Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

History of key revisions:

Date issued:

Author:

Description:

Emma Philpott

First Introduction

Internal audit history

Date:

Conducted by:

Link to IA:

Attachments

Schedule 11 – Maritime Cyber Assessor Criteria

Version 1

Effective Date: January 2022

Revisions:

 

Date:

Author:

Description:

January 2022

Jamie Randall

First Version Published

...

Attachments

Maritime Cyber Assessor Criteria

IASME requires that anyone who applies to become a Maritime Cyber Assessor must have a suitable level of skills in cyber security in the Maritime sector and to be proficient in the security aspects of Operational Technology (OT) environments. They must also attend the appropriate Assessor Training Course for the category of Assessor they wish to attain.

Maritime Cyber Assessors must meet all the requirements below:

1. Hold one of the following qualifications:

a.      ISO 27001 Lead Auditor,

b.     ISACA – Certified Information Security Manager (CISM)

c.      ICS2 Certified Information Security Systems Professional (CISSP).

2. Be a member of a Maritime Professional body, e.g. Royal Institution of Naval Architects (RINA) or similar.

3. Hold a current certification in the security of Operational Technology (OT) environments (Fortinet, Cisco, SANS, etc or similar) or be able to demonstrate suitable experience of OT to the satisfaction of IASME

IASME may at its sole discretion accept alternative qualifications and certifications to those listed above. This will be decided on a case-by-case basis by IASME’s Head of Technical Strategy taking into account the skills requirements of the scheme.

...

Assessors will retain their status if they leave their CB and start work with another organisation - they do not have to attend the training a second time, but they cannot offer certification unless they are working on behalf of an authorised Maritime Cyber CB.© The IASME Consortium Ltd 2020 All rights reserved