Courses
CY-202Cyber resiliencePractitioner

Connecting cyber and continuity

Two management systems, one capability

ISO/IEC 27001 and ISO 22301 share most of their structure and overlap explicitly on two Annex A controls. This course shows how to integrate them to cut audit cost and, above all, to remove the zones where the two arrangements pass responsibility back and forth.

Learning objectives

  • Identify the clauses shared by both standards
  • Handle A.5.29 and A.5.30 without duplication
  • Merge audit and review programmes
  • Remove the grey zones between SOC and continuity

Intended audience

  • CISOs
  • Continuity managers
  • Auditors
  • Quality

Prerequisites

  • Cyber Resilience Fundamentals

Detailed curriculum

Module 1

Integrating the two systems

What can be shared, what stays specific, and the grey zones to close.

Module 2

One audit programme

Running internal audit of both systems in a single campaign.