Course Overview

The International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC) together released ISO /IEC 27001:2022, a standard for information security (IEC). Along with ISO 27001, ISO 27002 is closely related as it offers advice for putting an ISO 27001 ISMS into practice generally.

A revised version of ISO 27001 was released in October 2022 after the release of the updated set of controls of ISO 27002 in February of the same year.

In this course you will learn why one of the most widely used models for creating successful cybersecurity programs is the ISO 27001 standard. Find out what it takes to adhere to the standard and get the certification of compliance. Learn about the structure of the standard, the certification procedure, and a simple, step-by-step guide for creating an ISO 27001-compliant cybersecurity program as described in clauses four through ten.

You will also learn about the updates to ISO 27001 and ISO 27002 and how they affect businesses who have achieved or want to achieve ISO 27001 certification. Within the framework of an ISO/IEC 27001 ISMS, controls for information security, cyber security, and privacy protection.

What You Will Learn

  • Recognize the importance of comprehending the best practice controls found in ISO/IEC 27001:2022 and ISO/IEC 27002:2022
  • Identify the key advantages of implementing ISO/IEC 27001:2022 as a standalone activity or as a component of an effective ISMS to protect information assets.
  • Comprehend the rationale for the procedures and application of the controls
  • Recognize how these generally accepted controls can help your organization lower risk
  • Learn which controls to use in certain circumstances
  • as well as their advantages and potential drawbacks

Program Curriculum

  • Introduction to ISO/IEC 27001
  • The ISO 27000 Family of Standards
  • Why Organizations Need an ISMS?
  • Setting up an ISMS
  • $7 Million Cybersecurity Scholarship by EC-Council
  • Chapter 1 Quiz

  • Structure and Context of ISO 27001:2022
  • Main Changes
  • Chapter 2 Quiz

  • ISO 27005 Structure
  • How Can ISO 27005 Support Your Certification?
  • Chapter 3 Quiz

  • ISO 27001:2022 Annex Controls
  • ISO 27001:2022 Organizational Controls
  • ISO 27001:2022 People Controls
  • ISO 27001:2022 Physical Controls
  • ISO 27001:2022 Technological Controls
  • Statement of Applicability (SoA)
  • Chapter 4 Quiz

  • ISO 27002 Structure
  • Annex A Controls Overview
  • Chapter 5 Quiz

  • Threat Intelligence Control
  • Information Security for Use of Cloud Services Control
  • ICT Readiness for Business Continuity Control
  • Physical Security Monitoring Control
  • Configuration Management Control and Information Deletion Control
  • Data Masking Control
  • Data Leakage Prevention Control
  • Monitoring Activities Control
  • Chapter 6 Quiz

  • Mapping ISO 27002:2013 Controls to ISO 27001:2022
  • Mapping ISO 27002:2022 Controls with NIST Controls
  • Chapter 7 Quiz

  • Transition from ISO 27001:2013 to ISO 27001:2022 Controls
  • ISMS Policy Example
  • Transition Timelines and Q&A
  • Chapter 8 Quiz
Load more modules

Instructor

Mohamad Mahjoub

Mohamad Mahjoub is a highly accomplished author, trainer, speaker, and esteemed expert in the field of cyber security. Holding a prestigious array of licenses and certifications, including CISSP, ISO 27005 Risk Manager, ISO 27001 Lead Implementer, CISA, PMP, ITIL, and Data Protection Officer (GDPR), he brings a wealth of knowledge and experience to the realm of information security. Mohamad earned his Master's Degree in Computer Science with magna cum laude distinction from the Lebanese American University, a testament to his dedication to academic excellence. He is notably recognized as the author of the influential book "Ethical Hacking with Kali and More" and has been a featured speaker at prominent cyber security events. With an unwavering commitment to professionalism, Mohamad leverages his extensive training and certifications to provide expert cyber security services to both individuals and organizations. Since 2012, he has conducted numerous cyber security courses and seminars, catering to a diverse audience, including recent graduates, IT professionals, senior executives, and business owners. Additionally, he has reached a global audience through his multilingual online cyber security courses, boasting an enrolment of over 100,000 students worldwide. Currently serving as the Chief Information Security Officer (CISO) for a multinational corporation, Mohamad oversees the security of IT and OT operations across the Middle East region. With a remarkable 17-year career in the field of cyber security, he has earned a reputation as a trusted authority, consistently achieving success in the domain. In an era dominated by pervasive technology, Mohamad's steadfast belief underscores the critical importance of cyber security in safeguarding our digital world.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $59.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 599.00
Billed annually or $69.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8