К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Mastering ISO 27001 Controls: Implementation and Auditing · LearnSpace
Назад в каталог
courseraIT и технологии

Mastering ISO 27001 Controls: Implementation and Auditing

Курс от Packt
Средний≈ 10.9 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

In today’s digital age, effective information security management is crucial for safeguarding organizational data and ensuring compliance with international standards. This course provides an in-depth understanding of ISO 27001 controls, helping professionals design, implement, and audit a robust Information Security Management System (ISMS). Through a structured, step-by-step learning approach, you’ll explore practical methods for managing and auditing security measures. The course helps you apply ISO 27001 principles to real-world environments, enabling you to strengthen compliance, reduce risks, and enhance your organization’s security posture. What sets this course apart is its balance of theory and practical application—combining technical knowledge with actionable insights drawn from real-world security and audit scenarios. You’ll gain confidence in interpreting ISO standards and translating them into effective organizational policies. This course is ideal for security managers, compliance officers, IT auditors, and professionals responsible for governance, risk, and compliance. A foundational understanding of information security is helpful but not required. Copyright @ Bridget Kenyon 2019, 2024. The author has asserted the rights of the author under the Copyright, Designs and Patents Act, 1988, to be identified as the author of this work. Formerly published as Guide to the Implementation and Auditing of ISMS Controls based on ISO/IEC 27001 by BSI. First published in the United Kingdom in 2019 by IT Governance Publishing. Every possible effort has been made to ensure that the information contained in this course is accurate, and the publisher and the author cannot accept responsibility for any errors or omissions, however caused. Any opinions expressed in this book are those of the author, not the publisher. Websites identified are for reference only, not endorsement, and any website visits are at the reader’s own risk. No responsibility for loss or damage occasioned to any person acting, or refraining from action, as a result of the material in this publication can be accepted by the publisher or the author. Apart from any fair dealing for the purposes of research or private study, or criticism or review, as permitted under the Copyright, Designs and Patents Act 1988, this publication may only be reproduced, stored or transmitted, in any form, or by any means, with the prior permission in writing of the publisher or, in the case of reprographic reproduction, in accordance with the terms of licences issued by the Copyright Licensing Agency. Enquiries concerning reproduction outside those terms should be sent to the publisher at: IT Governance Publishing Ltd, Unit 3, Clive Court, Bartholomew’s Walk, Cambridgeshire Business Park, Ely, Cambridgeshire, CB7 4EA, United Kingdom. www.itgovernancepublishing.co.uk

Навыки, которые вы освоите

Security ControlsRecord KeepingCyber Security PoliciesRisk Management FrameworkISO/IEC 27001Risk ManagementIdentity and Access ManagementAuditingInformation TechnologyInformation Systems SecurityInformation AssuranceSecurity ManagementAudit Planning

Программа курса

8 модулей · 68 учебных материалов

01Scope of This Guide2 материалов

Lesson 1

Course Overview VideoВидеоScope of This Guide - The ReadingЧтение
02Field of Application:1 материалов

Lesson 1

Field of Application - The ReadingЧтение
03Meeting ISO/IEC 27001 Requirements3 материалов

Учитесь у экспертов

Packt - Course Instructors

Преподаватель курса

Mastering ISO 27001 Controls: Implementation and Auditing
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 10.9 ч

8 модулей

Язык: Английский

Часть программы вашего университета

Lesson 1

Meeting ISO/IEC 27001 Requirements - Overview VideoВидео
Meeting ISO/IEC 27001 Requirements – The ReadingЧтение
ISO/IEC 27001 Compliance and Control ImplementationЗадание
04Using Control Attributes3 материалов

Lesson 1

Using Control Attributes - Overview VideoВидеоUsing Control Attributes – The ReadingЧтениеControl Attributes in Risk ManagementЗадание
05Organizational Controls (ISO/IEC 27001, A.5)22 материалов

Lesson 1

Organizational Controls (ISO/IEC 27001, A.5) - Overview VideoВидеоIntroductionЧтениеInformation security roles and responsibilities (ISO/IEC 27001, A.5.2)ЧтениеSegregation of duties (ISO/IEC 27001, A.5.3)ЧтениеContact with authorities (ISO/IEC 27001, A.5.5)ЧтениеInformation security in project management (ISO/IEC 27001, A.5.8)ЧтениеInventory of information and other associated assets (ISO/IEC 27001, A.5.9)ЧтениеAcceptable use of information and other associated assets (ISO/IEC 27001, A.5.10)ЧтениеClassification of information (ISO/IEC 27001, A.5.12)ЧтениеInformation transfer (ISO/IEC 27001, A.5.14)ЧтениеPractice: Audit an ISO/IEC 27001 ScenarioDIALOGUEAccess control (ISO/IEC 27001, A.5.15)ЧтениеAuthentication information (ISO/IEC 27001, A.5.17)ЧтениеAccess rights (ISO/IEC 27001, A.5.18)ЧтениеAddressing information security within supplier agreements (ISO/IEC 27001, A.5.20)ЧтениеInformation security for use of cloud services (ISO/IEC 27001, A.5.23)ЧтениеAssessment and decision on information security events (ISO/IEC 27001, A.5.25)ЧтениеInformation security during disruption (ISO/IEC 27001, A.5.29)ЧтениеLegal, statutory, regulatory and contractual requirements (ISO/IEC 27001, A.5.31)ЧтениеProtection of records (ISO/IEC 27001, A.5.33)ЧтениеIndependent review of information security (ISO/IEC 27001, A.5.35)ЧтениеOrganizational Controls and Information SecurityЗадание
06People Controls (ISO/IEC 27001, A.6)7 материалов

Lesson 1

People Controls (ISO/IEC 27001, A.6) - Overview VideoВидеоIntroductionЧтениеInformation security awareness, education and training (ISO/IEC 27001, A.6.3)ЧтениеDisciplinary process (ISO/IEC 27001, A.6.4)ЧтениеRemote working (ISO/IEC 27001, A.6.7)ЧтениеPractice: Applying ISO 27001 People Controls in a ScenarioDIALOGUEPersonnel Security and ComplianceЗадание
07Physical Controls10 материалов

Lesson 1

Physical Controls - Overview VideoВидеоIntroductionЧтениеSecuring offices, rooms and facilities (ISO/IEC 27001, A.7.3)ЧтениеProtecting against physical and environmental threats (ISO/IEC 27001, A.7.5)ЧтениеEquipment siting and protection (ISO/IEC 27001, A.7.8)ЧтениеSecurity of assets off-premises (ISO/IEC 27001, A.7.9)ЧтениеPractice: Physical Security WalkthroughDIALOGUESupporting utilities (ISO/IEC 27001, A.7.11)ЧтениеCabling security (ISO/IEC 27001, A.7.12)ЧтениеPhysical Controls in Information SecurityЗадание
08Technological Controls20 материалов

Lesson 1

Technological Controls - Overview VideoВидеоIntroductionЧтениеInformation access restriction (ISO/IEC 27001, A.8.3)ЧтениеAccess to source code (ISO/IEC 27001, A.8.4)ЧтениеProtection against malware (ISO/IEC 27001, A.8.7)ЧтениеManagement of technical vulnerabilities (ISO/IEC 27001, A.8.8)ЧтениеPractice: Respond to a Security IncidentDIALOGUEInformation deletion (ISO/IEC 27001, A.8.10)ЧтениеData leakage prevention (ISO/IEC 27001, A.8.12)ЧтениеRedundancy of information processing facilities (ISO/IEC 27001, A.8.14)ЧтениеMonitoring activities (ISO/IEC 27001, A.8.16)ЧтениеClock synchronization (ISO/IEC 27001, A.8.17)ЧтениеInstallation of software on operational systems (ISO/IEC 27001, A.8.19)ЧтениеSecurity of network services (ISO/IEC 27001, A.8.21)ЧтениеUse of cryptography (ISO/IEC 27001, A.8.24)ЧтениеSecure development life cycle (ISO/IEC 27001, A.8.25)ЧтениеSecure coding (ISO/IEC 27001, A.8.28)ЧтениеOutsourced development (ISO/IEC 27001, A.8.30)ЧтениеChange management (ISO/IEC 27001, A.8.32)ЧтениеSecurity Controls and Information ProtectionЗадание