Course overview
The ISO 27001 Foundation and Lead Implementer course outline
Certified ISO 7001 Foundation course
The starting point for all prospective project managers and members of any ISO 27001 implementation project group, this Foundation-level course provides a complete introduction to the ISO 27001 standard and an overview of the key implementation activities.
Download course data sheet
Certified ISO 27001 Lead Implementer course
The flagship of our ISO 27001 implementation Learning Pathway, this Advanced-level course is focused on developing the in-depth knowledge and skills required to implement and deliver an ISMS.
Download course data sheet
Certified ISO 27001 Foundation and Lead Implementer training course benefits
A complete introduction to ISO 27001
Provides a complete introduction to the requirements of ISO 27001, and covers all the activities required to plan, implement and maintain an ISO 27001-compliant ISMS.
Hands-on study
An experienced ISO 27001 trainer and consultant will use a combination of formal training, practical exercises and relevant case studies.
Designed by experts
Developed by acknowledged ISO 27001 experts Alan Calder and Steve Watkins.
Delivered by professionals
Real-world practitioners show you how to tackle an ISMS project from start to finish.
Achieve ISO 27001 compliance
Develop the skills required to achieve ISO 27001 compliance for your organisation.
Save time and money
Save time and travel costs with ISO 27001 online training delivered to any location with Internet access.
Who should attend this course?
Directors and managers involved in ensuring compliance with the NYDFS Cybersecurity Requirements or similar regulations.
Anyone who is involved in information security management, writing information security policies, or implementing ISO 27001, either as a lead implementer or as part of an implementation team.
Why choose IT Governance for your training needs?
- We’re internationally recognized as the authority on ISO 27001 – our team led the world’s first ISO 27001 certification project, and since then we have trained more than 8,000 professionals on information security management system (ISMS) implementations and audits
- Trained by industry experts – our trainers are working consultants with years of practical, hands-on experience
- Choose the method that suits you – we offer instructor-led online, self-paced online, e-learning and in-house training options
- Access your training anywhere – all our course materials are provided as a digital copy, allowing you to access them anywhere and at any time. Documents will be made available 20 days before your course
- Business solutions to suit you – whether you’re a multinational wanting us to manage all your training needs or a small business wishing to boost your workforce skills, we offer a range of training solutions
Course details
What does this training course cover?
- The role and structure of an information security policy
- The key concepts, principles and main requirements of ISO/IEC 27001:2013
- The terms and definitions used in the Standard, including risk and options for risk assessments
- How to interpret the requirements of ISO/IEC 27001:2013 to determine the scope of your ISMS
- How to secure senior management commitment by building a compelling business case
- How to structure and manage your ISO 27001 project
- How to allocate roles and responsibilities for your ISO 27001 implementation
- How to review and map your existing controls to Annex A of ISO 27001
- The importance of the Statement of Applicability (SoA), and justifications for inclusions and exclusions
- How to carry out an information security risk assessment – the core competence of information security management
- The benefits of, and key issues when selecting, a risk assessment tool
- How to develop a management framework, write policies and produce other critical documentation
- The importance of staff, an effective communication strategy and general awareness training
- The key elements of management review
- How to prepare for your ISO 27001 certification audit and ensure you that you pass first time
- How to manage and drive continual improvement under ISO 27001
Course agenda:
Course agenda (day 1):
- Drivers for ISO 27001
- Standards: what they are and why they are important?
- Documentation and Management Systems
- Certification
- Management Commitment
- Overview of ISO 27001
- Implementing ISO 27001: Scoping, Planning, Communication
- Risk Assessment and Security Controls
- Summary
Course agenda (day 2-4):
- Project mandate
- Project initiation
- ISMS initiation
- Management framework
- Baseline security criteria
- Risk management
- Implementation
- Annex A controls
- Measure, monitor, review, and improve
- Certification
What’s included in this course?
- Full course materials (digital copy provided as a PDF file)
- The ISO 27001 Certified ISMS Foundation exam
- The ISO 27001 Certified ISMS Lead Implementer exam
- A certificate of attendance
What equipment should I bring?
This course is delivered as a WebEx Live Online session. Anyone booked on this course is expected to have a reliable Internet connection at their home or office. We will check and confirm that you have the WebEx application installed, and that you can correctly log on to our WebEx training centre before the course.
To sit the online exam you will need:
- Internet Explorer 9 (or later) or Mozilla Firefox version 16 (or later)
- Internet access for the full time of the exam
- To deactivate the pop-up blocker
- A working webcam on the machine you are using to sit the exam
Course duration and times
9:00 am – 5:00 pm CST each day course is run
CPD/CPE points
This course is equivalent to 28 CPD/CPE points.
Exams and qualifications
Certified ISO 27001 Foundation and Lead Implementer exams
The ISO 27001 Certified ISMS Foundation (CIS F) exam:
- Delivery method: Online
- Duration: 60 minutes
- Questions: 40
- Format: Multiple choice
- Pass mark: 65%
The ISO 27001 Certified ISMS Lead Implementer (CIS LI) exam:
- Delivery method: Online
- Duration: 60 minutes
- Questions: 40
- Format: Multiple choice
- Pass mark: 75%
Both the ISO 27001 Foundation and Lead Implementer exams are set by IBITGQ (International Board for IT Governance Qualifications). There are no extra charge for these exams.
What qualifications will I receive?
- Certified ISO 27001 ISMS Lead Implementer (CIS LI).
- ISO 27001 Certified ISMS Foundation (CIS F)
Accreditation
This course is accredited by IBITGQ, as well as CIISec (The Chartered Institute of Information Security), it satisfies the CIISec Knowledge Areas requirements at Level 1: A1, A3, A7, C1, C2, D2, E3, F2, H1 and H2; and at Level 1+: A2, A4, A5, A6, B1, B2, D1, E1, E2, F1 and G1
You can demonstrate your professional and practical knowledge and expertise by registering your qualification on the IBITGQ/GASQ successful candidate register.
The PCI SSC (Payment Card Industry Security Standards Council) has indicated that it accepts GASQ certifications in relation to the IBITGQ-accredited courses as meeting the requirements of an individual applying to become a PCI DSS (Payment Card Industry Data Security Standard) QSA (Qualified Security Assessor).
How will I receive my exam results and certificates?
- Provisional exam results will be available immediately on completion of the exam. Confirmed exam results will be issued within ten working days from the date of the exam
- Certificates for those who have achieved a passing grade will be issued within ten working days from the date of the exam
- Results notifications and certificates are sent directly to candidates by the relevant exam board in electronic format; please note that hard copy exam certificates are not issued
Can exams be retaken?
Yes, if you are unsuccessful on the first attempt you can retake the exam for an additional fee. You can email us to schedule the retest for the exam.
Prerequisites
Are there any prerequisites for this course?
No prior knowledge or qualifications are required and the course content is suitable for non-technical and technical staff.
Is there any recommended reading?
We strongly recommend you purchase and read the standard prior to attending the course:
We also recommend that you purchase and read the following textbooks: