Course Outline
1. Overview of risk management principles
2. Risk assessment methodologies
3. The ISO 27005 framework and process model for information security risk management
4. Identifying and classifying information assets
5. Defining threats to information assets
6. Recognizing vulnerabilities that these threats may exploit
7. Risk analysis: applying scales and performing basic calculations for risk scoring
8. Introduction to risk analysis tools
9. Strategies for risk evaluation and acceptance
10. Risk treatment and selecting appropriate mitigating controls
11. Reviewing and continually improving risk assessment and management processes
12. Risk communication and consultation
13. Integrating the ISO 27005 information security risk management framework into an ISO 27001 ISMS
Testimonials (4)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
learning about Basel
Daksha Vallabh - Standard Bank of SA Ltd
Course - Basel III – Certified Basel Professional
Risk optimization is more clear than the other subjects
Munirah Alsahli - GOSI
Course - CGEIT – Certified in the Governance of Enterprise IT
The knowledge and understanding of the trainer on the training material was exceptional. The trainer was well aware of the subject, provided practical examples in relevance. I would highly recommend him as a trainer for this training.