AIR will host a seminar titled “IT Security / Information Security” from November 13–14, 2017 in Vienna focused from an audit perspective.
Seminar topic:
IT security is very often understood as technical measures that are intended to selectively address specific vulnerabilities. From the auditing point of view, these measures are part of a superordinate internal control system and must be designed accordingly. Starting from the legal framework, possible solutions are presented on the basis of concrete case studies from practice in order to reduce the existing security risks to an acceptable level and discussed in the group.
In this seminar, participants will learn about the requirements of IT security or information security from the perspective of auditing and possible solutions will be presented.
Target group:
The seminar is intended for employees of the auditing department, the IT department, but also for executives and managing directors who want to be informed about the requirements. However, it is also suitable for candidates of the CISA or CISM exam as a supplement to the exam preparation.
No prior technical knowledge is required.
From the IT Security / Information Security Content :
- Initial situation
- General conditions
- Task of the audit
- Requirements of the auditors
- Laws and regulations
- Risks and threats
- Information Security Management Systems (ISMS)
- General standards (e.g. the ISO/IEC 27000 series of standards)
- Audit standards (e.g. COBIT)
- Risk management
- Measures / Controls
- System administration
- Separation of functions
- User administration
- Network security
- Operating system security
- Client / Server
- Social engineering
- Email / Internet
- Protection against malicious software (virus protection)
- Logging / Traceability
- Backup / Restore
- Physical security
- Emergency planning
- Security of mobile devices (cell phone, PDA, etc.)
- Change management
- Security awareness
- System development (development, test, production)
- Mobile devices (smartphone, notebook, iPad, etc.)
- Social networks (Facebook, XING, etc.)
The seminar leader is Manfred Scholz. Questions about the seminar can be asked via the seminar organizer or via our contact form.
More information about the seminar and registration link:
http://www.internerevision.at/seminare/it-revision/seminar/it-security-informations-security-157/
Source: http://www.internerevision.at/