
Understanding Information Security System Construction
ISMS-P WIN
This is a lecture [Certification and Practice (Security · Network), Security] prepared for beginners.
Basic
ISMS-P, CPPG, security training
This is a theoretical and practical training course designed for those aspiring to become ISMS-P auditors in 2026, preparing them for the auditor qualification exam. It is an expanded version that includes Financial ISMS-P in addition to the standard ISMS-P.
65 learners
Level Basic
Course period 12 months


Reviews from Early Learners
5.0
정규섭
The educational materials and lesson content are substantial.
5.0
hwanchun-park
It was helpful!
5.0
dlatndhks
Thank you for explaining in detail.
Operation of Personal Information Protection Management System
Privacy Protection Tasks
ISMS-P Certification Audit and Compliance
Understanding Privacy Laws and Regulations
Understanding of financial laws and regulations, including the Credit Information Act
This is a basic general/financial practical course lecture for obtaining the ISMS-P certification.
This lecture reflects the 2026 amendments to laws and regulations, the certification system, and improvements to certification criteria.
The author who wrote the Darakwon textbook and lectured on ISMS-P provides the instruction directly.
Those who definitely want to obtain the ISMS-P certification
Those who want to obtain the ISMS-P certification in a short period of time
Those who want to acquire practical knowledge to prepare for ISMS-P certification audits
/builder/d2e1ea8c-c174-4074-bb38-fb0415ae0840/합격.png)
Those who wish to grow into information security leaders
Those who wish to perform roles as information security project experts, such as PMs or team leaders.
Those who wish to share their knowledge as a personal information protection instructor
/builder/bc14161b-2546-4185-89ad-19a1cbd503b8/도약.png)
Those who wish to improve their work performance by systematically learning privacy protection tasks
Those who wish to systematically learn about privacy concepts, systems, lifecycles, and protective measures.
/builder/a674fe44-08d0-49b8-a9a5-2294bfe10cb3/성과.png)
You will be able to reach a passing level where you can obtain the ISMS-P certification in a short period of time.
Based on what you have learned in this course, you will be able to clearly explain privacy protection tasks to your colleagues and juniors.
It can serve as an opportunity to develop your career from a security technician to a manager, and from a manager to an executive.
/builder/14248924-2d26-4d4d-97ce-bbf93f4186e7/1111.png)
Key Strengths of This Course (2)
Anything is fine, including the balance between theory and practice, the difficulty level, the tools/technologies used, or any specific details and features you focused on during production that prospective students should know.
T1. Certification System, Certification Criteria 1
Orientation
Certification System
2.1 ISMS-P System
2.2 Compliance with Personal Information Protection Laws and Regulations
2.3 Certification System Q&A
2.4 Notification on Certification of Information Security and Personal Information Protection Management System, etc.
Overview of Certification Standards
Certification Criteria 1. Establishment and Operation of Management System
1.1. Establishing the Foundation of the Management System
1.2. Risk Management
1.3. Management System Operation
1.4. Management System Inspection and Improvement
T2. Certification Criteria 2. Protective Measure Requirements
2. Protection Measure Requirements
2.1. Policy, Organization, and Asset Management
2.2. Human Resources Security
2.3. External Party Security
2.4. Physical Security
2.5. Authentication and Authorization Management
2.6. Access Control
2.7. Cryptography Application
2.8. Information System Acquisition and Development Security
2.9. System and Service Operations Management
2.10. System and Service Security Management
2.11. Incident Prevention and Response
2.12. Disaster Recovery
T3. Certification Criteria 3. Requirements for Each Stage of Personal Information Processing
3. Requirements for Each Stage of Personal Information Processing
3.1. Protective Measures During Personal Information Collection
3.2. Protective Measures During Retention and Use of Personal Information
3.3. Protective measures when providing personal information
3.4. Protective measures for destruction of personal information
3.5. Protection of Information Subject Rights
T4. Personal Information Protection Laws and Regulations
General Privacy Protection
1. Personal Information Protection Legislation
2. Overview of Personal Information
3. Personal Information Protection Laws
4. Public Notice on Personal Information Protection Measures
Privacy Protection FAQ
1. Standards for Securing the Safety of Personal Information
Instructor Chang-jung Kim
For the past 7 years, I have been researching, analyzing, and publishing to help candidates obtain their privacy certifications.
I have worked as a privacy consultant at a large corporation and have served as a Chief Privacy Officer (CPO) and Chief Information Security Officer (CISO).
It was meticulously produced by referring to CPO Forum guides, KISA guides, and research papers.
Experience & Career Details
- Former Head of Information Security (CISO) at LF
- Currently completed Ph.D. coursework in Industrial Engineering at Seoul National University of Science and Technology, Graduate School of IT Policy
- Currently Interviewer and Proposal Evaluation Committee Member for public institutions (KISA, NIA, etc.)
- Former Privacy Consultant at LG CNS
Lecture Experience
- InfoLever Consulting Personal Information Protection Management System Auditor Training Course (10 sessions)
- Lectures on personal information protection and safe utilization of personal information for public institutions and private companies
- Lectures on cloud security, methods for obtaining IT certifications, etc.
o Publications
- Passing the ISMS-P Certification Auditor Exam in One Volume (Crown Publishing)
- ISMS-P Certification Exam Practice Mock Test (Crown Publishing)
Certifications Held
- Professional Engineer Information Management, ISMS-P, PIA, CPPG, CISA (Information Security Engineer), PMP, etc.
External Activities
- ISMS-P Auditor, ISO27001 Auditor, CISSP, etc.
- ISMS-P Pass Cafe Master (http://cafe.naver.com/ismspwin)
- ISMS-P YouTube Channel Operator (www.youtube.com/ismspwin)
Write at least 3 questions and answers that prospective students might be curious about before taking the course.
We recommend providing answers that reveal the instructor's unique personality rather than cliché or formal responses.
Q. What are the eligibility requirements for the ISMS-P Certification Auditor exam?
Based on a university graduate, a total of 6 years of experience within the last 10 years is required.
You must have at least 1 year of experience in privacy and 1 year of experience in information security, while the remaining 4 years can be any combination of experience in information technology, privacy, or information security.
CPPG and PIA certifications are recognized as 1 year of privacy experience, and Information Security Engineer and CISSP certifications are recognized as 1 year of information security experience. If you have recognized experience, you can take the exam with 5 years of experience.
Q. Is there anything I need to prepare when watching the lectures?
The device you will use to watch the lecture (PC, tablet), lecture notes, and writing instruments.
You can watch the video lectures while taking notes on the printed course materials.
Usually, you will come to understand it more accurately as you listen to the lecture two or more times.
Q. How do I ask questions about the course content?
Please post questions regarding taking the course on the Inflearn board, and for questions about the course content,
https://cafe.naver.com/ismspwin
You can post your questions on the '질문이요' (I have a question) board in the cafe.
The provided study materials are in (PDF electronic file) format, and unauthorized sharing or distribution is strictly prohibited.
If you print the lecture notes in double-sided mode, you can view them like a book.
This course does not provide paper textbooks.
This course is a theoretical lecture course, not a problem-solving course.
If you work hard, no prior knowledge is required.
Having CPPG and Information Security Engineer certifications can be slightly advantageous.
Apart from the electronic file course materials, separate paper booklets are not provided.
The copyright for the lecture and learning materials belongs to ISMSPWIN (Lead Instructor Chang-jung Kim).
Who is this course right for?
Those who wish to obtain the ISMS-P certification
Those who build, establish, and manage audit responses for the ISMS-P framework.
Those who perform data privacy duties at financial institutions such as banks, securities firms, and insurance companies.
Need to know before starting?
Advantageous for holders of CPPG (Certified Privacy Protection General) certification
Advantageous for holders of the Information Security Engineer certification
Advantageous for holders of the Privacy Impact Assessment (PIA) Professional certification
Inflearn Verified
1,258
Learners
178
Reviews
29
Answers
4.6
Rating
12
Courses
Experience & Career History
- Current Lead Instructor at ISMSP WIN Co., Ltd.
- Former Chief Information Security Officer (CISO) and Information Security Team Leader at LF
- Currently completed Ph.D. coursework in Industrial Engineering at Seoul National University of Science and Technology, Graduate School of IT Policy
- Current Interviewer and Proposal Evaluation Committee Member for public institutions (KISA, National Information Society Agency, etc.)
- Former Privacy Consultant at LG CNS
Lecturing Experience
- InfoLever Consulting Personal Information Protection Management System (ISMS-P) Auditor Training Course (10 sessions)
- Lectures on personal information protection and secure data utilization for public institutions and private enterprises
- Lectures on cloud security, IT certification acquisition strategies, etc.
Publications
- Passing the ISMS-P Certification Auditor Exam in One Volume (Crown Publishing)
- ISMS-P Certification Exam Practice Mock Exams (Crown Publishing)
ㅇCertifications Held
- Professional Engineer Information Management, ISMS-P, PIA, Certified Information Security Professional, PMP, etc.
External Activities
- ISMS-P Auditor, ISO27001 Auditor, CISSP, etc.
- ISMS-P Exam Prep Cafe Master (http://cafe.naver.com/ismspwin)
- ISMS-P YouTube Channel Operator (www.youtube.com/ismspwin)
All
52 lectures ∙ (32hr 17min)
Course Materials:
All
14 reviews
4.5
14 reviews
Reviews 2
∙
Average Rating 5.0
Reviews 3
∙
Average Rating 5.0
Reviews 1
∙
Average Rating 5.0
Reviews 2
∙
Average Rating 4.0
Reviews 1
∙
Average Rating 5.0
Check out other courses by the instructor!
Explore other courses in the same field!