IT Security Officer (TÜV)

Course Sec-TUEV-01

  • Duration:
    • 4 days

Dates:

  • Implementation planned - places still available
  • Implementation - probability high - still places available
  • There are no more seats available. For many courses, it may still be possible to participate online, via virtual classroom.
  • Course times: As a rule, our seminars are held from 10:00 am to 5:00 pm on day 1 and from 9:00 am to 4:00 pm on the following days. Changes are possible. The concrete seminar times you will find in the binding order confirmation.
27.01.2025 - 30.01.2025 Virtual Classroom
  • 2990 EUR / Person
German
10.03.2025 - 13.03.2025 Virtual Classroom
  • 2990 EUR / Person
German
14.04.2025 - 17.04.2025 Virtual Classroom
  • 2990 EUR / Person
German
05.05.2025 - 08.05.2025 Virtual Classroom
  • 2990 EUR / Person
German
30.06.2025 - 03.07.2025 Virtual Classroom
  • 2990 EUR / Person
German
04.08.2025 - 07.08.2025 Virtual Classroom
  • 2990 EUR / Person
German
22.09.2025 - 25.09.2025 Virtual Classroom
  • 2990 EUR / Person
German
20.10.2025 - 23.10.2025 Virtual Classroom
  • 2990 EUR / Person
German
10.11.2025 - 13.11.2025 Virtual Classroom
  • 2990 EUR / Person
German
01.12.2025 - 04.12.2025 Virtual Classroom
  • 2990 EUR / Person
German
The security of sensitive data, information and processes is becoming increasingly important. An optimised and reliable information security management system (ISMS) is essential for this. In Module 1 of our three-module information security training course, you as an IT security officer will learn how to increase the level of protection in your organisation and protect it from threats. The focus is on the introduction and operation of an ISMS in accordance with ISO 27001.

Your benefits

  • You will have up-to-date knowledge of the requirements of the relevant standards (such as ISO/IEC 27001 and IT-Grundschutz according to BSI) and their implementation.
  • You will know which aspects and requirements of information security need to be taken into account.
  • You can document your acquired expertise with the recognised certificate.

First seminar day

  • Basics of information security
    • Current importance of information security
    • Basic terms
    • Cybercrime
  • Legal framework of information security
    • Overview of relevant laws
    • IT Security Act
    • Data protection
  • Relevant standards
    • ISO 2700x
    • BSI IT-Grundschutz



Second seminar day

  • Handling information security incidents
    • Responsibilities and procedures
    • Possible causes of information security incidents
  • Information security management system according to ISO 27001
    • Management systems and their control loops
    • Structure of an ISMS according to ISO 27001
    • Documentation of the ISMS in accordance with ISO 27001
    • Options for tool-based documentation
  • Context - scope - values - guideline
    • Context of the organisation and interested parties
    • ISMS scope / area of application
    • Management and support
    • Assets / Values
  • Organisation of information security
    • Basics
    • Roles in the information security process
    • IT security officer
    • Liability
    • Exemplary organisational structure
    • Communication and reporting channels in the ISMS
    • Contact with authorities and special interest groups
    • Information security in project management



Third seminar day

  • Technical measures and objectives
    • Access management
    • Network security
    • Technical protective measures
    • Cloud security
    • Remote access
    • IT operations
    • Documented operating procedures and change management
    • Data protection and backup
    • Malware
    • Logging
    • Control of software in operation
    • Handling technical vulnerabilities
    • Dealing with mobile devices
    • Protection against external and environmental threats
    • Threats to the infrastructure
  • Basics of risk management
  • The ISO 27001
    • Statement of Applicability (SOA)
    • ISO 27001 standard chapter
    • Controls ISO 27001



Fourth seminar day

  • Emergency management according to BSI 100-4
    • Terms of IT emergency management
    • The emergency management process
    • Initiation of the emergency management process
    • Conceptualisation of emergency management
    • Implementation of the emergency preparedness concept
    • Emergency response and crisis management
    • Tests and exercises
    • Continuous improvement of emergency management
  • Security awareness
    • Security awareness in the company
    • Security awareness
    • Success criteria for campaigns
    • Examples of sensitisation measures
    • Methodical foundation process
  • TÜV certificate audit
This IT security training was designed for IT managers, responsible persons from the areas of IT security, information technology, network and system administration, IT organisation, IT consulting, auditing and risk management.
The course is aimed at beginners in the field of information security and focusses on the legal foundations, standards and regulations in detail. Information technology / IT is dealt with at a general level and not in detail.
  • All IT security certificates (TÜV) are valid for 3 years for new certifications from 1 July 2018.

Recertification is possible with proof of continued professional activity in the specialist area and additional participation in at least one subject-relevant further training course during the period of validity of the certificate, with a minimum scope of 8 units. Proof can be provided, for example, in the form of a copy of the certificate of attendance. For details, please refer to the relevant Certipedia entry.

  • As a participant in this TÜV course in the field of information security/IT security, you will receive eight weeks of free access to the TÜV Media online platform "Information Security Management digital".

This contains comprehensive information and work aids on the subject of information security.

  • This seminar is offered with a digital exam preparation "Fit for Test", a multiple choice test on the learning content for optimal exam preparation. Use is free of charge. Further information at: https://akademie.tuv.com/fit-for-test. You will receive access at the start of the seminar.
  • You will also receive 3-week free access to the Information Security Awareness Game. This "serious game" presents an excellent opportunity for companies to sensitise and train employees with regard to the importance of information security.

Contact us

SoftwareONE

IT CAMPUS
Customer Training Solutions

Blochstraße 1
D-04329 Leipzig
*The services of SoftwareONE Deutschland GmbH directly serving school and educational purposes are predominantly VAT-exempt according to § 4 No. 21 a) bb) UStG. Contact us - we are happy to help!