0
  • An empty cart

    You have no item in your shopping cart

0
  • An empty cart

    You have no item in your shopping cart

FormaTour | The Way Towards Your Goal - E-Learning School | Face to Face Courses

Enter your keyword

Course

ISO/IEC 27034 Foundation Course (2 Days)

About Instructor

Become acquainted with the best practices for implementing and managing an Application Security based on ISO 27034

Summary

This course enables participants to learn about the best practices for implementing and managing an Application Security as specified in ISO/IEC 27034. The responsibility of a Certified ISO/IEC 27034 Application Security Foundation is to assist organizations to put in place required 27034 framework elements and Application Security guideline for the organization to integrate Application Security Controls (ASC) seamlessly throughout the life cycle of their applications.AS applies not only to the software of an application but also to its other components and contributing factors that impact its security, such as its technological context, its regulatory context, its business context, its specifications, the sensitivity of its data, and the processes and actors supporting its entire life cycle and it applies to all sizes and all types of organizations exposed to security risks on information associated with their applications.

Who should attend?

Provisioning and operation teams such as architects, analysts, programmers, testers, system administrators, DBA, network administrators, and technical personnel, who wish to:

  • Minimize the impact of introducing ASC into organizations’ existing processes, such as design, development, test, deployment, operation, archival and destruction
  • Understand which controls should be applied at each stage of an application’s life cycle and witch one should be implemented inside the application itself
  • Acquirers and Suppliers who wish to:
  • Prepare/comply to requests for proposals that include requirements for ASC and Level of Trust

Auditors who wish to:

  • Fully understand the AS processes involves in the ISO/IEC 27034

Learning objectives

  • To understand the implementation of AS in accordance with ISO/IEC 27034
  • To understand the relationship between the components of an AS including risk management, controls and compliance with the requirements of different stakeholders of the organization
  • To know the concepts, approaches, standards, methods and techniques allowing to effectively manage an Application Security
  • To acquire the necessary knowledge to contribute in implementing an Application Security as specified in ISO 27034

COURSE AGENDA

Day 1: Introduction to IT - Security techniques – Application Security overview and concepts as required by ISO 27034

  • Introduction to ISO/IEC 27034 AS and its global vision
  • Introduction to Security techniques – Application Security and the process approach
  • Fundamental principles in Information Security
  • General requirements: presentation of the clauses 6 to 8 of ISO 27034
  • Implementation phases of ISO 27034 framework
  • Continual improvement of Application Security
  • Conducting an ISO 27034 certification audit

Day 2: Implementing controls in IT - Security techniques – Application Security overview and concepts as required by ISO 27034 and Certification Exam

Application security control data structure requirements, descriptions, graphical representation

Documentation of an application security control environment

Application Security risks assessment

Examples of implementation of application security controls based on ISO 27034 best practices

Certified ISO/IEC 27034 Foundation exam

 

Prerequisites

None

Educational approach

This training is based on both theory and practice:

  • Sessions of lectures illustrated with examples based on real cases
  • Review exercises to assist the exam preparation
  • Practice test similar to the certification exam

To benefit from the practical exercises, the number of training participants is limited

Examination and Certification

The “Certified ISO/IEC 27034 Foundation” exam fully meets the requirements of the PECB Examination and Certification Program (ECP). The exam covers the following competence domains:

  • Domain 1: Fundamental concepts and principles in application security
  • Domain 2: IT – Security techniques – Application Security

The “Certified ISO/IEC 27034 Foundation” exam is available in different languages (the complete list of languages can be found in the examination application form)

Duration: 1 hour

For more information about the exam, refer to PECB section on ISO 27034 Foundation Exam

A certificate of “Certified ISO/IEC 27034 Foundation” will be issued to participants who successfully pass the exam and comply with all the other requirements related to this credential

For more information about ISO 27034 certifications and PECB certification process, refer to PECB section on ISO 27034 Foundation Certification

General Information

  • Exam and certification fees are included in the training price
  • A student manual containing over 200 pages of information and practical examples will be distributed to participants
  • A participation certificate of 14 CPD (Continuing Professional Development) credits will be issued to participants
  • In case of failure of the exam, participants are allowed to retake the exam for free under certain conditions.

 

 

Reviews Statistic

0
0 out of 0
0 Ratings
5 Start 0
4 Start 0
3 Start 0
2 Start 0
1 Start 0

Reviews

There are no reviews yet.

Be the first to review “ISO/IEC 27034 Foundation Course (2 Days)”

Start On February 9, 2017
Duration 2 Days
Level Beginner
Effective Start Date Any Time on Request +1 416 900 9227
Location Toronto
Price $1,350.00

Location map

Share our course