หลักสูตรฝึกอบรม
ISO/IEC27001:2022 Requirement Course หลักสูตรข้อกำหนดมาตรฐาน ISO/IEC27001:2022
วิทยากรประจำหลักสูตร

จีรศักดิ์ ม่วงชิน (Jeerasak Muangchin)
ผู้ตรวจประเมิน / วิทยากร – ระบบยานยนต์ คุณภาพ สิ่งแวดล้อม อาชีวอนามัยและความปลอดภัย และความมั่นคงปลอดภัยสารสนเทศ · ผู้ตรวจประเมินขึ้นทะเบียน IATF · Certified in Cybersecurity (CC) · DPO Certified Level 1 & 2 (ICDL)
- ปริญญาตรี เทคโนโลยีสารสนเทศและการสื่อสาร (มสธ.) · ปริญญาโท MBA (มหาวิทยาลัยรามคำแหง หลักสูตรนานาชาติ) · ปริญญาตรี วิศวกรรมไฟฟ้ากำลัง (มจธ.)
- Lead Auditor และวิทยากรกับหน่วยรับรองระดับสากลตั้งแต่ปี 2006 · เคยเป็นวิทยากรหลักที่ได้รับอนุมัติสำหรับหลักสูตร IRCA ISO 9001:2015 Lead Auditor
- ประสบการณ์ 4 ปีในตำแหน่ง Division Manager โรงงานอุปกรณ์ไฟฟ้าและฉีดพลาสติก ทำงานกับทีม APQP, MSA, SPC และ QMS
- ตรวจประเมินและสอน IATF 16949, ISO 9001, ISO 14001, ISO 45001, ISO 22301, ISO 39001, ISO/IEC 17025, ISO/IEC 27001 และ 27701, ISO 13485, ISCC, RSPO, คาร์บอนฟุตพริ้นท์ (CFO/CFP), Core Tools (APQP, PPAP, FMEA, MSA, SPC), VDA 6.3 และ TISAX
ภาษาที่สอน: ไทยและอังกฤษ
วิทยากรของแต่ละรอบยืนยันเมื่อสมัคร
Course Summary
Businesses today compete for advantage, and using and protecting the organisation's important information is essential, including customer information that must be kept secure to build the confidence of interested parties. A good management system helps the organisation manage this efficiently.
ISO/IEC 27001 is the standard for an information security management system, known as an ISMS. Its requirements give confidence that information is kept confidential, accurate and available when needed. It gives the organisation a risk-based management system that helps prevent or reduce the impact of inadequate information controls.
Course objective
- Recognise the importance of information security and the benefits of implementing the system
- Build knowledge and understanding of ISO/IEC 27001:2022 and apply it appropriately in the organisation
- Build skills in linking the organisation's processes to the ISO/IEC 27001:2022 requirements
- Help information security audit teams understand the requirements in detail and find improvement opportunities more effectively
Session Agenda
| Day and time | Topics |
|---|---|
| Day 1 09.00 - 16.00 | Why implement an information security standard, and the benefits · Concepts and principles of information security management · Terms and definitions · ISO/IEC 27001:2022 requirements: clause 4 Context of the organization; 5 Leadership; 6 Planning; 7 Support; 8 Operation; 9 Performance evaluation; 10 Improvement |
| Day 1 16.00 - 16.30 | Summary, guidance on implementing the system, questions and answers |
Target Audience
Executives, supervisors, management system working teams, internal quality audit teams, students, employees at all levels and anyone interested.