Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Foundations of Information Security in Public Institutions
- Key security principles and their significance within government organizations.
- The role of confidentiality, integrity, and availability in daily operations.
- Typical threats impacting public sector information and digital services.
Governance, Policies, and Responsibilities
- Establishing security governance in an institutional context.
- Defining the roles of managers, end-users, IT teams, service owners, and external suppliers.
- Implementing policies, standards, procedures, and accountability frameworks.
Risk Management for Information and Services
- Identifying assets, threats, vulnerabilities, and their potential business impact.
- Conducting basic risk assessments and prioritizing risks effectively.
- Choosing appropriate treatments and controls.
Information Classification and Data Protection
- Categorizing institutional information based on sensitivity and intended use.
- Safeguarding documents, records, databases, and shared files.
- Best practices for storage, transfer, retention, and disposal.
Identity and Access Management
- Fundamentals of user accounts, authentication, and authorization.
- Applying the principle of least privilege, separation of duties, and regular access reviews.
- Handling access requests, modifications, and revocations.
Secure Use of Systems and Digital Services
- Securing email, web systems, remote access, and shared platforms.
- Identifying common user errors and strategies to prevent them.
- Practical measures to enhance safety in daily operations.
IT Service Management Basics and Security Integration
- The interplay between IT services and information security.
- Security considerations during service design, delivery, and support.
- Managing service requests, incidents, changes, and essential service documentation.
Incident Handling and Service Continuity
- Recognizing security incidents and service disruptions.
- Steps for reporting, escalation, containment, communication, and recovery.
- Maintaining availability during disruptions through backups and recovery planning.
Security Awareness, Compliance, and Improvement
- Detecting phishing, social engineering tactics, and unsafe behaviors.
- Operating in accordance with institutional policies, audit requirements, and regulatory expectations.
- Monitoring controls and identifying practical opportunities for improvement.
Practical Workshop and Action Planning
- Analyzing a public sector security and service management scenario.
- Identifying risks and recommending service and security enhancements.
- Developing a personalized action plan for participants' specific areas of responsibility.
Requirements
- A foundational grasp of IT concepts, office systems, and the management of institutional information.
- Familiarity with using information systems, email, shared files, and online services in routine professional tasks.
- No prior programming experience is necessary.
Target Audience
- Public sector employees engaged in utilizing, managing, or overseeing digital information and services.
- IT personnel, system administrators, and service management staff within government bodies.
- Managers, coordinators, auditors, and compliance officers accountable for digital security and service quality.
14 Hours
Testimonials (3)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
The report and rules setup.
Jack - CFNOC- DND
Course - Micro Focus ArcSight ESM Advanced
The way to receive the information from the trainer