ISO 27001:2013 and ISO 19011:2018

Training for Internal auditors for information security management systems according the conformity standards ISO 27001:2013 and ISO 19011:2018.

Day 1

Part 1: Information security – concepts and normative requirements to the information security in Bulgaria

Part 2: ISO/IEC 27001:2013 – Requirements. Development and implementation. Identification of assets and risk management.

Part 3: Administrative security – continuity management and accident management. Human resources security

Part 4: Case 1: Risk management

Part 5: Physical, network and computer security

Part 6: ISO/IEC 27002:2013 – Security techniques. Inspection choices

Part 7: Discussion and assessment of day 1

Day 2

Part 1: Case 2: A choice of control mechanisms and Statement of applicability

Part 2: Requirements for conducting internal audits of ISMS, consistent with the requirements of ISO 19011:2018. Planning and preparation of internal audits

Part 3: Performing and reporting of internal audit. Determination and performance of corrective actions after the conducted internal audit

Part 4: Case 3: Raising non-conformities

Part 5: Test for knowledge assessment

Part 6: Discussion and training assessment

Document for qualification of the training: Certificate for internal auditor of information security management systems according to ISO 27001:2013 and ISO 19011:2018.

