SABSA Advanced

The world’s most successful Security Architecture Certification!

What is SABSA®?
SABSA stands for Sherwood Applied Business Security Architecture and is a new ‘best practice’ method for obtaining information security solutions within an organization. It is being used by organizations and governments worldwide.

SABSA logo The SABSA Model follows closely the work done by John A. Zachman in developing a model for enterprise architecture. SABSA is to Security Management what ITIL is to Service Management or PRINCE2 to Project Management.

Combine the best of different methods!
Most organizations are already familiar with the norms and standards like COBIT, BSI, ISF and the Code of Information Security. Most Security Architects gratefully make use of them. The SABSA approach complements these popular norms and standards on areas where they fail. SABSA creates a solution with which you can use the best of all the different methods.

Implementing SABSA
The average time to implement SABSA is one to one and a half year. It depends on the type of organization, the degree of prework and the availability of knowledge in the organization.

SABSA roadmap

Who uses SABSA?
SABSA is already the standard, or undergoing adoption and implementation, worldwide, in many major banks (including the European Central Bank), telecommunications companies, healthcare organisations, academic institutions, aviation/engineering industries, and government (including the UK Ministry of Defence).

Get certified!
The SABSA Certification Framework is based upon world-leading educational best practices. There are 3 certification levels that indicate stages of proficiency from knowledge and understanding of the subject up to demonstration of the advanced competencies required of a master of the profession.

  • SABSA Foundation
  • SABSA Advanced
  • SABSA Master

The SABSA Certification courses are organized by International Management Forum (IMF) in association with Pink Elephant.

Capability assurance
The SABSA Certification framework is a comprehensive, competencies-based testing programme that provides employers and peers with far greater assurance and confidence that employees, job candidates, service providers and contractors have the professional capability to meet the needs of your particular business to design, deliver, and manage business security architectures. It tests professional proficiency in all aspects of Enterprise Security Architecture as delivered by the SABSA Method.

The competencies framework, and its associated training programme, go much further than other certification efforts, which are largely knowledge-based. The SABSA programme is designed to develop and enhance professional capabilities in a measurable way.

SABSA recognises that after attaining the Foundation skills the Architect's career diversifies into a series of specialisms. To best meet the diverse needs and increased degree of specialism required of a professional enterprise security architect, the SABSA Advanced Certificate test modules are organised into four professional roadmap streams:
  • Risk Assurance & Governance Career Roadmap
  • Business Continuity & Crisis Management Career Roadmap
  • Security Architecture Design & Development Career Roadmap
  • Security Operations & Service Management Career Roadmap

Each of these Career Roadmaps enables the Architect to choose the specialisms most suited to the needs of his career and of his employer. SABSA certification will also enable you to create a specific career roadmap to plan the advancement of your career in the architecture-related specialisms most suited to your needs, and to demonstrate your increasing competency thus enabling you to differentiate yourself from non-SABSA Certified professionals.

At this moment only the Roadmap ‘Risk Assurance’ and ‘Architecture & Design’ are organized in Europe. The other roadmap streams will follow in a later stadium.

Who should attend?
  • CIO / CISO / CRO / CIRO
  • IT Strategists and Planners
  • IT Architects
  • IT Development Managers and Project Leaders
  • Software Managers and Architects
  • Computer / Information Security Managers, Advisors, Consultants & Practitioners
  • IT Line Managers
  • IT Service Delivery Managers
  • Risk Managers
  • Internal and External Auditors

Accredited education partners
Official SABSA training is delivered by accredited education partners internationally, each of which meets stringent criteria for quality of delivery and presenter experience. All official SABSA courses delivered by accredited SABSA education partners are presented by certified SABSA Masters with extensive relevant experience. Official SABSA training is tuned to each of the 15 certification modules in the SABSA Certification Framework.

What a course attendee will take away
  • A comprehensive knowledge of the principles and practice of assurance management within the SABSA framework
  • A plan for implementing and managing an assurance programme based on best-practice methods, standards and tools and linked directly to the SABSA Business Attributes Profile
  • A practical SABSA-based approach to assuring business processes and systems through monitoring, measuring, benchmarking, testing and continuous improvement

Pre-Requisite Knowledge
There are no pre-requisites for attending this course or for sitting the SABSA Institute examination on completion of the course. However, attendees will probably benefit most if they have some previous knowledge of the SABSA framework, and for those wishing to be awarded the SABSA Chartered Practitioner Certificate, they will need to complete the SABSA Chartered Foundation Certificate before the Practitioner award can be made.

Methodology
The course consists of lectures and workshop sessions, supplemented by case studies drawn from a combination of published real life examples and/or practical experience. In the workshops attendees will work in small groups to synthesise ideas and strategies and to apply the material in the context of case studies and simulations. Open forum discussions will also feature where appropriate.

Lecture content is naturally less intense than in Foundation classes, with more emphasis on practical work. The course focuses heavily on developing the skills and knowledge for a practitioner through hands-on workshop sessions and discussions, so as to provide the appropriate balance and emphasis on practice rather than theory.

Interested?

Then register here. If you want to receive more information about the content of SABSA please click here.

Pre-register to guarantee participation!
Need to wait for the permission of your manager, but you want to be certain that you can join the training? No problem. Click here to reserve a place in the training (no strings attached). Leave your name, telephone number and (optionally) company name and we will keep your seat reserved for 3 weeks.

Need help with implementing SABSA?
Please contact us and we will bring you into contact with very experienced consultants that can help you with that!

In-house training is a cost-effective solution if you have a large group of people to train.
  • The in-company training includes a SABSA trainer to suit your specific needs.
  • Sensitive issues can be openly discussed because there are no ‘outsiders’.
  • The program is delivered at your choice of location, either at your own premises or an external site
  • You can choose a timing that suits you. Evening, weekend or other special timing can be arranged to minimise the impact on normal work schedules.

For more information about the possibilities of a SABSA in-company please contact us +31 (0)40 246 02 20.
The SABSA Advanced program of the career roadmap ‘Risk Management & Governance’ consists of 2 modules:

MODULE 1 SABSA Assurance Management
  • The meaning of assurance
  • SABSA Asset Assurance
  • SABSA Risk Management Assurance
  • SABSA Process Assurance
  • SABSA People Assurance
  • SABSA Location and Timeliness Assurance

MODULE 2 SABSA Operational Risk Management
  • The meaning of risk within the SABSA framework
  • Risk management and corporate governance
  • Enterprise risk management
  • Risk measurement and risk assessment
  • Risk mitigation
  • Risk appetite and risk tolerance
  • Risk management tools
  • Measuring success of a risk management programme
  • Risk financing

The SABSA Advanced program of the career roadmap ‘Architecture & Design’ consists of 2 modules:

MODULE 1: SABSA Identity and Access Management (I&AM) Architecture
  • Basic concepts and component for I&AM from the SABSA Matrix
  • Identity and Access Management Strategy
  • Entity relationships and trust
  • I&AM Policy
  • Conceptual logica and physical I&AM architectures
  • Directory services architecture

MODULE 2: SABSA Network Security Architecture and Design
  • Network risk and security basic concept
  • Network security strategy
  • Network security policy
  • Conceptual and logical network security architecture
  • Physical network security architecture
  • Network management architecture

The SABSA Advanced exam
The SABSA Advanced exam will take 2 hours and will be held at the end of the fifth day. After passing the exam you will be awarded with the SABSA Chartered Practitioner (SCP) Certification designation. By earning this designation you can use this title on your business card, email signature, webpage, etc.


The Advanced training ‘Risk Assurance’ takes place on:
Europe
  • Voorburg: 20 - 24 September 2010

The Advanced training ‘Architecture & Design’ takes place on:
Europe
  • Voorburg: 8 - 12 November 2010
 
For more information on other locations and dates (for example in the USA or Asia), please contact our office at +31 (0)40 246 02 20 or info@imfacademy.com.
The fee of the training is € 2.990.- (excl. VAT) in Europe. This fee includes lunches, coffee, tea, all course materials and the exam.

Attention! The training fee differs per continent. You will find an overview of the different fees in the following schedule:
  • UK: £ 2.240
  • Canada: CAD 3.670
  • United States: $ 3.560
  • Asia - Pacific region: AUD 3.880 / MYR 6.500