfcontinuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdflynnmdasuki1
 
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...Egyptian Engineers Association
 

Similar to I01letor20so201leutor2020 (20)

ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
 
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SRS.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
 
ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training
 
PECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by KinvergPECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by Kinverg
 
Iso 27001 lead auditor
Iso 27001 lead auditorIso 27001 lead auditor
Iso 27001 lead auditor
 
Online ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor TrainingOnline ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor Training
 
Intro to ISO
Intro to ISOIntro to ISO
Intro to ISO
 
Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001
 
Qsys Profile
Qsys ProfileQsys Profile
Qsys Profile
 
S.Baktha-QA-Process-Audits
S.Baktha-QA-Process-AuditsS.Baktha-QA-Process-Audits
S.Baktha-QA-Process-Audits
 
Awareness of iatf 16949
Awareness of iatf 16949Awareness of iatf 16949
Awareness of iatf 16949
 
Risk elimination and safety committee
Risk elimination and safety committeeRisk elimination and safety committee
Risk elimination and safety committee
 
english_bok_ismp_202306.pptx
english_bok_ismp_202306.pptxenglish_bok_ismp_202306.pptx
english_bok_ismp_202306.pptx
 
Damco iso 27001
Damco iso   27001Damco iso   27001
Damco iso 27001
 
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education fieldComparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
 
Stella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMSStella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMS
 
SAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal AuditingSAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal Auditing
 
Lead Auditor Course on ISO 27001:2013 (ISMS) - IRCA
Lead Auditor Course on ISO 27001:2013 (ISMS) - IRCALead Auditor Course on ISO 27001:2013 (ISMS) - IRCA
Lead Auditor Course on ISO 27001:2013 (ISMS) - IRCA
 
continuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdfcontinuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdf
 
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
 

More from Anne Starr

Dncybersecurity
DncybersecurityDncybersecurity
DncybersecurityAnne Starr
 
Dancyrityshy 1foundatioieh
Dancyrityshy 1foundatioiehDancyrityshy 1foundatioieh
Dancyrityshy 1foundatioiehAnne Starr
 
2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)Anne Starr
 
Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577Anne Starr
 
01wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-40001wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-400Anne Starr
 
uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00Anne Starr
 
Cloudhnologysstecociat
CloudhnologysstecociatCloudhnologysstecociat
CloudhnologysstecociatAnne Starr
 
Cmbysantocsddsh
CmbysantocsddshCmbysantocsddsh
CmbysantocsddshAnne Starr
 
Cddmbysantcsosh
CddmbysantcsoshCddmbysantcsosh
CddmbysantcsoshAnne Starr
 
Ccbysantsddosh
Ccbysantsddosh  Ccbysantsddosh
Ccbysantsddosh Anne Starr
 
Ccsdbyhday1santodms
Ccsdbyhday1santodmsCcsdbyhday1santodms
Ccsdbyhday1santodmsAnne Starr
 
Serskmanagvicedeement
SerskmanagvicedeementSerskmanagvicedeement
SerskmanagvicedeementAnne Starr
 

More from Anne Starr (20)

Ccsddm5days
Ccsddm5daysCcsddm5days
Ccsddm5days
 
Dayblic
DayblicDayblic
Dayblic
 
Day1cspbeblic
Day1cspbeblicDay1cspbeblic
Day1cspbeblic
 
Dncybersecurity
DncybersecurityDncybersecurity
Dncybersecurity
 
Dancyrityshy 1foundatioieh
Dancyrityshy 1foundatioiehDancyrityshy 1foundatioieh
Dancyrityshy 1foundatioieh
 
2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)
 
Sec4
Sec4Sec4
Sec4
 
Secuntialesse
SecuntialesseSecuntialesse
Secuntialesse
 
Securityic2
Securityic2Securityic2
Securityic2
 
)k
)k)k
)k
 
inte
inteinte
inte
 
Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577
 
01wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-40001wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-400
 
uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00
 
Cloudhnologysstecociat
CloudhnologysstecociatCloudhnologysstecociat
Cloudhnologysstecociat
 
Cmbysantocsddsh
CmbysantocsddshCmbysantocsddsh
Cmbysantocsddsh
 
Cddmbysantcsosh
CddmbysantcsoshCddmbysantcsosh
Cddmbysantcsosh
 
Ccbysantsddosh
Ccbysantsddosh  Ccbysantsddosh
Ccbysantsddosh
 
Ccsdbyhday1santodms
Ccsdbyhday1santodmsCcsdbyhday1santodms
Ccsdbyhday1santodms
 
Serskmanagvicedeement
SerskmanagvicedeementSerskmanagvicedeement
Serskmanagvicedeement
 

Recently uploaded

Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...EduSkills OECD
 
Accessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impactAccessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impactdawncurless
 
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptxSOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptxiammrhaywood
 
Presiding Officer Training module 2024 lok sabha elections
Presiding Officer Training module 2024 lok sabha electionsPresiding Officer Training module 2024 lok sabha elections
Presiding Officer Training module 2024 lok sabha electionsanshu789521
 
How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17Celine George
 
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...Marc Dusseiller Dusjagr
 
Hybridoma Technology ( Production , Purification , and Application )
Hybridoma Technology  ( Production , Purification , and Application  ) Hybridoma Technology  ( Production , Purification , and Application  )
Hybridoma Technology ( Production , Purification , and Application ) Sakshi Ghasle
 
A Critique of the Proposed National Education Policy Reform
A Critique of the Proposed National Education Policy ReformA Critique of the Proposed National Education Policy Reform
A Critique of the Proposed National Education Policy ReformChameera Dedduwage
 
Employee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptxEmployee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptxNirmalaLoungPoorunde1
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxmanuelaromero2013
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentInMediaRes1
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introductionMaksud Ahmed
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptxVS Mahajan Coaching Centre
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Krashi Coaching
 
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdfEnzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdfSumit Tiwari
 
The basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxThe basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxheathfieldcps1
 
The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13Steve Thomason
 

Recently uploaded (20)

Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
Presentation by Andreas Schleicher Tackling the School Absenteeism Crisis 30 ...
 
Accessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impactAccessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impact
 
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptxSOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
SOCIAL AND HISTORICAL CONTEXT - LFTVD.pptx
 
Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Tilak Nagar Delhi reach out to us at 🔝9953056974🔝
 
Presiding Officer Training module 2024 lok sabha elections
Presiding Officer Training module 2024 lok sabha electionsPresiding Officer Training module 2024 lok sabha elections
Presiding Officer Training module 2024 lok sabha elections
 
How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17How to Configure Email Server in Odoo 17
How to Configure Email Server in Odoo 17
 
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
 
Hybridoma Technology ( Production , Purification , and Application )
Hybridoma Technology  ( Production , Purification , and Application  ) Hybridoma Technology  ( Production , Purification , and Application  )
Hybridoma Technology ( Production , Purification , and Application )
 
A Critique of the Proposed National Education Policy Reform
A Critique of the Proposed National Education Policy ReformA Critique of the Proposed National Education Policy Reform
A Critique of the Proposed National Education Policy Reform
 
Employee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptxEmployee wellbeing at the workplace.pptx
Employee wellbeing at the workplace.pptx
 
How to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptxHow to Make a Pirate ship Primary Education.pptx
How to Make a Pirate ship Primary Education.pptx
 
Alper Gobel In Media Res Media Component
Alper Gobel In Media Res Media ComponentAlper Gobel In Media Res Media Component
Alper Gobel In Media Res Media Component
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introduction
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
 
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdfTataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
 
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdfEnzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
 
The basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxThe basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptx
 
Código Creativo y Arte de Software | Unidad 1
Código Creativo y Arte de Software | Unidad 1Código Creativo y Arte de Software | Unidad 1
Código Creativo y Arte de Software | Unidad 1
 
The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13
 

I01letor20so201leutor2020

  • 1. Objective Candidates can expect to gain knowledge and understanding in the following upon successful completion of the education and examination components related to this certification. problems and measure ROI based on performance metrics. The outcomes of this program include: • • Understanding and effectively auditing the intent of ISO 27001 in the new Annex SL format • • Understanding the organization and its context & Issues • • Understanding the needs and expectations of interested parties • • Identifying issues • • Leadership and commitment for the quality management system • • Understanding risks and opportunities • • Determination of security requirements for products and services and selection of controls • from Annex A • • Performance evaluation • • Identification and reporting of non-conformances in the process audit • • Evaluating corrective actions for root cause and effectiveness • • Auditing techniques including effective auditing of management LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN ISO27001: Lead Auditor Program Overview ISO 27001:2013 Lead Auditor is a 5-day course that offers an in-depth understanding of the concepts of the ISO 27001:2013 standard and the principles and practices of performing and reporting on effective information security management system audits in accordance with ISO 19011 standard. Experienced instructor with over 15 years in ISMS explain the clauses of ISO 27001:2013 in detail and guide students through the audit process, which is required for creating and maintaining an Information Security Management System based on ISO 27001:2013. Students will gain auditing skills and knowledge through a balance of classroom training, practical role- playing, group workshops, case studies and open forum discussions. This is currently one of the most dynamic ISO 27001 courses available due to its progressive, hands-on and workshop oriented approach. This course does not require any IT technical skills as this is a management system standard.
  • 2. Workshop Chronology Day 1: 9:00am – 5:00pm Day 2: 9:00am – 5:00pm Day 3: 9:00am – 5:00pm Day 4: 9:00am – 5:00pm Day 5: 9:00am – 5:00pm • There will be an online training followed by multiple choice exam of 100 marks. • You need to acquire 60+ marks to clear the exam. • If you fail, you can retake the exam after one day. • Incase Participant do not score passing % then they will be granted a 2nd attempt at no additional cost. Re-examination can be taken up-to 30 days from date of 1st exam attempt. Target Audience: • Project managers. • Project Board members • Senior Responsible Owners • Team Managers • Product Delivery Managers • Project Assurance • Business Change Analysts • Project Support • Project and Program Office personnel • Operational line managers/staff LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN ISO27001: Lead Auditor Prerequisites: There are no mandatory pre-requisite for ISO 27001 but below are few recommendations. • Recommended to have training on ISO 27001 through a qualified training institution. • Recommended to have work experience in quality and security. Course Benefit This course will help you: • Identify the aims and benefits of an ISO 27001:2013 audit • Interpret ISO 27001:2013 requirements for audit application • Learn to conduct and audit a risk assessment process and learn the methodology of risk assessments • Learn how suitable controls are chosen based on Annex A • Plan, conduct and follow-up auditing of the risk register and the selection of controls • Grasp the application of risk-based thinking, leadership and process management • Access the latest auditor techniques and identify appropriate use • Build stakeholder confidence by managing processes in line with the latest requirements
  • 3. Workshop Outline DAY 1 Auditing a Security Management System Module 1: Information Security Management Systems Activity 1 – Understanding Information Security Module 2: Information Security Concepts Module 3: The Audit Process for ISMS Activity 2 – Audit Planning Considerations Module 4: Auditing the ISO 27001 Standard Activity 3 – Security Terminology Module 5: Context of the Organization Activity 4 – Auditing Organizational Context Module 6: Leadership Activity 5 – Auditing Security Policy DAY 2 Auditing a Security Management System ReCap Day 1 Module 7: Planning Activity 6 – Auditing Security Objectives Activity 7 – Conducting and auditing a Risk assessment process, Risk register and selection of controls from Annex A Module 8: Support Activity 7 – Competence and Awareness Module 9: Operation Activity 8 – Operational Controls Module 10: Performance Evaluation Activity 9 – Security Performance Evaluation Method Module 11: Improvement Activity 10 – Effectiveness of the Security Management System Tepat Training & Consultancy PLT Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com ISO27001: Lead Auditor DAY 3 Conducting and Leading Management System Audits ReCap Day 2 Module 1: ISO 19011 Overview Activity 1 – Successful Auditing Module 2: Managing an Audit Program Activity 2 – Scheduling Considerations Activity 3 – Audit Objective, Scope and Criteria Activity 4 – Auditor Competencies Activity 5 – Selecting the Audit Team Module 3: Audit Planning and Preparation Activity 6 – Additional Information Required for an Audit Activity 7 – Determining Sources of Objective Evidence Activity 8 – The Audit Plan Activity 9 – Audit Work Documents DAY 4 Conducting and Leading Management System Audits ReCap Day 3 Module 4: Performing the Audit Activity 10 – Develop 5 Strategies to Build Relationships Activity 11 – Personality Types Activity 12 – Opening Meeting Activity 13 – Audit Interviews Activity 14 – Nonconformity Report Activity 15 – Closing Meeting Module 5: Reporting Audit Outcomes Activity 16 – Draft Audit Report Activity 17 – Corrective Action
  • 4. Workshop Outline DAY 5 Case Study & Examination ReCap Day 4 Case Studies – Live Case & Group Discussion Exam Tepat Training & Consultancy PLT Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com ISO27001: Lead Auditor
  • 5. Trainer Profile Capt. A. Rajkumar CISP, CISA, BCMS IRCA Lead Auditor ISO 9001 & ISO 14001, OSHAS, ISO 27001, ISO 22301, SA 8000 Capt. Rajkumar holds a degree in Physics and Computer Science and advanced diploma in applied sciences. He is a certified Master Mariner in the merchant marine with a career at sea spanning over 16 years. After his retirement from a sea career, for the last decade, he has implemented and trained over 100 MNC’s & GLC’s for various standards and regulatory compliances in the ASEAN region and Asia. He was a primary player in bringing ISO 20000-1 IT Service Management to Malaysia and had assisted Kompakar Inc, an MSC status company, Certified to ISO 20000-1, the first 20000 certificate in ASEAN region. He has also consulted trained and helped certify Pentasoft Malaysia, a CMMI Level 5 company in IT Service Management ISO 20000, one of the very few software development companies in the world to achieve this standard. His experience in Telco goes back to 2004 when he did work for Telekom and GITN. He also was engaged with Greenpacket, Macrokiosk, NTT, Redtone, Hitachi Sunway, AIMS, Strateq DC and other Telco players in setting up their QMS and Information Security, Business Continuity standards. He was one of the first batch of BS 7799 (Old Version of ISO 27001) qualified auditors in Malaysia. He has worked with companies like Petronas, Charigalli Gas, Sapura Crest, Kanchana Oil, PT Pertamina in Risk Assessments, GITN Telekom Malaysia, DigiCert POS Malaysia in Information Security management & Project Management Implementation & training. Tepat Training & Consultancy PLT Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com ISO27001: Lead Auditor