- Search BSI
- Verify a Certificate
Suggested region and language based on your location
Your current region and language
This course will provide you with the knowledge and skills required to perform first, second and third-party audits of Information Security Management Systems against ISO/IEC 27001 (with ISO/IEC 27002), in accordance with ISO 19011 and ISO/IEC 17021, as applicable.
Are you already a CQI and IRCA Certificated Lead Auditor (or acceptable alternative) in a management system other than information security management?
Do you already have good knowledge of ISO/IEC 27001:2022 Information Security Management Systems (ISMS) requirements, and the key principles of an ISMS? If so, this course is for you.
Using a step-by-step approach, you’ll be guided through auditing an organization’s processes in relation to ISO/IEC 27001 and, over three days, you’ll gain the knowledge and skills required to undertake and lead a successful ISMS audit. You’ll acquire the knowledge and skills to plan, conduct, report and follow-up an ISMS audit that establishes conformity and enhances overall information security performance.
This course will help you:
On successful completion, you’ll have the knowledge and skills to:
Knowledge:
Explain the purpose and benefits of an information security management system and of information security management systems standards
Skills:
Plan, conduct, report and follow-up an audit of an information security management system to establish conformity (or otherwise) with ISO/IEC 27001 (with ISO/IEC 27002) and in accordance with ISO 19011 (and ISO/IEC 17021 where appropriate)
Anyone with the need to audit an organization’s processes in relation to ISO/IEC 27001:2022, and has met the prerequisites for attending.
You are expected to have the following prior knowledge:
a. Management systems
Understand the Plan, Do, Check, Act (PDCA) cycle
b. Information security management
Knowledge of the information security management principles:
c. ISO 27001
Knowledge of the requirements of ISO/IEC 27001:2022 (with ISO/IEC 27002) and the commonly used information security management terms and definitions, as given in ISO/IEC 27000. **The course examination can cover the requirements of ISO 27001, and these are not covered during this course.
d. Management system audit
Knowledge of management systems audit through satisfactory completion of a CQI and IRCA Certified (or the acceptable alternative) Lead Auditor Training course in another discipline. **Delegates will be asked to provide a copy of their Lead Auditor training course certificate as evidence of their qualification, prior to attending this course
If you have not successfully completed a CQI and IRCA Certified (or acceptable alternative) Lead Auditor Training Course in another discipline, you’re unlikely to complete this 24 hour course successfully and will find the 40 hours ISO/IEC 27001:2022 Lead Auditor (ISMS) Training Course more appropriate.
You will sit a 1 hour 40 minute exam to test your knowledge and understanding. On completion, you’ll be awarded a CQI and IRCA certified training course certificate.
Reach out and see how we can help guide you on your path to sustainable operational success.