00
days
:
00
hours
:
00
mins
:
00
secs

ISO 27001 (part 2/5): Security controls, risk management and SoA

We will present the basics of risk management, defining security controls and utilizing the statement of applicability.

September 6, 2023
15:00
45
minutes
auf Deutsch
på norsk
på Svenska

Reserve your seat

Limited spots available!

Join 10,000+ professionals learning to simplify compliance.

What you'll learn in this webinar

This is the second webinar on our 5-part webinar series "Towards ISO 27001 certification". Parts 2-4 cover themes, which are vital for an organization preparing for an ISO 27001 certification audit. Part 5 is about staying compliant and continuously improving your information security management system (ISMS).

The webinar series utilizes Cyberday as training tool (cyberday.ai). It will be used to build your organization's own management system and gather all information needed for the certification audit to one single place.

Webinar is suitable for information security key people in organisations, who are interested in systematic information security management and demonstrating good security level for customers.

Webinar agenda

1. Information security management system, ISMS

  • Prerequisite for certification
  • Connects risk management, defining security controls and monitoring the operation
  • Maintenance and continuous improvement

2. Security controls and ISO 27002

  • Intro to standard and different control domains
  • Different current states for controls

3. Risk treatment and defining new information security controls

  • Decreasing a risk
  • Monitoring defined controls

4. Control implementation and management in Cyberday

  • Owners and review intervals
  • Assurance information
  • Proactive improvement through risk management
  • Reactive improvement through incident management

5. Statement of Applicability, SoA

  • Controls are implemented through tasks
  • Automatic updates
  • Treatment of non-applicable controls
  • Versioning and sharing for auditor

We welcome questions and comments throughout the webinar! These are also an important part of the webinar content.


P.s. Registering for the webinar doesn't commit you to anything. You may also participate either "live" or via the recording, which you will receive automatically via email after the webinar is over.

Register now
Get recording
Register now
Your host

Aleksi Pulkkanen

Co-founder & COO, Cyberday

Webinar FAQ

Is ISO 27001 same as ISO27001, IEC 27001 or ISO 27001 standard?

Yes you will find many kind of references to ISO 27001 information security standards. The official the full name of ISO 27001 is “ISO/IEC 27001 – Information technology — Security techniques — Information security management systems — Requirements.”

ISO 27001 is the leading international standard focused on information security, published by these two mentioned organizations, the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC). Both of these are leading international organizations that develop international standards.

ISO 27001 standard is the main part of a set of standards developed to handle information security: the ISO/IEC 27000 series. The series is deliberately broad in scope, covering more than just privacy, confidentiality and IT/technical/cybersecurity issues.

27001 ISO, framework ISO 27001, ISO 27k... all refer to the same thing.

Why is ISO 27001 important?

Not only does the standard provide companies with the necessary know-how for protecting their most valuable information, but a company can also get certified against ISO 27001 and, in this way, prove to its customers and partners that it safeguards their data. ISO 27001 certification is probably the best proof for customers that information security is taken seriously and systematically managed in the organization.

Individuals can also get ISO 27001-certified by attending a course and passing the exam and, in this way, prove their skills to potential employers.

Because it is an international standard, ISO 27001 is easily recognized all around the world, increasing business opportunities for organizations and professionals.

How do I register for the webinar?

Click yourself to the desired webinar from the list above and fill out the registration form at the bottom of the page.

If you wish, you can also subscribe to our free newsletter, in which we provide weekly the most important digital security news with short interpretations and a list of upcoming webinars.

We use the Livestorm webinar software and you need to accept its termos of use when registering.

Can I get a recording of the webinar?

Yes - you will automatically receive a link to the recording in your email if you have registered for the webinar. You can also forward the recording to your colleagues if you wish.

How do I take part on the webinar?

Once registered, you will receive a message in your email with a direct link to the webinar room. You'll need a personal passcode, which can also be found in the email.

Chrome, Firefox, or Safari are recommended for participation, but with all modern browsers the webinar usually works great.

What if I can't make it?

No worries - you will automatically receive a link to the recording in your email and you can participate by viewing it at a time that suits you. If the webinar raises questions, you can ask, for example, directly at team@cyberday.ai.

Can I comment / ask in the webinar?

Yes, of course. In a webinar, you can comment either publicly using the Chat view or privately using the Questions tab.

Is my participation visible to others?

Participants will not see other participants in the webinar. If you comment in the public Chat section, your first name and comment will also be visible to others.

NIS2 directive in Cyberday

The NIS2 directive is being implemented across EU countries, and Cyberday will help you in the journey of becoming fully compliant with a future-proof plan, that will help you comply against also the next requirements.
Our platform breaks down the regulation into universal and manageable tasks, helping you track your organization’s progress with real-time reporting and guidance.
Register now

NIS2-Richtline in Cyberday

Die NIS2-Richtlinie wird in den EU-Ländern umgesetzt, und Cyberday wird dir auf dem Weg zur vollständigen Compliance mit einem zukunftssicheren Plan helfen, der dich auch bei zukünftigen Anforderungen unterstützt.
Unsere Plattform zerlegt die Richtline in universelle und umsetzbare Aufgaben und hilft dir, den Fortschritt deines Unternehmens mit Echtzeitberichten und Anleitungen zu verfolgen.
Register now

NIS2 direktivet i Cyberday

NIS2-direktivet implementeras i alla EU-länder, och Cyberday kommer att hjälpa dig på resan mot att uppnå full efterlevnad med en framtidssäkrad plan, som hjälper dig att uppfylla även kommande krav.
Vår plattform delar upp lagkraven i generella och hanterbara uppgifter, vilket hjälper dig att spåra din organisations framsteg med realtidsrapportering och vägledning.
Register now

ISO 27001 standard in Cyberday

ISO 27001 standard is the most popular information security standard worldwide. Cyberday will help you in the journey of becoming fully compliant with a future-proof plan, that will help you comply against also the next requirements.
Our platform breaks down the standard into universal and manageable tasks, helping you track your organization’s progress with real-time reporting and guidance.
Register now

ISO 27001 standarden i Cyberday

ISO 27001-standarden är den mest populära informationssäkerhetsstandarden i världen. Cyberday hjälper dig på vägen mot att bli helt kompatibel med en framtidssäker plan, som hjälper dig att uppfylla även nästa krav.
Vår plattform bryter ner standarden i generella och hanterbara uppgifter, vilket hjälper dig att spåra din organisations framsteg med realtidsrapportering och vägledning.
Register now

ISO 27001 Standard in Cyberday

Der ISO 27001-Standard ist der weltweit beliebteste Standard für Informationssicherheit. Cyberday wird dir auf dem Weg zur vollständigen Compliance mit einem zukunftssicheren Plan helfen, der dich auch bei zukünftigen Anforderungen unterstützt.
Unsere Plattform zerlegt den Standard in universelle und umsetzbare Aufgaben und hilft dir, den Fortschritt deines Unternehmens mit Echtzeitberichten und Anleitungen zu verfolgen.
Register now

Reserve your seat

Limited spots available!

Join 10,000+ professionals learning to simplify compliance.

Join our monthly admin recap

By registering in advance, you'll ensure a spot in the live session. After the live session you can fill this form to receive the video recording.