Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Udemy

IT Asset Management for ISO 27001:2022 Compliance

via Udemy

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Master information asset identification, classification, lifecycle, and Annex A controls A.5.9 through A.5.14

What you'll learn:
  • Identify and document every category of information asset required by ISO/IEC 27001:2022
  • Implement Annex A controls A.5.9 through A.5.14 with policies, procedures, and evidence auditors will accept
  • Design a classification scheme that rates assets across confidentiality, integrity, and availability
  • Build and maintain an asset register that survives cloud, mobile, and dynamic environments
  • Assign asset ownership and custodianship to satisfy ISO/IEC 27005:2022 risk assessment inputs
  • Manage the full asset lifecycle from acquisition to secure disposal under NIST SP 800-88 Rev. 1
  • Integrate your ISMS asset register with CMDB and software asset management platforms
  • Discover and govern shadow IT across SaaS and cloud environments using modern tooling

Information assets are the lifeblood of every modern organization, and ISO/IEC 27001:2022 makes one thing crystal clear: you cannot secure what you have not identified, classified, and assigned an owner. Yet most ISMS implementations stumble at exactly this point — asset registers go stale within weeks, classification schemes gather dust, shadow IT proliferates unchecked, and certification auditors find gaps that derail the project. This course gives you the practical playbook to make IT asset management the rock-solid foundation of a defensible ISO 27001 programme.

Across six focused sections you will learn the formal definition of an information asset, the six asset-related Annex A controls — A.5.9 inventory of information and other associated assets, A.5.10 acceptable use of information, A.5.11 return of assets, A.5.12 classification of information, A.5.13 labelling of information, and A.5.14 information transfer — and exactly how to implement each one. You will design a multi-tier classification scheme grounded in confidentiality, integrity, and availability ratings, build an asset register that satisfies auditors using both manual and automated discovery techniques, and assign ownership and custodianship to named individuals in line with ISO/IEC 27005:2022 guidance.

The course is built for information security managers, ISMS implementers, IT asset managers, internal auditors, and compliance officers who need to operationalize ISO 27001:2022 asset controls without reinventing the wheel. You will cover the full asset lifecycle from acquisition through secure disposal aligned with NIST SP 800-88 Rev. 1, integrate your ISMS register with existing CMDB and software asset management platforms, conquer the visibility challenges of cloud and SaaS environments, hunt down shadow IT diplomatically, and use the asset register as the engine that drives risk assessment, control selection, and your Statement of Applicability.

Unlike generic ISO 27001 overviews, this course goes deep on one mission-critical domain and gives you the templates, decision frameworks, and audit-ready practices that make the difference between a certificate on the wall and an ISMS that actually protects the business. Enroll now and turn asset management from your weakest link into your strongest argument the next time a certification auditor walks through the door.

Syllabus

  • Introduction
  • Responsibility of Assets
  • Classification of Information
  • Media Handling

Taught by

ISO Horizon

Reviews

4.3 rating at Udemy based on 139 ratings

Start your review of IT Asset Management for ISO 27001:2022 Compliance

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.