Lucebra
Lucebra สำหรับธุรกิจ
ไอทีและซอฟต์แวร์/เครือข่ายและความปลอดภัย/การบริหารความเสี่ยง

ISO 27005:2022: Information Security Risk Management (หลักสูตร)

Risk Identification, Analysis, Evaluation, Treatment & Acceptance | Context, Criteria & Monitoring

ทุกระดับ48 บรรยายเข้าถึงได้ตลอดชีวิต
Dr. Amar Massoud

อาจารย์ผู้สอนที่ได้รับการรับรอง

ISO 27005:2022: Information Security Risk Management
รถพ่วง
พบกับผู้สอนของคุณ: Dr. Amar Massoud

18 ms

5.0 / 5.0
นักเรียนที่กระตือรือร้น
อังกฤษ - สหรัฐอเมริกา
คำบรรยาย 99 ภาษา
4 ชม. 25 นาที
เนื้อหาทั้งหมด

สิ่งที่คุณจะได้เรียนรู้

Understand and apply ISO 27005:2022 methodologies for information security risk assessments.
Identify, analyze, and evaluate risks to information security within an organizational context.
Develop and implement effective risk treatment plans aligned with ISO 27005:2022 guidelines.
Continuously monitor and review risk management processes for ongoing improvement and compliance.

เนื้อหาหลักสูตร

8 ส่วน48 การบรรยาย04:25:24 ความยาวรวม

Quantitative Approach

05:04

Quantitative Likelihood Scale

04:47

Explore how a logarithmic likelihood scale converts event frequency into scale values to quantify information security risk and prioritize actions, with examples from data breaches, unauthorized access, and regulatory risks.

Quantitative Consequence Scale

06:16

Quantitative Level of Risks

06:10

Risk Acceptance Criteria

06:21

Clarify how risk acceptance criteria establish tolerance thresholds using a color coded risk matrix to classify risks as red, amber, or green, with governance for authorization and ongoing reassessment.

Quantitative Risk Acceptance Matrix

04:41

Qualitative Risk Assessment Approach

02:52

Consequence Criteria

06:38

Qualitative Consequence Scale

05:42

Likelihood Criteria

03:02

Qualitative Likelihood Scale

05:18

Criteria for Determining the Level of Risk

02:42

Qualitative Level of Risks

05:30

Choosing an Appropriate Method

03:02

Information Security Risk Assessment Process

03:42

Risk Assessment Methodologies

08:09

Identifying Information Security Risks

04:46

Asset Based Risk Identification

04:58

Identify Vulnerabilities and Threats

08:54

HealthSecure Assets Risk Identification

02:11

Identifying Risk Owners

03:22

Analysing Information Security Risks

02:45

Assessing Potential Consequences

05:28

Assess consequences of information security risks under ISO 27005:2022 by analyzing risk scenarios, evaluating confidentiality, integrity, and availability impacts, reviewing controls, and guiding risk mitigation.

Assessing Likelihood

06:34

Determining the Level of Risks

05:26

Determine risk levels in ISO 27005:2022 through a process that combines likelihood and consequences to rank risks for treatment decisions, including EHR software and cloud servers.

Prioritizing the Analyzed Risks for Risk Treatment

03:27

Event Based Risk Identification

09:32

Information Security Risk Treatment

11:16

Producing the Statement of Applicability

05:43

Information Security Risk Treatment Plan

08:44

Residual Risks

05:18
แผนการเรียนรายสัปดาห์
วางแผนการเรียนรู้ของคุณ
AI สร้างตารางเวลาส่วนตัวตามเวลาว่างของคุณ

ความต้องการ

This course is designed to be accessible to beginners. No advanced technical knowledge is required.

Basic familiarity with information security concepts will be helpful but not essential.

The course will cover foundational elements, making it suitable for those new to risk assessment in the context of ISO standards.

กลุ่มเป้าหมาย

Information Security Professionals: Ideal for security analysts, managers, and consultants seeking to deepen their understanding of risk assessment aligned with ISO standards.

IT Professionals: IT staff responsible for managing and safeguarding digital assets, especially those involved in developing or maintaining an Information Security Management System.

Compliance Officers and Auditors: Professionals ensuring regulatory compliance or conducting internal audits, particularly in sectors with strict data protection requirements.

Business Managers and Executives: Decision-makers who need to understand organizational risk landscapes and make informed information security investment decisions.

เกี่ยวกับหลักสูตรนี้

Course Overview: Dive into the world of risk assessment in line with ISO/IEC 27005:2022 standards in our comprehensive course. This training is uniquely designed to provide a blend of theoretical knowledge and practical application, using a fictional model company, "HealthSecure Inc.," as a continuous case study throughout the course. What You'll Learn:
  • Fundamentals of ISO 27005:2022: Understand the core concepts, principles, and frameworks of ISO 27005:2022.
  • Risk Assessment Techniques: Learn to identify, analyze, and evaluate information security risks using proven methodologies.
  • Practical Application: Apply your learning to real-life scenarios through the HealthSecure Inc. case study, encompassing various aspects of risk assessment and treatment.
  • Use of Tools and Templates: Gain hands-on experience with risk assessment tools and templates that can be adapted to your professional context.
Course Features:
  • Interactive Learning: Engaging content including lectures, interactive sessions, and group discussions.
  • HealthSecure Inc. Case Study: A comprehensive use case running throughout the course, providing practical insights into the application of risk assessment in a business environment.
  • Hands-On Assignments: Practical assignments and projects that simulate real-world risk assessment challenges.
  • Resource Toolkit: Access to a range of templates and tools for conducting risk assessments, allowing for immediate application in your workplace.
  • Expert Instructors: Learn from experienced professionals with extensive knowledge in information security and risk management.
Who Should Enroll: This course is ideal for IT and cybersecurity professionals, compliance officers, risk managers, business leaders, and anyone interested in mastering the art and science of ISO 27005:2022 risk assessment. Course Goals: By the end of this course, participants will be able to confidently conduct risk assessments and develop comprehensive risk treatment plans in alignment with ISO 27005:2022 standards, leveraging the practical experience gained from the HealthSecure Inc. case study. Join us to enhance your skills in information security risk assessment and contribute to the robust security posture of your organization.
โอกาสทางสายอาชีพและตำแหน่งงานเป้าหมาย

พัฒนาทักษะที่พร้อมใช้งานจริงเพื่อก้าวสู่ตำแหน่งงานระดับสากลที่มีความต้องการสูง

หลักสูตรพร้อมทำงานจริง
ตำแหน่งงานที่คุณสามารถสมัครได้

Full Stack Software Engineer

Backend Systems Developer

Frontend Application Specialist

Automation & Scripting Engineer

ประมาณการเงินเดือนต่อปี
$90,000 – $145,000 / yr
ความต้องการในตลาดโลก

High Global Tech Demand

ทักษะสำคัญที่คุณจะเชี่ยวชาญ
Production Code Architecture
RESTful & Modern API Design
State Management & UI Scaling
Debugging & Automated Testing
* การประมาณการอ้างอิงจากเกณฑ์การจ้างงานและรายงานเงินเดือนในอุตสาหกรรมเทคโนโลยีระดับสากล
พบกับผู้สอนของคุณ
Dr. Amar Massoud
5.0 เรตติ้ง
5 นักเรียน
ดูโปรไฟล์แบบเต็ม
Dr. Amar Massoud
อาจารย์ผู้สอนหลัก
PhD in computer science and IT manager with 36 years technical experience in various fields including IT Security, IT Governance, IT Service Management , Software Development, Project Management, Business Analysis and Software Architecture. I hold 80+ IT certifications such as : ITIL 4 Master, ITIL 3 Expert ISO 27001 Auditor, ComptIA Security+, GSEC, CEH, ECSA, CISM, CISSP, CISA PGMP, MSP PMP, PMI-ACP, Prince2 Practitioner, Praxis, Scrum Master COBIT 2019 Implementor, COBIT 5 Assessor/Implementer TOGAF certified Lean Specialist, VSM Specialist PMI RMP, ISO 31000 Risk Manager, ISO 22301 Lead Auditor PMI-PBA, CBAP Lean Six Sigma Black Belt, ISO 9001 Implementer Azure Administrator, Azure DevOps Expert, AWS Practitioner And many more....

นักเรียนก็ซื้อด้วย

ผู้เรียนที่ดูหลักสูตรนี้ได้ลงทะเบียนเรียนในหลักสูตรที่ได้รับคะแนนสูงสุดเหล่านี้ด้วย

Program ESP32 without Coding
สินค้าขายดี
ฟรี
ไอทีและซอฟต์แวร์ | ฮาร์ดแวร์

Program ESP32 Board without writing a single code in A Professional Environment

5.0
2 ชม. 30 นาที
18 การบรรยาย
ทุกระดับ
Using Al to Code: Your Step-by-Step Guide
ไอทีและซอฟต์แวร์ | ฮาร์ดแวร์

Revolutionize Your Coding Skills with Al: A Comprehensive Guide for Beginners

5.0
2 ชม.
11 การบรรยาย
ทุกระดับ
$10.99

$19.99

ISO 27001 Certification Process – A Step-by-Step Guide
ไอทีและซอฟต์แวร์ | ความปลอดภัยของข้อมูล

Master ISO 27001: Achieve Certification, Build Security, and Ensure Compliance for Your Organization

5.0
1 ชม. 30 นาที
10 การบรรยาย
ระดับเริ่มต้น
$39.99

$54.99

Implement GRC (Governance, Risk, Compliance) Step by Step
ไอทีและซอฟต์แวร์ | ได้รับการรับรองด้านการกำกับดูแล ความเสี่ยง และการปฏิบัติตามกฎระเบียบ (CGRC)

Master GRC: Step-by-Step Guide to Implementing Governance, Risk, and Compliance for Business Success

5.0
2 ชม. 30 นาที
35 การบรรยาย
ระดับกลาง
$39.99

$64.99

Mastering Arduino Data Streaming to Excel
ไอทีและซอฟต์แวร์ | อาร์ดูโน่

Seamlessly Stream and Visualize Real-Time Data from Arduino into Excel with Ease

5.0
1 ชม. 30 นาที
6 การบรรยาย
ทุกระดับ
$9.99

$34.99

Blogger: Make A Professional Website For Free With No Coding
ไอทีและซอฟต์แวร์ | ไอทีและซอฟต์แวร์อื่นๆ

Learn how to create and customize a website with no prior coding experience.

5.0
1 ชม. 30 นาที
12 การบรรยาย
ทุกระดับ
$9.99

$19.99

คำถามที่พบบ่อย

ค้นหาคำตอบของคำถามที่พบบ่อยเกี่ยวกับหลักสูตรนี้

ใช่! เมื่อเสร็จสิ้นการบรรยายและการมอบหมายหลักสูตร 100% คุณสามารถดาวน์โหลดใบรับรองการสำเร็จหลักสูตรดิจิทัลที่ผ่านการตรวจสอบแล้วได้ทันทีจากโปรไฟล์ Lucebra ของคุณ

สำรวจเพิ่มเติมใน Technology

ต่อยอดการเรียนรู้ของคุณด้วยใบรับรองที่ผ่านการรับรอง อีบุ๊กที่เกี่ยวข้อง และชั้นเรียนสดแบบอินเทอร์แอคทีฟ