Skip to main content
Image coming soon

CMP0053 Mastering ISO 27799 for Chief Compliance Officers in Healthcare

$199.00
Adding to cart… The item has been added

A tailored course, built for your situation

Mastering ISO 27799 for Chief Compliance Officers in Healthcare

Become the recognized authority on health information security and compliance in your organization

$199 one-time
24-hour access provisioning 30-day money-back guarantee Hand-built implementation playbook
12 modules. 12 chapters per module. 144 chapters total.
12 modules, each with 12 chapters (144 chapters total), text-based, plus downloadable templates and a hand-built implementation playbook delivered alongside course access.

Who this is for

Senior compliance and privacy leaders in healthcare organizations who are expected to align ISO standards with HIPAA, internal risk frameworks, and executive decision-making

Who this is not for

Individuals new to compliance or those without responsibility for information security frameworks or cross-functional coordination

What you walk away with

  • Lead ISO 27799 implementation with confidence and organization-wide credibility
  • Position yourself as the internal reference on health information security controls
  • Align ISO 27799 controls with HIPAA requirements and audit expectations
  • Deliver clear, authoritative responses during executive reviews and regulator-facing discussions
  • Build repeatable templates and playbooks that reinforce your status as the subject matter expert

The 12 modules (with all 144 chapters)

Module 1. Foundations of ISO 27799 in Healthcare
Understand the core structure and healthcare-specific controls of ISO 27799, including alignment with HIPAA and organizational risk posture.
12 chapters in this module
  1. Origins of ISO 27799
  2. Healthcare context for security
  3. Linking to HIPAA Privacy Rule
  4. Linking to HIPAA Security Rule
  5. Scope of protected health information
  6. Roles in health information handling
  7. Baseline control mapping
  8. Risk assessment alignment
  9. Regulatory overlap awareness
  10. Executive reporting expectations
  11. Audit preparedness fundamentals
  12. Control ownership models
Module 2. Access Control and Authorization Models
Design secure access frameworks for EHRs, claims systems, and internal portals using ISO 27799 guidance.
12 chapters in this module
  1. Role-based access principles
  2. User provisioning workflows
  3. Privileged access oversight
  4. Session timeout enforcement
  5. Multi-factor authentication use
  6. Emergency access design
  7. Access review cycles
  8. Delegation controls
  9. Service account governance
  10. Access logging standards
  11. Incident linkage procedures
  12. Audit trail retention
Module 3. Asset Management in Health Systems
Classify and protect health data assets across cloud, on-premise, and hybrid environments.
12 chapters in this module
  1. Data classification schema
  2. PHI labeling standards
  3. Data lifecycle stages
  4. Storage location inventory
  5. Cloud asset tracking
  6. Mobile device handling
  7. Third-party data flows
  8. Asset ownership rules
  9. Decommissioning procedures
  10. Data retention alignment
  11. Legal hold requirements
  12. Audit-ready asset logs
Module 4. Privacy by Design in Practice
Embed privacy controls into system development and vendor integration from the start.
12 chapters in this module
  1. Privacy impact assessments
  2. Vendor onboarding checks
  3. Data minimization tactics
  4. Consent management models
  5. Notice distribution methods
  6. Opt-out mechanism design
  7. Data anonymization standards
  8. Re-identification risk control
  9. Processing agreement terms
  10. Breach notification triggers
  11. Patient data rights workflows
  12. Internal privacy monitoring
Module 5. Security Incident Management
Respond to data events with documented, compliant procedures aligned to ISO 27799 and HIPAA.
12 chapters in this module
  1. Incident definition criteria
  2. Detection mechanisms
  3. Escalation pathways
  4. Response team roles
  5. Containment protocols
  6. Forensic readiness
  7. Legal counsel notification
  8. Regulator reporting timelines
  9. Patient notification rules
  10. Post-event review process
  11. Corrective action tracking
  12. Documentation retention
Module 6. Business Continuity Planning for Healthcare
Ensure availability of critical systems and data under disruption using ISO 27799 guidance.
12 chapters in this module
  1. Critical system identification
  2. Recovery time objectives
  3. Failover testing schedules
  4. Data backup verification
  5. Alternate site readiness
  6. Staff communication plans
  7. Vendor dependency review
  8. Insurance alignment
  9. Regulatory reporting continuity
  10. Patient access assurance
  11. Audit documentation
  12. Plan maintenance cycle
Module 7. Vendor Risk Oversight
Manage third-party compliance and security expectations with ISO 27799-aligned assessments.
12 chapters in this module
  1. Vendor risk classification
  2. Pre-contract review steps
  3. Due diligence checklists
  4. BAAs and data clauses
  5. Audit right negotiations
  6. Ongoing monitoring frequency
  7. Performance issue handling
  8. Subcontractor oversight
  9. Exit process controls
  10. Penetration test sharing
  11. Compliance reporting demands
  12. Termination safeguards
Module 8. Audit and Compliance Review Readiness
Prepare for internal and external audits with organized, repeatable evidence packages.
12 chapters in this module
  1. Control mapping methodology
  2. Evidence collection workflow
  3. Control testing procedures
  4. Gap identification process
  5. Remediation tracking
  6. Management sign-off steps
  7. Audit committee reporting
  8. Internal auditor coordination
  9. External auditor liaison
  10. Corrective action timelines
  11. Follow-up audit preparation
  12. Continuous monitoring setup
Module 9. Training and Awareness Programs
Develop effective security and privacy training tailored to healthcare staff roles.
12 chapters in this module
  1. Role-based curriculum design
  2. Onboarding integration
  3. Phishing simulation use
  4. Annual training delivery
  5. Manager accountability
  6. Content refresh cycle
  7. Policy attestation methods
  8. Compliance quiz design
  9. Reporting awareness metrics
  10. Incident reporting culture
  11. Leadership messaging
  12. External benchmarking
Module 10. Policy Development and Maintenance
Create clear, enforceable policies that align with ISO 27799 and organizational needs.
12 chapters in this module
  1. Policy hierarchy structure
  2. Stakeholder review process
  3. Approval workflows
  4. Version control system
  5. Distribution methods
  6. Acknowledgment tracking
  7. Enforcement standards
  8. Exception handling
  9. Legal alignment checks
  10. Industry update integration
  11. Review cycle schedule
  12. Retirement procedures
Module 11. Executive Communication and Reporting
Deliver concise, actionable updates to leadership on compliance and risk posture.
12 chapters in this module
  1. Risk dashboard design
  2. Executive summary writing
  3. KPIs for compliance
  4. Incident escalation levels
  5. Budget justification
  6. Strategic initiative alignment
  7. Board-level summary prep
  8. Metrics interpretation
  9. Trend reporting
  10. Outsider explanation skills
  11. Timeline clarity
  12. Action recommendation framing
Module 12. Sustaining Compliance Excellence
Maintain long-term compliance quality through continuous improvement and organizational learning.
12 chapters in this module
  1. Continuous monitoring tools
  2. Automated control checks
  3. Internal audit integration
  4. Feedback loop design
  5. Benchmarking against peers
  6. Regulatory change tracking
  7. Team knowledge sharing
  8. Mentorship development
  9. Innovation encouragement
  10. Lessons learned capture
  11. Annual improvement plan
  12. Succession planning

How this maps to your situation

  • New regulatory scrutiny on health data
  • Increasing third-party vendor complexity
  • Executive demand for compliance clarity
  • Need for audit-ready posture

Before vs. after

Before
Compliance efforts are reactive, fragmented, and often questioned during leadership reviews.
After
You lead with authority, consistently recognized as the definitive source on health information security and ISO 27799 alignment.

What's included with your purchase

  • 12 modules with 12 chapters each (144 chapters)
  • Downloadable templates and worked examples for every module
  • Hand-built implementation playbook delivered alongside course access
  • 30-day money-back guarantee

Delivery and format

  • Course and learning environment access provisioned within 24 hours of purchase
  • Hand-built implementation playbook delivered alongside course access

Format: Text-based modules and chapters in the Art of Service learning environment, plus downloadable templates and worked examples for every chapter, plus the hand-built implementation playbook delivered alongside course access.

Time investment: Approximately 2.5 hours per module, designed for completion in 2-3 weeks with consistent pacing.

If nothing changes
Without a clear, recognized standard for health information governance, compliance initiatives risk appearing inconsistent, leading to repeated scrutiny, redundant audits, and diminished influence in strategic discussions.

How this compares to the alternatives

Unlike generic compliance courses, this program is tailored to healthcare Chief Compliance Officers and centers on ISO 27799 as the benchmark for health information security , combining structured learning with actionable frameworks you can deploy immediately.

Frequently asked

Is this course focused on HIPAA or ISO 27799?
It integrates both, showing how ISO 27799 provides a robust framework that aligns with and strengthens HIPAA compliance.
How is the course structured?
12 modules, each containing 12 chapters (144 chapters total).
Can I apply this directly to my current role?
Yes , every module includes templates and examples designed for immediate use by Chief Compliance Officers in healthcare settings.
$199 one-time. Approximately 2.5 hours per module, designed for completion in 2-3 weeks with consistent pacing..

Within 24 hours your account in the learning environment is provisioned and the tailored implementation playbook is delivered alongside it.

30-day money-back guarantee· 144 chapters· Hand-built playbook included· Account access within 24 hours