Course Outline
1. Fundamentals of risk management
2. Risk assessment methodologies
3. The ISO 27005 framework and process model for information security risk management
4. Identification and classification of information assets
5. Defining threats to information assets
6. Identifying vulnerabilities that these threats may exploit
7. Risk analysis: scoring risks using scales and straightforward calculations
8. Overview of risk analysis tools
9. Strategies for risk evaluation and acceptance
10. Risk treatment and selection of appropriate control measures
11. Continuous review and improvement of risk assessment and management practices
12. Risk communication and stakeholder consultation
13. Integrating the ISO 27005 information security risk management framework into an ISO 27001 Information Security Management System (ISMS)
Testimonials (4)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
learning about Basel
Daksha Vallabh - Standard Bank of SA Ltd
Course - Basel III – Certified Basel Professional
Risk optimization is more clear than the other subjects
Munirah Alsahli - GOSI
Course - CGEIT – Certified in the Governance of Enterprise IT
The knowledge and understanding of the trainer on the training material was exceptional. The trainer was well aware of the subject, provided practical examples in relevance. I would highly recommend him as a trainer for this training.