Get in Touch

Course Outline

Foundations of Information Security in Public Institutions

  • Key security principles and their significance within government organizations.
  • The role of confidentiality, integrity, and availability in daily operations.
  • Typical threats impacting public sector information and digital services.

Governance, Policies, and Responsibilities

  • Establishing security governance in an institutional context.
  • Defining the roles of managers, end-users, IT teams, service owners, and external suppliers.
  • Implementing policies, standards, procedures, and accountability frameworks.

Risk Management for Information and Services

  • Identifying assets, threats, vulnerabilities, and their potential business impact.
  • Conducting basic risk assessments and prioritizing risks effectively.
  • Choosing appropriate treatments and controls.

Information Classification and Data Protection

  • Categorizing institutional information based on sensitivity and intended use.
  • Safeguarding documents, records, databases, and shared files.
  • Best practices for storage, transfer, retention, and disposal.

Identity and Access Management

  • Fundamentals of user accounts, authentication, and authorization.
  • Applying the principle of least privilege, separation of duties, and regular access reviews.
  • Handling access requests, modifications, and revocations.

Secure Use of Systems and Digital Services

  • Securing email, web systems, remote access, and shared platforms.
  • Identifying common user errors and strategies to prevent them.
  • Practical measures to enhance safety in daily operations.

IT Service Management Basics and Security Integration

  • The interplay between IT services and information security.
  • Security considerations during service design, delivery, and support.
  • Managing service requests, incidents, changes, and essential service documentation.

Incident Handling and Service Continuity

  • Recognizing security incidents and service disruptions.
  • Steps for reporting, escalation, containment, communication, and recovery.
  • Maintaining availability during disruptions through backups and recovery planning.

Security Awareness, Compliance, and Improvement

  • Detecting phishing, social engineering tactics, and unsafe behaviors.
  • Operating in accordance with institutional policies, audit requirements, and regulatory expectations.
  • Monitoring controls and identifying practical opportunities for improvement.

Practical Workshop and Action Planning

  • Analyzing a public sector security and service management scenario.
  • Identifying risks and recommending service and security enhancements.
  • Developing a personalized action plan for participants' specific areas of responsibility.

Requirements

  • A foundational grasp of IT concepts, office systems, and the management of institutional information.
  • Familiarity with using information systems, email, shared files, and online services in routine professional tasks.
  • No prior programming experience is necessary.

Target Audience

  • Public sector employees engaged in utilizing, managing, or overseeing digital information and services.
  • IT personnel, system administrators, and service management staff within government bodies.
  • Managers, coordinators, auditors, and compliance officers accountable for digital security and service quality.
 14 Hours

Number of participants


Price per participant

Testimonials (3)

Upcoming Courses

Related Categories