|
|
|||
|
|
|||
|
|
|
||
|
Information Systems Risk Management
Is your IS risk management plan tailored to the specific risk profile of your business? Information systems risk management strategy, including system security, continuity strategy, safety and compliance, has attracted substantial interests since no organization can bear the losses that endangered information systems will result. The perpetrators may be internal to a firm or external attackers. The risks faced include theft of information, destruction, interception, alteration, stalling or rerouting of data, as well as forged messages. Proactive risk management initiatives are the risk reduction formula for competition and compliance. Our speakers will share with participants their experience in IS risk management and taking professional examinations through case studies, class discussions and mini-project.
This course equips attendees with the necessary perspective, knowledge and skills to understand the essential elements and benefits of applying effective IS risk management and to: § Identify the risks associated, audit requirements and solutions with information system management § Match the risk & crisis management approach according to the corporate business strategy with appropriate preventive controls and corrective actions. Our speaker will share with participants his experience in risk assessment, consultation, control strategies and tools, measurement tools, policy setting, and audit planning.
I. Information System Risk Management
II. Planning and Organization of Information Systems
III. Risk Analysis and Project Management
VI. Security & Audit on Application Systems
V. Business Continuity Management and Practices
VI. Information Security Policy and Program Management
VII. Response management
The course is designed for professionals, managers and security practitioners, CISSP/CISM and CISA candidates who should like to gain knowledge and practical tools in information systems risk management and professional examinations.
Mr. Danny Ha Holder of CISA, CISM, CGEIT, CISSP, CSSLP, FCRP, CRT, CCC, CPM, ISO20000, ISO27000 LA, ISLA, APSNY, MBA, B.Sc.(Hon.), and Mentor and Lectures of universities. Danny Ha has extensive experience and proven record in information systems audit, security, risk and crisis management. He has been an information technology practitioner for more than 27 years covering area in application system development, systems integration, services management, information systems security and audit, project management, and business management for banking, FSI, government, retail and servicing, logistics, warehouse, trading, manufacturing, garment, property agencies, health-care, and hospital industries. Danny is now the Director/ Chief Consultant and Auditor of risk management services for many MNC, vendors, banks and HKSAR government departments. He has delivers a numerous courses at professional certification level, in graduate diploma courses, degree courses in social science, and executive management certificate courses at different universities, professional bodies and institutes in Hong Kong and China. He is now the Mentor of HKUST BSC in Risk Management and Business Intelligence. He has conducted the CRP courses over 100 lecturing hours for over 300 audience since 2006; conducted the CISA Exam Preparation Courses with over 1000 lecturing hours for over 500 audiences since 2002; and also, conducted the CISSP Exam Preparation Courses for over 2000 audiences with over 1,500 lecturing hours since 2001.
|
|||
|
© COPYRIGHT 2010 ALL RIGHTS RESERVED onenet.com.hk |
|||