Get in Touch

Course Outline

I. Information Security Management System in compliance with ISO 27001 requirements
1. Core elements of the Information Security Management System as defined by ISO 27001.
2. Exercises focused on interpreting and analyzing ISO 27001 requirements.

II. General Information on Audits
1. Overview of the complete audit process.
2. Different types of audits.

III. Audit Planning and Preparation
1. Defining audit criteria and scope.
2. Selecting the appropriate team of auditors.
3. Applying a process approach to internal audits.
4. Key aspects to consider when developing a checklist of control questions.
5. Practical exercises.

IV. Conducting the Audit – Guidelines for On-Site Audits
1. Effective auditing techniques.
2. Collecting objective evidence.
3. Identifying non-conformities and documenting proof.
4. Practical exercises.

V. Documenting Audit Findings
1. Skillfully formulating observations regarding inconsistencies.
2. Documenting non-conformities.
3. Identifying and recording insights and improvement opportunities.
4. Compiling Audit Results – Preparing the Audit Report.
5. Practical exercises.

VI. Effective Post-Audit Activities
1. Responsibilities regarding the initiation of corrective actions.
2. The importance of accurately determining the root causes of non-conformities.
3. Defining appropriate corrective actions.
4. Evaluating the effectiveness of implemented actions.
5. Managing post-audit activities related to insights and improvement potentials.
6. Practical exercises.

VII. Discussion and Summary

Requirements

Target Audience

  • Professionals preparing for the role of ISO 27001:2023 Internal Auditor.
  • Any individual with an interest in this subject matter.
 35 Hours

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories