




The aim of this course is to present the comprehensive ISO/IEC 27001:2005 requirements for the assessment and treatment of risks to the confidentiality, integrity and availability of information assets.
Whilst ISO/IEC 27001 does not specify a method for the assessment of risks, the requirements for any method chosen are well defined.
This course examines these requirements in detail to enable ISO/IEC 27001 implementers to develop their own method, or to make informed decisions for the selection of a commercial-off-the-shelf (COTS) solution.


Upon completion of this course, delegates will have an in-depth understanding of the ISO/IEC 27001:2005 requirements for the assessment, treatment and ongoing management of risks.
This 1 day course is designed for personnel who have a responsibility for developing and/or maintaining an ISO/IEC 27001:2005 compliant Information Security Management System.
No prior knowledge or experience is assumed.
The objective of this course is to provide delegates with knowledge and understanding which will enable them to evaluate risk assessment methods; assess their suitability for use within their own organisation; and if necessary, develop a custom approach for their organisation.
The course will also benefit internal auditors who require an in-depth understanding of ISO/IEC 27001:2005 requirements for the assessment and treatment of risks.
Our ISO/IEC 27001 training is conducted by tutors with extensive practical experience of developing, implementing and auditing Information Security Management Systems.



· Understanding the requirements of ISO/IEC 27001
· ‘Information Assets’ and their valuation
· The Risk Assessment Process
· Determining an organisation’s ‘Risk Appetite’
· Treatment of Risks
· Optimisation of Residual Risks
· Implementing Controls to mitigate Risks
Please contact our team on 0844 826 6006 for dates and availability.
On site training is also available for this course.


- Accident Investigation
- Asbestos Awareness Training
- Basic Health & Safety (Introduction)
- Business Continuity (BS25999)
- Business Continuity Implementation and Audit
- Certificate - Business Continuity Institute (CBCI)
- Construction Design Management (CDM) regulations 2007
- Control of Substances Hazardous to Health
- Coshh Risk Assessment
- Designing Safe Systems of Work















