Course Overview

This course addresses the privacy information management system based on ISO/IEC 27701:2013 in detail and includes references from ISO 27001 and 27002. It explains how ISO 27701 can assist in the process of protecting personal information to comply with privacy laws and regulations without being tied to a specific law or regulation, and why it is a reference for any privacy information management system regardless of the size of the organization, applicable laws and regulations or segment in which it operates. 

ISO 27701 is an extension of ISO 27001 – information security management and also of ISO 27002 which focuses on security controls. It is an international standard guiding how to protect privacy, including how organizations should manage personal information, and also provides guidance on how you can demonstrate compliance with privacy regulations around the world. 

ISO 27701 applies to all types and sizes of organizations, including public and private, governmental, and non-profit entities. It guides those who are responsible for processing personal information through the use of the information security management system 

ISO 27701 is another successful project of ISO/IEC and provides numerous benefits to your organization.

What You Will Learn

  • Learn to provide transparency to interested parties
  • Understand how to facilitate business agreements
  • Explore how to clarify roles and responsibilities
  • Learn about support compliance with privacy laws and regulations
  • Understand how complexity can be reduced

Program Curriculum

  • What is the ISO 27701?
  • ISO 27701 Approach
  • Definitions
  • $7 Million Cybersecurity Scholarship by EC-Council
  • Chapter 01 Quiz

  • Introduction
  • Video 2.2
  • Determining the Scope of the Information Security Management System
  • Leadership
  • Planning
  • Support
  • Operations
  • Performance Evaluation
  • Improvements
  • Chapter 02 Quiz

  • Introduction
  • Information Security Policy
  • Internal Organization
  • Mobile Devices
  • Teleworking
  • Prior to Employment
  • During Employment
  • Termination and Change of Employment
  • Asset Management
  • Information Classification
  • Media Handling
  • Access Control
  • User Access Management
  • Privileged Access Rights Management
  • User Responsibilities 
  • System and Application Access Control
  • Cryptography
  • Physical and Environmental Security
  • Equipment
  • Equipment Maintenance
  • Operations Security
  • Protection from Malware
  • Backup
  • Logging and Monitoring
  • Control of Operational Software
  • Technical Vulnerability Management
  • Audit
  • Communication Security
  • Information Transfer
  • System Acquisition, Development, and Maintenance
  • Security in Development and Support Processes
  • Secure Systems Engineering Principles
  • Test Data
  • Supplier Relationships
  • Supplier Service Delivery Management
  • Information Security Incident Management
  • Information Security Aspects of Business Continuity
  • Redundancies
  • Compliance
  • Information Security Reviews
  • Chapter 03 Quiz

  • Introduction
  • Determine When and How Consent is to be Obtained
  • Contracts with PII Processor
  • Obligations to PII Principles
  • Providing Information to Principles
  • Access, Correction, and/or Erasure
  • Handling Requests
  • Privacy by Design and Default
  • PII De-Identification and Deletion at the End of Processing
  • PII Sharing, Transfer, and Disclosure
  • Chapter 04 Quiz

  • Introduction
  • Infringing Instructions
  • Obligations to PII Principles
  • PII Sharing, Transfer, and Disclosure
  • Legally Binding PII Disclosures
  • Chapter 05 Quiz

Conclusion

Load more modules

Instructor

Luciano Ferrari

Chief Executive Officer of the IT security and data defense firm Cyology Labs™ in Montréal, Canada

Luciano Ferrari is an information security leader and IoT hacking expert. He holds multiple security certifications, including CISSP, CISM, CRISC, and PCIP, and has worked at Fortune 500 companies in both technical and leadership roles. He drives progress at his own company, LufSec, where he works on security-related issues and projects. Luciano has conducted hundreds of IT security audits and penetration tests, including audits and tests on IoT devices for cable companies. He has also leveraged his IT security expertise in manufacturing, semiconductor, financial, and educational institutions. With his background in electronics and microelectronics, his distinct specialization is definitely on hardware hacking. Luciano is passionate about sharing his knowledge with others and teaching. His other areas of expertise include IT infrastructure, networking, penetration testing, risk, vulnerability, and threat management. In private, he enjoys researching new technologies and participating at security conferences and in bug bounty programs.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $59.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 599.00
Billed annually or $69.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8