logo-img
Informatiebeveiliging voor gemeenten (BIO) - schriftelijke cursus

Informatiebeveiliging voor gemeenten (BIO) - schriftelijke cursus

9 * 4 hours of lessons Self study Nederlands

Sharpest price in just 2 steps

Requesting more information and/or the current price of this training is easy. We take into account any ongoing promotions, subsidies, or relationship discounts.

Description

Information security (IS) in the public sector is hot. The field of information security is continuously evolving in municipalities, especially now that the Baseline Information Security Government (BIO) has come into effect as of January 1, 2020. This baseline applies to municipalities, the national government, water boards, and provinces. The BIO replaces the existing information security baselines such as the BIG, BIR, BIR2017, IBI, and BIWA. With the introduction of the BIO, a single joint framework for information security within the entire government is created, based on internationally recognized and current ISO standards. The Baseline Information Security Government (BIO) thus stands for a clear, robust, and secure digital government. The amount of regulations and technical requirements is, however, so large that a structured approach is necessary.

In this current course, specifically developed for municipalities, you will receive a complete overview of information security in the municipal organization. The Baseline Information Security Government (BIO) is used as a starting point for the municipal information security policy. The course further relies on the two important pillars for a successful implementation and safeguarding of your information security policy. Firstly, in the area of technology and organization, where an information security policy, risk analysis, and information security plan are established. Secondly, in the area of attitude and behavior, for example, by creating security awareness. All standards applicable to your municipality, what they entail, their interconnections, and what the main pitfalls are, will be addressed. All in all, a complete course to embed information security in your organization in a process-oriented manner at a strategic and tactical level.

 

Working method

This written course consists of nine lessons that you can receive weekly, bi-weekly, or all at once. The study load is approximately four hours per lesson.

Certification

This written/online training is not associated with any certification. However, you will receive a certificate of participation indicating the number of hours of training completed. This can be useful for maintaining (C)PE obligations for keeping any other certifications up to date.

Training Requirements

  • Securitymanagers
  • Security coördinatoren
  • IT-managers
  • IT-auditoren
  • Consultants
  • Systeem- en netwerkbeheerders
  • Functionarissen voor Gegevensbescherming (FG) en Privacy Officers
  • (Hoofden) van burger- en publiekszaken
  • Beheerders van basisregistratie
  • Beveiligingsbeheerders GBA of PUN/RR
  • Leveranciers aan gemeentelijke organisaties

Training Content

Kernprincipes: beschikbaarheid, integriteit, vertrouwelijkheid

De rol van medewerkers: beleid, awareness, social engineering

Inrichting van beleid en beheersing

Risicomanagement: methodieken en technieken

Techniek: toegangsbeveiliging, netwerken, systemen, applicaties, fysieke beveiliging, continuïteit

Actuele ontwikkelingen

Terminologie

Rol van gemeenteraad en college van B&W

Taken en verantwoordelijkheden binnen de ambtelijke organisatie

Beveiligingsorganisatie: HR, facilitair, IT/I&A

Functionarissen: CISO, IT-securitymanagers en domein specifieke rollen

VNG-resolutie informatieveiligheid

IBD: aansluiting, ondersteuning en incidentafhandeling

Opbouw en onderhoud van een ISMS

Strategie, beleid, incidentbeheer en rapportages

Praktijkcasus

ISO-normen (27001/27002), NEN-normen

Baseline Informatiebeveiliging Overheid 2 (BIO2)

Praktische handvatten voor implementatie

Classificeren van informatie

IT-beheerprocessen: ITIL, BiSL, ASL

Werkplekken en mobiele apparatuur

Centrale systemen en koppelingen

Patch management, monitoring en SIEM

Inkoop en aanbesteding

Outsourcing en regie

Cloud-diensten en juridische aandachtspunten

Ketensamenwerking

Voorkomen, detecteren, mitigeren, accepteren

Verschillende typen risico’s

Nulmeting, GAP-analyse, afhankelijkheids- en kwetsbaarheidsanalyse

Rapportages, planning en control

Relevante wetgeving binnen gemeenten

BRP en RNI

SUWI

AVG en PIA’s

Meldplicht datalekken

Rapportagestrategie

Contracten met derden

Auditprincipes en voorbereidingen

DigiD, SUWI, BRP en jaarrekeningcontrole

Security scans en red teaming

Praktische hulpmiddelen

Description

Information security (IS) in the public sector is hot. The field of information security is continuously evolving in municipalities, especially now that the Baseline Information Security Government (BIO) has come into effect as of January 1, 2020. This baseline applies to municipalities, the national government, water boards, and provinces. The BIO replaces the existing information security baselines such as the BIG, BIR, BIR2017, IBI, and BIWA. With the introduction of the BIO, a single joint framework for information security within the entire government is created, based on internationally recognized and current ISO standards. The Baseline Information Security Government (BIO) thus stands for a clear, robust, and secure digital government. The amount of regulations and technical requirements is, however, so large that a structured approach is necessary.

In this current course, specifically developed for municipalities, you will receive a complete overview of information security in the municipal organization. The Baseline Information Security Government (BIO) is used as a starting point for the municipal information security policy. The course further relies on the two important pillars for a successful implementation and safeguarding of your information security policy. Firstly, in the area of technology and organization, where an information security policy, risk analysis, and information security plan are established. Secondly, in the area of attitude and behavior, for example, by creating security awareness. All standards applicable to your municipality, what they entail, their interconnections, and what the main pitfalls are, will be addressed. All in all, a complete course to embed information security in your organization in a process-oriented manner at a strategic and tactical level.

 

Working method

This written course consists of nine lessons that you can receive weekly, bi-weekly, or all at once. The study load is approximately four hours per lesson.

Certification

This written/online training is not associated with any certification. However, you will receive a certificate of participation indicating the number of hours of training completed. This can be useful for maintaining (C)PE obligations for keeping any other certifications up to date.

Training Requirements

  • Securitymanagers
  • Security coördinatoren
  • IT-managers
  • IT-auditoren
  • Consultants
  • Systeem- en netwerkbeheerders
  • Functionarissen voor Gegevensbescherming (FG) en Privacy Officers
  • (Hoofden) van burger- en publiekszaken
  • Beheerders van basisregistratie
  • Beveiligingsbeheerders GBA of PUN/RR
  • Leveranciers aan gemeentelijke organisaties

Training Content

Kernprincipes: beschikbaarheid, integriteit, vertrouwelijkheid

De rol van medewerkers: beleid, awareness, social engineering

Inrichting van beleid en beheersing

Risicomanagement: methodieken en technieken

Techniek: toegangsbeveiliging, netwerken, systemen, applicaties, fysieke beveiliging, continuïteit

Actuele ontwikkelingen

Terminologie

Rol van gemeenteraad en college van B&W

Taken en verantwoordelijkheden binnen de ambtelijke organisatie

Beveiligingsorganisatie: HR, facilitair, IT/I&A

Functionarissen: CISO, IT-securitymanagers en domein specifieke rollen

VNG-resolutie informatieveiligheid

IBD: aansluiting, ondersteuning en incidentafhandeling

Opbouw en onderhoud van een ISMS

Strategie, beleid, incidentbeheer en rapportages

Praktijkcasus

ISO-normen (27001/27002), NEN-normen

Baseline Informatiebeveiliging Overheid 2 (BIO2)

Praktische handvatten voor implementatie

Classificeren van informatie

IT-beheerprocessen: ITIL, BiSL, ASL

Werkplekken en mobiele apparatuur

Centrale systemen en koppelingen

Patch management, monitoring en SIEM

Inkoop en aanbesteding

Outsourcing en regie

Cloud-diensten en juridische aandachtspunten

Ketensamenwerking

Voorkomen, detecteren, mitigeren, accepteren

Verschillende typen risico’s

Nulmeting, GAP-analyse, afhankelijkheids- en kwetsbaarheidsanalyse

Rapportages, planning en control

Relevante wetgeving binnen gemeenten

BRP en RNI

SUWI

AVG en PIA’s

Meldplicht datalekken

Rapportagestrategie

Contracten met derden

Auditprincipes en voorbereidingen

DigiD, SUWI, BRP en jaarrekeningcontrole

Security scans en red teaming

Praktische hulpmiddelen

shape

I am taking this next step in my lifelong learning journey.

1

Applicant Information

2

Billing Information

What Can I Learn After The Informatiebeveiliging voor gemeenten (BIO) - schriftelijke cursus?

  • The course Information Security for Municipalities provides you with an overview of and a solution for all the challenges associated with municipal information security.
  • You will learn to substantiate decisions, recognize risks, and be alert to the consequences.
  • Classifying information and linking appropriate security measures to different types of data and systems.
  • Preparing and supporting audits, security scans, reports, and controls to demonstrate compliance with information security standards.
  • This current and in-depth course specifically addresses municipal standards, laws, and regulations.
  • Explain the roles, responsibilities, and collaboration of, among others, the municipal council, the executive board, CISO, IT departments, and privacy officers.
  • Applying relevant laws and regulations, including BIO2, GDPR, NIS2, BRP, SUWI, and the obligation to report data breaches, within municipal practice.
  • You will learn how to implement and manage information security in an effective and efficient manner, in line with the obligations imposed on municipalities.
  • Selecting and applying appropriate security measures for networks, systems, applications, workstations, and mobile devices.
  • Sustainably embedding information security within the organization by focusing on awareness, attitude, and behavior of employees.

Schedules

This training is scheduled as follows in the coming period. Missing a date? Feel free to contact us.

Date: Dagelijks te starten

Price: € 2.480,- ex BTW

1

Applicant Information

2

Billing Information

I am taking this next step in my lifelong learning journey.

1

Applicant Information

2

Billing Information

Why experienced professionals choose TSTC for their studies

Train smarter, not harder. TSTC's unique approach guarantees the effective acquisition of skills and the greatest chance of success.

Learn more about TSTC
Toucan Rhino