Digicomp Academy Suisse Romande SA
Powered by Google
Trouvez votre cours...
FORMATIONS
PRESTATIONS
NOTRE PROFIL
NEWS
SERVICES
Digicomp Academy Suisse Romande SA Digicomp Academy Suisse Romande SA home | deutsch | digicomp.fr


jeudi, 2 septembre 2010
 
Cours
Cours standards
Cours sur mesure
Index des cours titre
Bootcamps
Certifications
Événements @Digicomp
Demande de cours
Actualité
 

Imprimer la page

Envoyer la page à un ami

ISO 27005 Risk Management Professional Certification («HSR»)

Dates

Certification professionnelle



This course is designed to help the participant conducting a risk assessment and implement a risk management program based on the ISO 27005 standard.  The course also presents the participant with a detailed view of the AS/NZ:4360 and the Common Criteria (ISO 15408 Standard) so you acquire the necessary knowledge to adress both the business and technical side of risk management. 
Coupled with EBIOS, a freely available Risk Assessment Software, ISO 27005, AS/NZ:4360 and the Common Criteria offer a structured approach to examine the way in which security is taken into account for the design, development, implementation and operation of the organization information system.
Taking place over five days, including the official certification exam, the course objectives are to train the audience to conduct a risk assement using EBIOS and to build a Risk Management System (RMS) and process based on ISO:27005 & AS/NZ:4360. The lectures and exercises also included guidelines for technical security assessment based on ISO 15408.


Objectifs
The course objectives are to train the audience to conduct a risk assement using EBIOS and to build a Risk Management System (RMS) and process based on ISO:27005 & AS/NZ:4360.
Profil des participants
Security Consultants and Specialists
Pré-requis
Knowing the areas of Quality, Auditing and IT Security
Contenu du cours
  1. Day 1 - Review of the standards
    • History and introduction to the standards (ISO 27005, AS/NZ:4360, ISO 15408-1/2/3) 
    • Detailed review of the ISO 27005 Standard
    • Detailed review of AS/NZ:4360 Standard
    • Overview of the ISO 15408 Part 1, 2 & 3 standard
  2. Day 2 - The Risk Assessment & Management Process
    • Overview of the Risk Management System (RMS) & Process
    • Asset discovery, classification & valuation
    • Risk analysis & assessment
    • Controls: types & selection
    • Reporting, recommandation & residual risks
    • Organizational risk management process & maintenance of RMS
  3. Day 3 - Information Assets VS. Risk & Controls
    • Building an asset registry
    • Conducting the risk analysis
    • Selecting the controls (Based on ISO 27001 & 27002)
    • Knowing & tracking residual risk
  4. Day 4 - Risk Analysis & Assessment using EBIOS (Case Study & Hands-on)
    • Using EBIOS to conduct an analysis or evaluation of the security of a product
    • Using EBIOS to establish a Protection Profile for a typical software application
    • Using EBIOS to establish a Protection Profile for an information system
    • Using EBIOS to conduct the analysis of an organisation
    • Producing a Statement of Applicability based on risk and management decision
  5. Day 5 - Examination
    • 3-hours examination leading to certification as an ISO 27005 Risk Management Professionnal. EBIOS has been created by the French Army.  The Common Criteria standard is endorsed by the many army corpse around the world including the ones from France, Canada, USA, Germany, Australia...
Suite du cursus
«CISSP» (code de cours «SSP»)
«ISO27001 Information Security Management System Lead Auditor» (code de cours «HSI»)
«ISO20000 ITSMS Lead Auditor» (code de cours «HSL»)
«Certified Information Security Manager CBK (CISM) » (code de cours «CIK»)
«Certified Information Systems Auditor Exam CBK (CISA) » (code de cours «CIM»)
«Management of Risk, Foundation» (code de cours «MOR»)
«Management of Risk, Foundation & Practitioner» (code de cours «MOP»)
Durée
5 jours
Supports de cours
Our customers acclaimed training material is assembled in a classroom binder wich includes over 600 pages of material, explanations, forms and templates ready to be used within your organisation.
- A copy of the ISO 27005 Standard
- A CDROM containing the ISO 15408 Part 1, 2 & 3 Standards
- On the CDROM, a copy of the EBIOS software
Our training material and courses are available and ready to be delivered in French, English or German.
Our trainers are either perfectly billigual or use those languages as their mother tong.
The examination fee is CHF 800.00, not included in the course fee.
Prix du cours
CHF 4800.--





 

Réservez maintenant!
Prix & Dates du cours >>

Cours Certified Ethical Hacker
Suivez ce cours pour devenir un spécialiste de la sécurité informatique
plus d'infos ...



Formation garantie:


SWITCH - Implementing Cisco Switched Networks
Genève   6. décembre
Lausanne   11. octobre
TCP/IP, cours avancé
Lausanne   30. septembre
ICND 1 - Interconnecting Cisco Network Devices Part 1 (ICND 1)
Lausanne   6. septembre
CCNA - BootCamp: Cisco CCNA® (BC-CCNA+)
Genève   4. octobre
plus d'infos...

   
 
 
 
Genève Tél.+41 22 738 80 80 E-Mail: geneve@digicomp.ch
Lausanne Tél. +41 21 321 65 00 E-Mail: lausanne@digicomp.ch
© Digicomp Academy Suisse Romande SA | Legal | Webmaster | Contact | Extranet | myDIGICOMP
  Qualité