ISO 27017: Information Security Controls for Cloud Services Training Course
ISO/IEC 27017 is an international standard that provides guidelines for information security controls specific to cloud services. It builds upon ISO/IEC 27002 and enhances security measures tailored for cloud computing environments.
This instructor-led, live training (online or onsite) is aimed at intermediate-level IT and security professionals who wish to implement ISO 27017 controls to enhance cloud security and compliance.
By the end of this training, participants will be able to:
- Understand the principles and objectives of ISO 27017.
- Identify key security controls specific to cloud environments.
- Implement ISO 27017 controls within cloud service providers and cloud customers.
- Align cloud security strategies with ISO 27001 requirements.
- Ensure compliance with international cloud security best practices.
Format of the Course
- Interactive lecture and discussion.
- Lots of exercises and practice.
- Hands-on implementation in a live-lab environment.
Course Customization Options
- To request a customized training for this course, please contact us to arrange.
Course Outline
Introduction to ISO 27017
- Overview of ISO/IEC 27017
- Relation to ISO 27001 and ISO 27002
- Importance of cloud security governance
Cloud Security Risks and Threats
- Common security risks in cloud environments
- Cloud-based attack vectors
- Risk assessment methodologies for cloud services
Key Information Security Controls in ISO 27017
- Additional cloud-specific controls
- Shared security responsibilities between CSPs and customers
- Data protection and encryption in the cloud
Implementing Cloud Security Policies
- Defining security policies for cloud adoption
- Access control and identity management
- Security incident management in the cloud
Compliance and Regulatory Considerations
- Legal and regulatory implications of cloud security
- Mapping ISO 27017 to GDPR, HIPAA, and other regulations
- Cloud compliance audits and certification processes
Best Practices for Cloud Security
- Security monitoring and threat detection
- Implementing continuous improvement in cloud security
- Ensuring resilience and disaster recovery
Hands-On Implementation and Case Studies
- Applying ISO 27017 controls in real-world scenarios
- Reviewing cloud security case studies
- Interactive exercises on cloud security strategy
Summary and Next Steps
Requirements
- Basic understanding of cloud computing
- Knowledge of general information security principles
- Familiarity with ISO 27001 or other cybersecurity frameworks
Audience
- Cloud security professionals
- IT security managers
- Compliance officers
- Cloud service providers
Need help picking the right course?
ISO 27017: Information Security Controls for Cloud Services Training Course - Enquiry
ISO 27017: Information Security Controls for Cloud Services - Consultancy Enquiry
Consultancy Enquiry
Related Courses
Introduction to ISO27001
7 HoursThis instructor-led, live training in Macao (online or onsite) is aimed at beginner-level professionals who wish to gain an understanding of ISO 27001 and its role in enhancing information security within an organization.
By the end of this training, participants will be able to:
- Understand the purpose and benefits of an ISMS.
- Familiarize themselves with key ISO 27001 concepts, terms, and principles.
- Recognize the role of an auditor in ensuring compliance.
- Gain insight into the audit process and continual improvement within ISO 27001.
ISO 14001:2015 Internal Auditor of the Environmental Management System
35 HoursObjectives
- Gain knowledge of ISO 14001:2015
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 14001:2015 Requirements
14 HoursObjectives
- Learning about ISO 14001, 2015 edition
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 19011:2018 Requirements
14 HoursObjectives
- Gaining knowledge about ISO 19011, 2018 edition
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 26262 Automotive Functional Safety
28 HoursISO 26262 defines the requirements for functional safety in the automotive sector.
This instructor-led, live training (online or onsite) is aimed at automotive professionals who wish to implement the ISO 26262 standard within their organization.
By the end of this training, participants will be able to:
- Understand functional safety as it relates to automotive hardware and software development.
- Understand the legal responsibilities and compliance requirements of ISO 26262.
- Implement the safety processes prescribed in ISO 26262.
Format of the Course
- Interactive lecture and discussion.
- Lots of exercises and practice.
- Hands-on implementation in a live-lab environment.
Course Customization Options
- To request a customized training for this course, please contact us to arrange.
ISO 26262 Part 6: Safe Software Development
7 HoursThis instructor-led, live training in Macao (online or onsite) is aimed at automotive professionals who wish to implement the ISO 26262 standard within their organization.
By the end of this training, participants will be able to:
- Establish complete and consistent software safety requirements.
- Analyze software architectures for safety, including freedom from independence (FFI) analysis.
- Build processes that use documentation tools to improve software quality.
- Plan and execute an integration test strategy for software and systems.
- Implement and test software units for safety applications.
ISO 27001:2023 Internal Auditor of the Information Security Management System
35 HoursObjectives
- Gaining knowledge of ISO 27001:2023
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 27001:2023 Lead Auditor of the Information Security Management System
35 HoursObjectives
- Gaining knowledge of ISO 27001:2023
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 27001:2023 Requirements
14 HoursObjectives
- Gaining knowledge about changes to ISO 27001 2023 edition
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 45001:2018 Internal Auditor of the Occupational Health and Safety Management System
35 HoursObjectives
- Gaining knowledge of ISO 45001:2018
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 45001:2018 Requirements
14 HoursObjectives
- Gaining knowledge about ISO 45001, 2018 edition
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 9001:2015 Internal Auditor of the Quality Management System
14 HoursObjectives
- Gaining knowledge of ISO 9001:2015
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 9001:2015 Requirements
7 HoursObjectives
- Learning about ISO 9001 2015 edition
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
PECB ISO 27001:2022 Transition
14 HoursThis instructor-led, live training in Macao (online or onsite) is aimed at intermediate to expert-level IT professionals who wish to enhance their skills and qualifications in information security or related fields.
By the end of this training, participants will be able to:
- Understand the differences between ISO/IEC 27001:2013 and ISO/IEC 27001:2022.
- Gain the knowledge and skills to plan and implement the transition from the 2013 to the 2022 version of the standard efficiently.
- Apply the knowledge in real-world scenarios, facilitating a smooth transition in their respective organizations.
QMS Auditor / Lead Auditor (ISO 9001)
21 HoursIn this instructor-led, live training in Macao, participants will learn about the QMS Audit principles, procedures and documentations as they step through a series of case studies, group discussions, and hands-on exercises and activities.
By the end of this training, participants will be able to:
- Identify the Requirements for a successful QMS Audit.
- Create an Audit Checklist for a sample audit scenario.
- Report findings in accordance to ISO 9001 requirements.
- Write and grade non-conformity reports and evaluate proposals for corrective action.
- Prepare and present a convincing evaluation to top management in accordance to the organization's policy and objectives.