top of page
Contents
  • Overview
  • Who should attend
  • Learning objectives
  • Course agenda and content
  • Prerequisites
  • Training approach
  • Examination
  • Competence domains being tested
  • Certification
  • General course information
​
​

ISO/ IEC 27001: Information Technoogy - Security Techniques - Information Security Management Systems - Requirements

 

Overview

 

The aim of this 1-day course is to:

  • Introduce delegates to the principles and requirements of ISO/IEC 27001 (“the standard”)

  • Provide an overview of the stages for developing, implementing and maintaining an ISO 27001-compliant ISMS

  • Make delegates aware of the issues and challenges of implementing an ISMS.

ISO 27001
Foundation

Also, the course provides an overview of the ISO 27000 family (series) of standards, the ISO/IEC 27000, and the ISO 27002 (companion standard of ISO 27001).

​

Who Should Attend

 

  • Members of ISM teams

  • Those involved in ISMS implementation, operation and maintenance

  • Technicians involved in the operation and maintenance of ISMS

  • Auditors, whose role calls for them to audit ISM Systems.

  • Senior managers involved in and/ or affected by the outcome of ISMS audits

  • Those considering ISMS certification to the ISO 27001 standard.

  • Those who wish to learn about: the potential threats and vulnerabilities to their information assets and the consequences; and the controls to mitigate the risks associated with them.

 

Learning Objectives

 

On completion of this course, delegates will be able to:

  • Articulate the new terminology

  • Articulate concepts, such as “the process approach” and “the PDCA cycle”

  • Identify the new High Level Structure (HLS) of ISO standards

  • Interpret the requirements of the standard, and how they apply in practice.

  • Appreciate the benefits of adopting the latest version of the standard

  • Articulate the concepts, approaches, methods and techniques enabling effective ISMS operation and management

  • Understand the relationship between ISMS, and risk management, compliance with legal/ regulatory requirements, and compliance with the requirements of other interested parties

  • Understand how ISO 27001 and ISO 27002 are linked with the other standards such as the ISO/IEC 27000 and ISO 27003, 27004, and 27005.

  • Interpret the basic requirements and principles of the standard, and how they apply in practice.

  • Understand the requirements for implementation of an ISO 27001-compliant ISMS

  • Contribute in the development, implementation, and certification, (or re-certification) of an ISMS.

​

Course Agenda and Content

 

Part 1: ISMS Basics & Introduction to the ISO 27000 Family of Standards

  • Module 1: Introduction to Information Security and Cybersecurity

  • Module 2: Introduction to Information Security Management Systems (ISMS)

  • Module 3: ISO 27000 Family of ISM Standards, the ISO 27001, and Other Interrelated Standards

  • Module 4: Planning, Development, Implementation, Operation, and Maintenance of the ISMS

  • Evening Assignment for Delegates

​

Part 2: Planning, Development, Implementation, Operation, & Certification of

the ISMS

​

  • Module 5: Information Security - Objectives and Controls

  • Module 6: ISO 27001 Qualification and Certification Schemes, and Roles and Responsibilities

  • Module 7: The Route to ISO 27001 Certification and The Certification Cycle

  • Mock Exam

  • Module 8: Integration of Multiple Management Systems

  • Certification Exam

​

Prerequisites

​

The following are general prerequisites for attending our training courses:

  • Proficiency in the English language

  • Consideration for other course participants

  • Willingness to actively participate during the training sessions, and an open mind to learn new ways of working.

 

Training Approach

​

The course covers both theory and practice:

  • Slide-based training sessions, illustrated with examples

  • Business cases

  • Preparation for the Foundation exam

  • Practice test (mock exam).

​

Examination

​

  • Duration:     45 min.

  • Format:       Closed book

  • Questions   30 multiple-choice questions

  • Pass mark: 70% (21 correct answers).

​

Competence Domains Being Tested

​

  • Fundamental principles and concepts of Information Security Management

  • ISO 27001 requirements for Information Security Management Systems (ISMS).

​

Certification

 

The ISO 27001 Foundation certificate will be issued to delegates passing the exam.

​

General Course Information

​

For general course information please click on the link here.

​

N.B. Please read our Terms & Conditions (T&Cs) and ask for clarifications, if any, before booking your training event.

​

Book now to reserve an on-site or online instructor-led training event of your choice.

​

For more details about our:

  • List of training courses please click here.

  • Consulting services please click here

  • Workshops please click here.

​

For queries, including non-obligation quotes, please contact us.

​

​

f4ccb2bb53fd46b3b122f5e5348d65ab-620x285
  Training Course details
  • 1 day (09.00 - 17.00 GMT)
  • Online instructor-led via zoom.us
  • £350 + VAT per delegate
  • Deadline for payment/ registration: 1 calendar day before course start
  • Included: 1 day online instructor-led training, delegate workbook, online exam, and certificate
  • Prequisites: completing Foundation  training is mandatory before attending Internal Auditor, Lead Implementer, and Lead Auditor training.
​
bottom of page