|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/iso-27001-fundamentals/
课程评论:没有评论
**课程名称:** ISO 27001 基础 **课程概述:** 本课程将深入介绍全球公认的 ISO 27000 系列标准。该系列标准由国际标准化组织(ISO)和国际电子技术委员会(IEC)共同制定和管理,其广泛的国际参与确保了其在全球范围内的传播、实施和认可。 ISO 27000 系列标准旨在为信息安全管理体系(ISMS)的建立、维护和管理提供最佳实践指南。这些指南涵盖了信息安全管理的各个方面,尤其强调持续改进和风险缓解。 **关键标准介绍:** * **ISO 27000:** 提供了系列标准的基础知识和通用术语。 * **ISO 27001:** 规定了实施和管理信息安全管理体系(ISMS)所需的要求。该标准可用于认证。 * **ISO 27002:** 通过 114 项控制措施,分为 14 个领域和 35 个控制目标,为 ISMS 的实施定义了一套最佳实践。 * **ISO 27003:** 提供了一个关于成功实施 ISMS 的指南,重点关注该过程中重要的实现要素。 **学习目标:** 本课程将帮助您理解 ISO 27000 系列标准的核心概念,以及如何根据 ISO 27001 的要求建立和管理信息安全管理体系,从而提升组织的信息安全水平。
On this training we will learn the fundamental concepts of the ISO2700 standards globally. The standards that make up the ISO/IEC-27000 series are a set of standards created and managed by the International Organization for Standardization (ISO) and the International Electronic Commission (IEC). Both international organizations are involved in many countries, ensuring their wide dissemination, implementation and recognition around the world.The 27000 series are aimed at establishing good practices in relation to the implementation, maintenance and management of the Information Security Management System (SGSI) or by its name in Information Security Management System (ISMS). These guidelines aim to establish best practices in relation to different aspects related to information security management, with a strong focus on continuous improvement and risk mitigation.ISO 27000: provides the basics and common language for the rest of the standards in the series.ISO 27001: Specifies the requirements needed to deploy and manage an SGSI. This standard is certifiable.ISO 27002: defines a set of best practices for the implementation of the SGSI, through 114 controls, structured in 14 domains and 35 control objectives.ISO 27003- Provides a guide to successfully implementing an SGSI, focusing on the important aspects to successfully perform this process.