Introduction to ISO/IEC 27001

Course Description

Information security is critically important to both you and your customers. BSI has developed a comprehensive one-day non-residential course that explores in depth all of the business implications of the International Standard for Information Security Management (ISO/IEC 27001).


Delegates learn about:

  • Information security
  • The purpose of the standard
  • Control objectives and controls
  • The importance of the most significant controls
  • The implications of implementing ISO/IEC 27001 into an organisation
  • The implications of certification and commercial pressures
  • Penalties for non-compliance.

Who should attend?

  • Senior Managers
  • IT Managers
  • Systems Managers
  • IT Security Officers
  • Auditors who will be involved in introducing ISO/IEC 27001 into an organisation.

Benefits to Your Business:

  • Effective information security management throughout the organisation
  • Foolproof protection of your interests and those of your customers. Course Structure:
  • Introduction to Information Security: The basics, myths and reality
  • Business Needs: Commercial and legal implications
  • Introduction to ISMS standards: History, development, current situation
  • Certification: The process, maintenance.
  • Accreditation: Current developments, options.
  • Designing and implementing a management system: o Policy 
    - Scope 
    - Risk Assessment 
    - Risk Management 
    - Statement of Applicability
    - Critical Success Factors.
  • Open Forum

Further Information

Fee: one-day course including refreshments and course notes - HK$1,500 / HK$1,300*.

*Price for BSI registered client or early bird enrolment - 15 days prior to the commencement of the course.


Next steps

View available course dates and book now.

For more information, please contact us or complete our general enquiry form.

Print this page

More information

Course Schedule

Find out more

Contact us

Submit online enquiry