Intended Audience
This training course is suitable for:
- Auditors seeking to perform and lead Information Security Management System (ISMS) certification audits;
- Managers or consultants seeking to master an Information Security Management System audit process;
- Individuals responsible for maintaining conformance with Information Security Management System requirements;
- Technical experts seeking to prepare for an Information Security Management System audit;
- Expert advisors in Information Security Management.
Required Skills & Expertise
A fundamental understanding of ISO/IEC 27001 and comprehensive knowledge of implementation principles.
Program
The duration of this training course is 5 days.
Day 1: Introduction to Information Security Management Systems (ISMS) and ISO/IEC 27001
The training starts with a short introduction in standards and regulatory frameworks and Information Security Management Systems. This knowledge about the basic principles of ISMS is an absolute prerequisite to understand and clarify the Information Security objectives of the organization and to analyze the existing management system.
- Course objectives and structure
- Standards and regulatory frameworks
- Certification process
- Fundamental principles of Information Security Management Systems
- Information Security Management Systems (ISMS)
Day 2: Audit principles, preparation and launching of an audit
- Fundamental audit concepts and principles
- Evidence based audit approach
- Initiating the audit
- Stage 1 audit
- Preparing the stage 2 audit (on-site audit)
- Stage 2 audit (Part 1)
Day 3: On-site audit activities
- Stage 2 audit (Part 2)
- Communication during the audit
- Audit procedures
- Creating audit test plans
- Drafting audit findings and non-conformity reports
Day 4: Closing the audit
- Documentation of the audit and the audit quality review
- Closing the audit
- Evaluating action plans by the auditor
- Benefits of the initial audit
- Managing an internal audit program
- Competence and evaluation of auditors
- Closing the training
Day 5: Certification Exam
The “PECB Certified ISO/IEC 27001 Lead Auditor” exam fully meets the requirements of the PECB Examination and Certification Program (ECP).
Interested?
If you are interested in hosting this interactive and tailored training at your company, please let us know via the contact form, by telephone +31 (0)88 888 31 00 or email info@secura.com.