Information Security Management Systems (ISO 27001 Foundation) 

Course Format: Online

Program Language: Arabic

Entry requirements

Capacity Building

15 hours (distributed over 5 days)

IT and Information Security Staff, Compliance Officers

Admission Requirements

Fundamentals of Information Technology or Information Security
Completion of the “Cybersecurity Awareness” program is preferred

Introduction to ISO 27001

  • What is ISO 27001?

    History of the standard, its importance, and its relationship to the ISO 27000 series

  • Benefits of Implementing ISO 27001 in Government Institutions

    Data protection, regulatory compliance, and building trust

  • The Relationship Between ISO 27001 and National Protection Regulations

    How the standard integrates with local laws

  • The Certification Process and Certifying Bodies

    Steps to obtain certification and accredited bodies

ISMS Concepts

  • Understanding the concept and key components
  • Plan-Do-Check-Act (PDCA) as a mechanism for continuous improvement
  • Developing and approving the information security policy
  • Defining the scope of ISMS implementation within the organization

Security Risk Management

  • Steps to identify, analyze, and evaluate risks
  • How to create an asset register and analyze threats
  • Methods for measuring risk levels (high, medium, low)
  • Risk treatment strategies (avoid, mitigate, transfer, accept)

Security Controls (Annex A)

  • 93 controls divided into 4 main groups
  • Policies, roles, training, and authorization management
  • Employee screening, awareness, and information confidentiality
  • Building security, access control, and equipment protection
  • Network security, encryption, and vulnerability management

Documentation, Compliance & Audit

  • Policies, procedures, and mandatory vs. optional records
  • How to conduct an internal audit to verify compliance
  • Management review meetings for performance assessment
  • Addressing deficiencies and continuously improving performance

Program Completion Certificate

After completing all course requirements, you can apply to receive an accredited Certificate of Completion from Ru’ya Academy for Leadership and Technology.