- Search BSI
- Verify a Certificate
Suggested region and language based on your location
Your current region and language
Auditing is crucial to the success of any management system. As a result, it carries with it heavy responsibilities, tough challenges and complex problems. This five-day intensive course trains Information security management system (ISMS) auditors to lead, plan, manage and implement an Audit Plan. It also empowers them to give practical help and information to those who are working towards certification and also provides the knowledge and skill required to carry out 2nd party auditing (suppliers and subcontractors).
This package is a structured learning pathway that combine carefully selected courses with rigorous asessements that guarantee their relevance. In this practitioner package, it includes:
Assessment
Each course is followed by a mandatory online multiple-choice examination. Delegates must pass the examination to be awarded the qualification - BSI Mark of Trust.
Explain the purpose and business benefits of:
Explain the role of an auditor to plan, conduct, report and follow up an Information Security MS audit in accordance with ISO 19011 (and ISO 17021 where appropriate).
Have the skills to: Plan, conduct, report, and follow up an audit of an ISMS to establish conformity (or otherwise) with ISO/IEC 27001/2, ISO 19011 (and ISO 17021 where appropriate)
This course is suitable for those wishing to Lead audits of ISMS in accordance with ISO/IEC 27001:2013 (either as a 2nd party, or 3rd party auditor), those wishing to learn about effective audit practices. Security and quality professionals, existing information security auditors who wish to expand their auditing skills and consultants who wish to provide advice on ISO/IEC 27001:2022 ISMS Auditing.
Prerequisites
Delegates are expected to have the following prior knowledge:
a. Management systems
Understand the Plan-Do-Check-Act (PDCA) cycle.
b. Information security management
Knowledge of the following information security management principles and concepts:
c. ISO/IEC 27001
Knowledge of the requirements of ISO/IEC 27001 (with ISO/IEC 27002) and the commonly used information security management terms and definitions, as given in ISO/IEC 27000.
Reach out and see how we can help guide you on your path to sustainable operational success.