SlideShare a Scribd company logo
1 of 5
Objective
Candidates can expect to gain knowledge and understanding in the following upon successful completion
of the education and examination components related to this certification.
problems and measure ROI based on performance metrics. The outcomes of this program include:
• • Understanding and effectively auditing the intent of ISO 27001 in the new Annex SL format
• • Understanding the organization and its context & Issues
• • Understanding the needs and expectations of interested parties
• • Identifying issues
• • Leadership and commitment for the quality management system
• • Understanding risks and opportunities
• • Determination of security requirements for products and services and selection of controls
• from Annex A
• • Performance evaluation
• • Identification and reporting of non-conformances in the process audit
• • Evaluating corrective actions for root cause and effectiveness
• • Auditing techniques including effective auditing of management
LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN
ISO27001: Lead Auditor
Program Overview
ISO 27001:2013 Lead Auditor is a 5-day course that offers an in-depth understanding of the concepts of the
ISO 27001:2013 standard and the principles and practices of performing and reporting on effective
information security management system audits in accordance with ISO 19011 standard.
Experienced instructor with over 15 years in ISMS explain the clauses of ISO 27001:2013 in detail and guide
students through the audit process, which is required for creating and maintaining an Information Security
Management System based on ISO 27001:2013.
Students will gain auditing skills and knowledge through a balance of classroom training, practical role-
playing, group workshops, case studies and open forum discussions. This is currently one of the most
dynamic ISO 27001 courses available due to its progressive, hands-on and workshop oriented approach.
This course does not require any IT technical skills as this is a management system standard.
Workshop Chronology
Day 1: 9:00am – 5:00pm
Day 2: 9:00am – 5:00pm
Day 3: 9:00am – 5:00pm
Day 4: 9:00am – 5:00pm
Day 5: 9:00am – 5:00pm
• There will be an online training followed by
multiple choice exam of 100 marks.
• You need to acquire 60+ marks to clear the
exam.
• If you fail, you can retake the exam after one
day.
• Incase Participant do not score passing % then
they will be granted a 2nd attempt at no
additional cost. Re-examination can be taken
up-to 30 days from date of 1st exam attempt.
Target Audience:
• Project managers.
• Project Board members
• Senior Responsible Owners
• Team Managers
• Product Delivery Managers
• Project Assurance
• Business Change Analysts
• Project Support
• Project and Program Office personnel
• Operational line managers/staff
LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN
ISO27001: Lead Auditor
Prerequisites:
There are no mandatory pre-requisite for ISO
27001 but below are few recommendations.
• Recommended to have training on ISO 27001
through a qualified training institution.
• Recommended to have work experience in
quality and security.
Course Benefit
This course will help you:
• Identify the aims and benefits of an ISO 27001:2013 audit
• Interpret ISO 27001:2013 requirements for audit application
• Learn to conduct and audit a risk assessment process and learn the methodology of risk
assessments
• Learn how suitable controls are chosen based on Annex A
• Plan, conduct and follow-up auditing of the risk register and the selection of controls
• Grasp the application of risk-based thinking, leadership and process management
• Access the latest auditor techniques and identify appropriate use
• Build stakeholder confidence by managing processes in line with the latest requirements
Workshop Outline
DAY 1
Auditing a Security Management System
Module 1: Information Security Management
Systems
Activity 1 – Understanding Information Security
Module 2: Information Security Concepts
Module 3: The Audit Process for ISMS
Activity 2 – Audit Planning Considerations
Module 4: Auditing the ISO 27001 Standard
Activity 3 – Security Terminology
Module 5: Context of the Organization
Activity 4 – Auditing Organizational Context
Module 6: Leadership
Activity 5 – Auditing Security Policy
DAY 2
Auditing a Security Management System
ReCap Day 1
Module 7: Planning
Activity 6 – Auditing Security Objectives
Activity 7 – Conducting and auditing a Risk
assessment process, Risk register and selection of
controls from Annex A
Module 8: Support
Activity 7 – Competence and Awareness
Module 9: Operation
Activity 8 – Operational Controls
Module 10: Performance Evaluation
Activity 9 – Security Performance Evaluation Method
Module 11: Improvement
Activity 10 – Effectiveness of the Security
Management System
Tepat Training & Consultancy PLT
Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang
Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com
ISO27001: Lead Auditor
DAY 3
Conducting and Leading Management System
Audits
ReCap Day 2
Module 1: ISO 19011 Overview
Activity 1 – Successful Auditing
Module 2: Managing an Audit Program
Activity 2 – Scheduling Considerations
Activity 3 – Audit Objective, Scope and Criteria
Activity 4 – Auditor Competencies
Activity 5 – Selecting the Audit Team
Module 3: Audit Planning and Preparation
Activity 6 – Additional Information Required for an
Audit
Activity 7 – Determining Sources of Objective
Evidence
Activity 8 – The Audit Plan
Activity 9 – Audit Work Documents
DAY 4
Conducting and Leading Management System
Audits
ReCap Day 3
Module 4: Performing the Audit
Activity 10 – Develop 5 Strategies to Build
Relationships
Activity 11 – Personality Types
Activity 12 – Opening Meeting
Activity 13 – Audit Interviews
Activity 14 – Nonconformity Report
Activity 15 – Closing Meeting
Module 5: Reporting Audit Outcomes
Activity 16 – Draft Audit Report
Activity 17 – Corrective Action
Workshop Outline
DAY 5
Case Study & Examination
ReCap Day 4
Case Studies – Live Case & Group Discussion
Exam
Tepat Training & Consultancy PLT
Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang
Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com
ISO27001: Lead Auditor
Trainer Profile
Capt. A. Rajkumar CISP, CISA, BCMS IRCA Lead Auditor ISO 9001 & ISO 14001, OSHAS, ISO 27001,
ISO 22301, SA 8000
Capt. Rajkumar holds a degree in Physics and Computer Science and advanced diploma in
applied sciences. He is a certified Master Mariner in the merchant marine with a career at
sea spanning over 16 years. After his retirement from a sea career, for the last decade, he
has implemented and trained over 100 MNC’s & GLC’s for various standards and regulatory
compliances in the ASEAN region and Asia.
He was a primary player in bringing ISO 20000-1 IT Service Management to Malaysia and
had assisted Kompakar Inc, an MSC status company, Certified to ISO 20000-1, the first 20000
certificate in ASEAN region. He has also consulted trained and helped certify Pentasoft
Malaysia, a CMMI Level 5 company in IT Service Management ISO 20000, one of the very
few software development companies in the world to achieve this standard.
His experience in Telco goes back to 2004 when he did work for Telekom and GITN. He also
was engaged with Greenpacket, Macrokiosk, NTT, Redtone, Hitachi Sunway, AIMS, Strateq
DC and other Telco players in setting up their QMS and Information Security, Business
Continuity standards.
He was one of the first batch of BS 7799 (Old Version of ISO 27001) qualified auditors in
Malaysia. He has worked with companies like Petronas, Charigalli Gas, Sapura Crest,
Kanchana Oil, PT Pertamina in Risk Assessments, GITN Telekom Malaysia, DigiCert POS
Malaysia in Information Security management & Project Management Implementation &
training.
Tepat Training & Consultancy PLT
Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang
Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com
ISO27001: Lead Auditor

More Related Content

What's hot

7.0 Project Cost Management Overview
7.0 Project Cost Management Overview7.0 Project Cost Management Overview
7.0 Project Cost Management OverviewDavidMcLachlan1
 
11.6 Implement Risk Responses
11.6 Implement Risk Responses11.6 Implement Risk Responses
11.6 Implement Risk ResponsesDavidMcLachlan1
 
Project quality management - PMI PMBOK Knowledge Area
Project quality management - PMI PMBOK Knowledge AreaProject quality management - PMI PMBOK Knowledge Area
Project quality management - PMI PMBOK Knowledge AreaImran Jamil
 
Project integration management
Project  integration managementProject  integration management
Project integration managementdeep sharma
 
3.0 The Agile Manifesto and Clarifying principles
3.0 The Agile Manifesto and Clarifying principles3.0 The Agile Manifesto and Clarifying principles
3.0 The Agile Manifesto and Clarifying principlesDavidMcLachlan1
 
10.1 Plan Communication Management
10.1 Plan Communication Management10.1 Plan Communication Management
10.1 Plan Communication ManagementDavidMcLachlan1
 
PMP Exam Preparation Workshop
PMP Exam Preparation WorkshopPMP Exam Preparation Workshop
PMP Exam Preparation WorkshopCeltem Learning
 
Project management slide - Introduction
Project management slide - IntroductionProject management slide - Introduction
Project management slide - IntroductionAlbert Poghosyan
 
An Introduction to Agile
An Introduction to AgileAn Introduction to Agile
An Introduction to AgileDavidMcLachlan1
 
1.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 11.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 1reddvise
 

What's hot (20)

7.0 Project Cost Management Overview
7.0 Project Cost Management Overview7.0 Project Cost Management Overview
7.0 Project Cost Management Overview
 
11.7 Monitor Risks
11.7 Monitor Risks11.7 Monitor Risks
11.7 Monitor Risks
 
Portfolio mostafa saad_jan_2020
Portfolio mostafa saad_jan_2020Portfolio mostafa saad_jan_2020
Portfolio mostafa saad_jan_2020
 
Pmp quality chapter 8
Pmp quality chapter 8Pmp quality chapter 8
Pmp quality chapter 8
 
1. project integration management
1. project integration management1. project integration management
1. project integration management
 
11.6 Implement Risk Responses
11.6 Implement Risk Responses11.6 Implement Risk Responses
11.6 Implement Risk Responses
 
Project quality management - PMI PMBOK Knowledge Area
Project quality management - PMI PMBOK Knowledge AreaProject quality management - PMI PMBOK Knowledge Area
Project quality management - PMI PMBOK Knowledge Area
 
14 key changes in pmbok ® guide sixth edition
14 key changes in pmbok ® guide sixth edition14 key changes in pmbok ® guide sixth edition
14 key changes in pmbok ® guide sixth edition
 
Project integration management
Project  integration managementProject  integration management
Project integration management
 
Pmp in summary
Pmp in summaryPmp in summary
Pmp in summary
 
3.0 The Agile Manifesto and Clarifying principles
3.0 The Agile Manifesto and Clarifying principles3.0 The Agile Manifesto and Clarifying principles
3.0 The Agile Manifesto and Clarifying principles
 
10.1 Plan Communication Management
10.1 Plan Communication Management10.1 Plan Communication Management
10.1 Plan Communication Management
 
PMP Exam Preparation Workshop
PMP Exam Preparation WorkshopPMP Exam Preparation Workshop
PMP Exam Preparation Workshop
 
PMP Prep Handout_Integration
PMP Prep Handout_IntegrationPMP Prep Handout_Integration
PMP Prep Handout_Integration
 
Project management slide - Introduction
Project management slide - IntroductionProject management slide - Introduction
Project management slide - Introduction
 
PM FrameWork: Module 3
PM FrameWork: Module 3PM FrameWork: Module 3
PM FrameWork: Module 3
 
An Introduction to Agile
An Introduction to AgileAn Introduction to Agile
An Introduction to Agile
 
PMBOK 6TH
PMBOK 6THPMBOK 6TH
PMBOK 6TH
 
1.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 11.3 project management process groups & knowledge areas 1
1.3 project management process groups & knowledge areas 1
 
PMP / Framework 1 2-3
PMP / Framework 1 2-3PMP / Framework 1 2-3
PMP / Framework 1 2-3
 

Similar to ISO27001 Lead Auditor

ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...IEVISION IT SERVICES Pvt. Ltd
 
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SRS.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SRBakthavatchalam Subramani
 
ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training Drew Kahrs
 
PECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by KinvergPECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by KinvergKinverg
 
Online ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor TrainingOnline ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor TrainingWillardSorenson
 
Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001PECB
 
Awareness of iatf 16949
Awareness of iatf 16949Awareness of iatf 16949
Awareness of iatf 16949Pavan Patil
 
Risk elimination and safety committee
Risk elimination and safety committeeRisk elimination and safety committee
Risk elimination and safety committeeHpm India
 
english_bok_ismp_202306.pptx
english_bok_ismp_202306.pptxenglish_bok_ismp_202306.pptx
english_bok_ismp_202306.pptxssuser00d6eb
 
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education fieldComparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education fieldSadanand Borade
 
Stella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMSStella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMSStella Brits
 
SAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal AuditingSAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal AuditingSwitzerland09
 
continuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdfcontinuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdflynnmdasuki1
 
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...Egyptian Engineers Association
 

Similar to ISO27001 Lead Auditor (20)

ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
ISO 27001 Lead Auditor Training Course | ISO 27001 Lead Auditor Certification...
 
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SRS.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
S.Baktha-QA-Process-Audits-Security-Services- 25 Nov 2016 SR
 
ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training
 
PECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by KinvergPECB Certified ISO 27001:2013 Lead Implementer by Kinverg
PECB Certified ISO 27001:2013 Lead Implementer by Kinverg
 
Iso 27001 lead auditor
Iso 27001 lead auditorIso 27001 lead auditor
Iso 27001 lead auditor
 
Online ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor TrainingOnline ISO 9001 Lead Auditor Training
Online ISO 9001 Lead Auditor Training
 
Intro to ISO
Intro to ISOIntro to ISO
Intro to ISO
 
Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001Best Practices in Auditing ISO/IEC 27001
Best Practices in Auditing ISO/IEC 27001
 
Qsys Profile
Qsys ProfileQsys Profile
Qsys Profile
 
S.Baktha-QA-Process-Audits
S.Baktha-QA-Process-AuditsS.Baktha-QA-Process-Audits
S.Baktha-QA-Process-Audits
 
Awareness of iatf 16949
Awareness of iatf 16949Awareness of iatf 16949
Awareness of iatf 16949
 
Risk elimination and safety committee
Risk elimination and safety committeeRisk elimination and safety committee
Risk elimination and safety committee
 
english_bok_ismp_202306.pptx
english_bok_ismp_202306.pptxenglish_bok_ismp_202306.pptx
english_bok_ismp_202306.pptx
 
Damco iso 27001
Damco iso   27001Damco iso   27001
Damco iso 27001
 
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education fieldComparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
Comparison of EOMS ISO 21001 with ISO 9001 - New evaluation in education field
 
Stella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMSStella Brits Roles and Responsibilities - QMS
Stella Brits Roles and Responsibilities - QMS
 
SAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal AuditingSAI Global Webinar: Tips for Effective Internal Auditing
SAI Global Webinar: Tips for Effective Internal Auditing
 
Lead Auditor Course on ISO 27001:2013 (ISMS) - IRCA
Lead Auditor Course on ISO 27001:2013 (ISMS) - IRCALead Auditor Course on ISO 27001:2013 (ISMS) - IRCA
Lead Auditor Course on ISO 27001:2013 (ISMS) - IRCA
 
continuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdfcontinuous improvement in school management (4) .pdf
continuous improvement in school management (4) .pdf
 
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
ISO 45001 018 . 2018 م.71-مبادرة#تواصل_تطوير-د.محمد عبدالمجيد-التعريف بمتطلبا...
 

More from Anne Starr

I01letor20so201leutor2020
I01letor20so201leutor2020I01letor20so201leutor2020
I01letor20so201leutor2020Anne Starr
 
Dncybersecurity
DncybersecurityDncybersecurity
DncybersecurityAnne Starr
 
Dancyrityshy 1foundatioieh
Dancyrityshy 1foundatioiehDancyrityshy 1foundatioieh
Dancyrityshy 1foundatioiehAnne Starr
 
2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)Anne Starr
 
Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577Anne Starr
 
01wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-40001wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-400Anne Starr
 
uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00Anne Starr
 
Cloudhnologysstecociat
CloudhnologysstecociatCloudhnologysstecociat
CloudhnologysstecociatAnne Starr
 
Cmbysantocsddsh
CmbysantocsddshCmbysantocsddsh
CmbysantocsddshAnne Starr
 
Cddmbysantcsosh
CddmbysantcsoshCddmbysantcsosh
CddmbysantcsoshAnne Starr
 
Ccbysantsddosh
Ccbysantsddosh  Ccbysantsddosh
Ccbysantsddosh Anne Starr
 
Ccsdbyhday1santodms
Ccsdbyhday1santodmsCcsdbyhday1santodms
Ccsdbyhday1santodmsAnne Starr
 

More from Anne Starr (20)

I01letor20so201leutor2020
I01letor20so201leutor2020I01letor20so201leutor2020
I01letor20so201leutor2020
 
Ccsddm5days
Ccsddm5daysCcsddm5days
Ccsddm5days
 
Dayblic
DayblicDayblic
Dayblic
 
Day1cspbeblic
Day1cspbeblicDay1cspbeblic
Day1cspbeblic
 
Dncybersecurity
DncybersecurityDncybersecurity
Dncybersecurity
 
Dancyrityshy 1foundatioieh
Dancyrityshy 1foundatioiehDancyrityshy 1foundatioieh
Dancyrityshy 1foundatioieh
 
2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)2 slides(2ndvariadaystion)
2 slides(2ndvariadaystion)
 
Sec4
Sec4Sec4
Sec4
 
Secuntialesse
SecuntialesseSecuntialesse
Secuntialesse
 
Securityic2
Securityic2Securityic2
Securityic2
 
)k
)k)k
)k
 
inte
inteinte
inte
 
Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577Awtitioneressentialsdeckscloudprac401-577
Awtitioneressentialsdeckscloudprac401-577
 
01wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-40001wslouAsentialsdeck2dpractitioneres-400
01wslouAsentialsdeck2dpractitioneres-400
 
uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00uderessAwscloentialsdeck1-2ion00
uderessAwscloentialsdeck1-2ion00
 
Cloudhnologysstecociat
CloudhnologysstecociatCloudhnologysstecociat
Cloudhnologysstecociat
 
Cmbysantocsddsh
CmbysantocsddshCmbysantocsddsh
Cmbysantocsddsh
 
Cddmbysantcsosh
CddmbysantcsoshCddmbysantcsosh
Cddmbysantcsosh
 
Ccbysantsddosh
Ccbysantsddosh  Ccbysantsddosh
Ccbysantsddosh
 
Ccsdbyhday1santodms
Ccsdbyhday1santodmsCcsdbyhday1santodms
Ccsdbyhday1santodms
 

Recently uploaded

Piping Basic stress analysis by engineering
Piping Basic stress analysis by engineeringPiping Basic stress analysis by engineering
Piping Basic stress analysis by engineeringJuanCarlosMorales19600
 
Study on Air-Water & Water-Water Heat Exchange in a Finned Tube Exchanger
Study on Air-Water & Water-Water Heat Exchange in a Finned Tube ExchangerStudy on Air-Water & Water-Water Heat Exchange in a Finned Tube Exchanger
Study on Air-Water & Water-Water Heat Exchange in a Finned Tube ExchangerAnamika Sarkar
 
UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)
UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)
UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)Dr SOUNDIRARAJ N
 
Arduino_CSE ece ppt for working and principal of arduino.ppt
Arduino_CSE ece ppt for working and principal of arduino.pptArduino_CSE ece ppt for working and principal of arduino.ppt
Arduino_CSE ece ppt for working and principal of arduino.pptSAURABHKUMAR892774
 
Introduction to Machine Learning Unit-3 for II MECH
Introduction to Machine Learning Unit-3 for II MECHIntroduction to Machine Learning Unit-3 for II MECH
Introduction to Machine Learning Unit-3 for II MECHC Sai Kiran
 
Electronically Controlled suspensions system .pdf
Electronically Controlled suspensions system .pdfElectronically Controlled suspensions system .pdf
Electronically Controlled suspensions system .pdfme23b1001
 
Transport layer issues and challenges - Guide
Transport layer issues and challenges - GuideTransport layer issues and challenges - Guide
Transport layer issues and challenges - GuideGOPINATHS437943
 
TechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor Catchers
TechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor CatchersTechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor Catchers
TechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor Catcherssdickerson1
 
CCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdf
CCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdfCCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdf
CCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdfAsst.prof M.Gokilavani
 
lifi-technology with integration of IOT.pptx
lifi-technology with integration of IOT.pptxlifi-technology with integration of IOT.pptx
lifi-technology with integration of IOT.pptxsomshekarkn64
 
Correctly Loading Incremental Data at Scale
Correctly Loading Incremental Data at ScaleCorrectly Loading Incremental Data at Scale
Correctly Loading Incremental Data at ScaleAlluxio, Inc.
 
Work Experience-Dalton Park.pptxfvvvvvvv
Work Experience-Dalton Park.pptxfvvvvvvvWork Experience-Dalton Park.pptxfvvvvvvv
Work Experience-Dalton Park.pptxfvvvvvvvLewisJB
 
Call Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile serviceCall Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile servicerehmti665
 
Gurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort service
Gurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort serviceGurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort service
Gurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort servicejennyeacort
 
Risk Assessment For Installation of Drainage Pipes.pdf
Risk Assessment For Installation of Drainage Pipes.pdfRisk Assessment For Installation of Drainage Pipes.pdf
Risk Assessment For Installation of Drainage Pipes.pdfROCENODodongVILLACER
 
computer application and construction management
computer application and construction managementcomputer application and construction management
computer application and construction managementMariconPadriquez1
 
Unit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfg
Unit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfgUnit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfg
Unit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfgsaravananr517913
 

Recently uploaded (20)

Piping Basic stress analysis by engineering
Piping Basic stress analysis by engineeringPiping Basic stress analysis by engineering
Piping Basic stress analysis by engineering
 
Study on Air-Water & Water-Water Heat Exchange in a Finned Tube Exchanger
Study on Air-Water & Water-Water Heat Exchange in a Finned Tube ExchangerStudy on Air-Water & Water-Water Heat Exchange in a Finned Tube Exchanger
Study on Air-Water & Water-Water Heat Exchange in a Finned Tube Exchanger
 
UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)
UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)
UNIT III ANALOG ELECTRONICS (BASIC ELECTRONICS)
 
Arduino_CSE ece ppt for working and principal of arduino.ppt
Arduino_CSE ece ppt for working and principal of arduino.pptArduino_CSE ece ppt for working and principal of arduino.ppt
Arduino_CSE ece ppt for working and principal of arduino.ppt
 
Introduction to Machine Learning Unit-3 for II MECH
Introduction to Machine Learning Unit-3 for II MECHIntroduction to Machine Learning Unit-3 for II MECH
Introduction to Machine Learning Unit-3 for II MECH
 
POWER SYSTEMS-1 Complete notes examples
POWER SYSTEMS-1 Complete notes  examplesPOWER SYSTEMS-1 Complete notes  examples
POWER SYSTEMS-1 Complete notes examples
 
Electronically Controlled suspensions system .pdf
Electronically Controlled suspensions system .pdfElectronically Controlled suspensions system .pdf
Electronically Controlled suspensions system .pdf
 
🔝9953056974🔝!!-YOUNG call girls in Rajendra Nagar Escort rvice Shot 2000 nigh...
🔝9953056974🔝!!-YOUNG call girls in Rajendra Nagar Escort rvice Shot 2000 nigh...🔝9953056974🔝!!-YOUNG call girls in Rajendra Nagar Escort rvice Shot 2000 nigh...
🔝9953056974🔝!!-YOUNG call girls in Rajendra Nagar Escort rvice Shot 2000 nigh...
 
Transport layer issues and challenges - Guide
Transport layer issues and challenges - GuideTransport layer issues and challenges - Guide
Transport layer issues and challenges - Guide
 
TechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor Catchers
TechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor CatchersTechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor Catchers
TechTAC® CFD Report Summary: A Comparison of Two Types of Tubing Anchor Catchers
 
CCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdf
CCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdfCCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdf
CCS355 Neural Network & Deep Learning Unit II Notes with Question bank .pdf
 
lifi-technology with integration of IOT.pptx
lifi-technology with integration of IOT.pptxlifi-technology with integration of IOT.pptx
lifi-technology with integration of IOT.pptx
 
Correctly Loading Incremental Data at Scale
Correctly Loading Incremental Data at ScaleCorrectly Loading Incremental Data at Scale
Correctly Loading Incremental Data at Scale
 
Work Experience-Dalton Park.pptxfvvvvvvv
Work Experience-Dalton Park.pptxfvvvvvvvWork Experience-Dalton Park.pptxfvvvvvvv
Work Experience-Dalton Park.pptxfvvvvvvv
 
Call Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile serviceCall Girls Delhi {Jodhpur} 9711199012 high profile service
Call Girls Delhi {Jodhpur} 9711199012 high profile service
 
Gurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort service
Gurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort serviceGurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort service
Gurgaon ✡️9711147426✨Call In girls Gurgaon Sector 51 escort service
 
young call girls in Rajiv Chowk🔝 9953056974 🔝 Delhi escort Service
young call girls in Rajiv Chowk🔝 9953056974 🔝 Delhi escort Serviceyoung call girls in Rajiv Chowk🔝 9953056974 🔝 Delhi escort Service
young call girls in Rajiv Chowk🔝 9953056974 🔝 Delhi escort Service
 
Risk Assessment For Installation of Drainage Pipes.pdf
Risk Assessment For Installation of Drainage Pipes.pdfRisk Assessment For Installation of Drainage Pipes.pdf
Risk Assessment For Installation of Drainage Pipes.pdf
 
computer application and construction management
computer application and construction managementcomputer application and construction management
computer application and construction management
 
Unit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfg
Unit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfgUnit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfg
Unit7-DC_Motors nkkjnsdkfnfcdfknfdgfggfg
 

ISO27001 Lead Auditor

  • 1. Objective Candidates can expect to gain knowledge and understanding in the following upon successful completion of the education and examination components related to this certification. problems and measure ROI based on performance metrics. The outcomes of this program include: • • Understanding and effectively auditing the intent of ISO 27001 in the new Annex SL format • • Understanding the organization and its context & Issues • • Understanding the needs and expectations of interested parties • • Identifying issues • • Leadership and commitment for the quality management system • • Understanding risks and opportunities • • Determination of security requirements for products and services and selection of controls • from Annex A • • Performance evaluation • • Identification and reporting of non-conformances in the process audit • • Evaluating corrective actions for root cause and effectiveness • • Auditing techniques including effective auditing of management LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN ISO27001: Lead Auditor Program Overview ISO 27001:2013 Lead Auditor is a 5-day course that offers an in-depth understanding of the concepts of the ISO 27001:2013 standard and the principles and practices of performing and reporting on effective information security management system audits in accordance with ISO 19011 standard. Experienced instructor with over 15 years in ISMS explain the clauses of ISO 27001:2013 in detail and guide students through the audit process, which is required for creating and maintaining an Information Security Management System based on ISO 27001:2013. Students will gain auditing skills and knowledge through a balance of classroom training, practical role- playing, group workshops, case studies and open forum discussions. This is currently one of the most dynamic ISO 27001 courses available due to its progressive, hands-on and workshop oriented approach. This course does not require any IT technical skills as this is a management system standard.
  • 2. Workshop Chronology Day 1: 9:00am – 5:00pm Day 2: 9:00am – 5:00pm Day 3: 9:00am – 5:00pm Day 4: 9:00am – 5:00pm Day 5: 9:00am – 5:00pm • There will be an online training followed by multiple choice exam of 100 marks. • You need to acquire 60+ marks to clear the exam. • If you fail, you can retake the exam after one day. • Incase Participant do not score passing % then they will be granted a 2nd attempt at no additional cost. Re-examination can be taken up-to 30 days from date of 1st exam attempt. Target Audience: • Project managers. • Project Board members • Senior Responsible Owners • Team Managers • Product Delivery Managers • Project Assurance • Business Change Analysts • Project Support • Project and Program Office personnel • Operational line managers/staff LEAD, PLAN, MANAGE AND IMPLEMENT AN AUDIT PLAN ISO27001: Lead Auditor Prerequisites: There are no mandatory pre-requisite for ISO 27001 but below are few recommendations. • Recommended to have training on ISO 27001 through a qualified training institution. • Recommended to have work experience in quality and security. Course Benefit This course will help you: • Identify the aims and benefits of an ISO 27001:2013 audit • Interpret ISO 27001:2013 requirements for audit application • Learn to conduct and audit a risk assessment process and learn the methodology of risk assessments • Learn how suitable controls are chosen based on Annex A • Plan, conduct and follow-up auditing of the risk register and the selection of controls • Grasp the application of risk-based thinking, leadership and process management • Access the latest auditor techniques and identify appropriate use • Build stakeholder confidence by managing processes in line with the latest requirements
  • 3. Workshop Outline DAY 1 Auditing a Security Management System Module 1: Information Security Management Systems Activity 1 – Understanding Information Security Module 2: Information Security Concepts Module 3: The Audit Process for ISMS Activity 2 – Audit Planning Considerations Module 4: Auditing the ISO 27001 Standard Activity 3 – Security Terminology Module 5: Context of the Organization Activity 4 – Auditing Organizational Context Module 6: Leadership Activity 5 – Auditing Security Policy DAY 2 Auditing a Security Management System ReCap Day 1 Module 7: Planning Activity 6 – Auditing Security Objectives Activity 7 – Conducting and auditing a Risk assessment process, Risk register and selection of controls from Annex A Module 8: Support Activity 7 – Competence and Awareness Module 9: Operation Activity 8 – Operational Controls Module 10: Performance Evaluation Activity 9 – Security Performance Evaluation Method Module 11: Improvement Activity 10 – Effectiveness of the Security Management System Tepat Training & Consultancy PLT Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com ISO27001: Lead Auditor DAY 3 Conducting and Leading Management System Audits ReCap Day 2 Module 1: ISO 19011 Overview Activity 1 – Successful Auditing Module 2: Managing an Audit Program Activity 2 – Scheduling Considerations Activity 3 – Audit Objective, Scope and Criteria Activity 4 – Auditor Competencies Activity 5 – Selecting the Audit Team Module 3: Audit Planning and Preparation Activity 6 – Additional Information Required for an Audit Activity 7 – Determining Sources of Objective Evidence Activity 8 – The Audit Plan Activity 9 – Audit Work Documents DAY 4 Conducting and Leading Management System Audits ReCap Day 3 Module 4: Performing the Audit Activity 10 – Develop 5 Strategies to Build Relationships Activity 11 – Personality Types Activity 12 – Opening Meeting Activity 13 – Audit Interviews Activity 14 – Nonconformity Report Activity 15 – Closing Meeting Module 5: Reporting Audit Outcomes Activity 16 – Draft Audit Report Activity 17 – Corrective Action
  • 4. Workshop Outline DAY 5 Case Study & Examination ReCap Day 4 Case Studies – Live Case & Group Discussion Exam Tepat Training & Consultancy PLT Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com ISO27001: Lead Auditor
  • 5. Trainer Profile Capt. A. Rajkumar CISP, CISA, BCMS IRCA Lead Auditor ISO 9001 & ISO 14001, OSHAS, ISO 27001, ISO 22301, SA 8000 Capt. Rajkumar holds a degree in Physics and Computer Science and advanced diploma in applied sciences. He is a certified Master Mariner in the merchant marine with a career at sea spanning over 16 years. After his retirement from a sea career, for the last decade, he has implemented and trained over 100 MNC’s & GLC’s for various standards and regulatory compliances in the ASEAN region and Asia. He was a primary player in bringing ISO 20000-1 IT Service Management to Malaysia and had assisted Kompakar Inc, an MSC status company, Certified to ISO 20000-1, the first 20000 certificate in ASEAN region. He has also consulted trained and helped certify Pentasoft Malaysia, a CMMI Level 5 company in IT Service Management ISO 20000, one of the very few software development companies in the world to achieve this standard. His experience in Telco goes back to 2004 when he did work for Telekom and GITN. He also was engaged with Greenpacket, Macrokiosk, NTT, Redtone, Hitachi Sunway, AIMS, Strateq DC and other Telco players in setting up their QMS and Information Security, Business Continuity standards. He was one of the first batch of BS 7799 (Old Version of ISO 27001) qualified auditors in Malaysia. He has worked with companies like Petronas, Charigalli Gas, Sapura Crest, Kanchana Oil, PT Pertamina in Risk Assessments, GITN Telekom Malaysia, DigiCert POS Malaysia in Information Security management & Project Management Implementation & training. Tepat Training & Consultancy PLT Unit 2-2-22 1 Square, Tingkat Mahsuri, The One 11950 Bayan Baru, Penang Tel - 04 619 2792 Fax - 04 619 2699 Email- khairul@tepatllc.com ISO27001: Lead Auditor