Correct risk assessment methodology is essential for passing an ISO 27001 audit

ELY, UK, June 10, 2013 /EINPresswire.com/ -- Risk assessment and risk management play an important role in any information security management system (ISMS) implementation project. They require relevant experience and knowledge of the environment being analysed. Selecting a suitable risk assessment methodology and ensuring that the risk assessment objectives are met is a challenge for any ISO 27001 implementer.

The newly launched ISO 27005 Certified ISMS Risk Management course by information security and compliance specialists IT Governance is entirely focused on teaching delegates how to perform effective ISO 27001 compliant information security risk assessments. Further information is available at www.itgovernance.co.uk/shop/p-1309.aspx.

Alan Calder, CEO of IT Governance, says, “If you have little or no experience of carrying out a risk assessment and selecting the right security controls, then this process can turn into a nightmare. Moreover, wrong risk assessment methodology can become a major reason for non-conformities in an ISO 27001 environment.

The team or individuals tasked with assessing the information security risks in their organisations bear a lot of responsibility. The ISO 27005 Risk Management course will provide them with the skills and confidence to develop a successful risk management methodology.”

The ISO 27005 Certified ISMS Risk Management course includes practical sessions that provide delegates with valuable experience they can then apply in their organisation. Exercises include performing real risk assessments using Vigilant Software’s information security risk assessment tool vsRisk™ .

The ISO 27005 Certified ISMS Risk Management course is accredited by the International Board for IT Governance Qualifications (IBITGQ) and is the first one in the UK. The next sitting takes place on 19-21 June 2013, in London. Places can be booked online at: www.itgovernance.co.uk/shop/p-1309.aspx.


- Ends -



NOTES TO EDITORS

IT Governance Ltd is the single-source provider of books, tools, training and consultancy for IT governance, risk management and compliance. It is a leading authority on data security and IT governance for business and the public sector. IT Governance is ‘non-geek’, approaching IT issues from a non-technology background and talking to management in its own language. Its customer base spans Europe, the Americas, the Middle East and Asia. More information is available at www.itgovernance.co.uk.

Desi Aleksandrova
IT Governance
+44 (0) 845 070 1750
email us here

Legal Disclaimer:

EIN Presswire provides this news content "as is" without warranty of any kind. We do not accept any responsibility or liability for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this article. If you have any complaints or copyright issues related to this article, kindly contact the author above.