The first subunit will focus on the fundamental concepts that justify the need for ISMS (Information Security Management System) and its description. It will be explained as the main tool to manage risks with/without compliance with an external rule (i.e. international norms). By the end of this subunit, learners will gain a comprehensive understanding of the motivation for ISMS and its main components.
This subunit is relevant to manage the growing complexity of data management of each ICT-enabled industry/business and an obligatory step to compliance policies to be adopted.
The materials needed are:
Articles reporting ISMS guidelines
Case studies with examples of ISMS adoption in SMEs.