Description
Information security threats and attacks increase and improve constantly. The best form of defense against them is the proper implementation and management of information security controls and best practices. Information security is also a key expectation and requirement of customers, legislators, and other interested parties.
This training course is designed to prepare participants in implementing an information security management system (ISMS) based on ISO/IEC 27001. It aims to provide a comprehensive understanding of the best practices of an ISMS and a framework for its continual management and improvement.
After attending the training course, you can take the exam. If you successfully pass it, you can apply for a “PECB Certified ISO/IEC 27001 Lead Implementer” credential, which demonstrates your ability and practical knowledge to implement an ISMS based on the requirements of ISO/IEC 27001.
Who should attend?
The ISO/IEC 27001 Lead Implementer training course is intended for:
- Managers or consultants involved in and/or concerned with the implementation of an information security management system in an organization
- Project managers, consultants, or expert advisers seeking to master the implementation of an information security management system; or individuals responsible to maintain conformity with the ISMS requirements within an organization
- Members of the ISMS team
Learning objectives
Upon successful completion of this training course, the participants will be able to:
- Explain the fundamental concepts and principles of an information security management system (ISMS) based on ISO/IEC 27001
- Interpret the ISO/IEC 27001 requirements for an ISMS from the perspective of an implementer
- Initiate and plan the implementation of an ISMS based on ISO/IEC 27001, by utilizing PECB’s IMS2 Methodology and other best practices
- Support an organization in operating, maintaining, and continually improving an ISMS based on ISO/IEC 27001
- Prepare an organization to undergo a third-party certification audit
Educational approach
The training course is participant centered and contains:
- This training course contains essay-type exercises, multiple-choice quizzes, examples, and best practices used in the implementation of an ISMS.
- The participants are encouraged to communicate with each other and engage in discussions when completing quizzes and exercises.
- The exercises are based on a case study.
- The structure of the quizzes is similar to that of the certification exam.
Prerequisites
The main requirement for participating in this training course is having a general knowledge of the ISMS concepts and ISO/IEC 27001.
Course Agenda
Day 1: Introduction to ISO/IEC 27001 and initiation of an ISMS implementation
Day 2: Implementation plan of an ISMS
Day 3: Implementation of an ISMS
Day 4: ISMS monitoring, continual improvement, and preparation for the certification audit
Day 5: Certification exam
Examination
The “PECB Certified ISO/IEC 27001 Lead Implementer” exam meets the requirements of the PECB Examination and Certification Program (ECP). It covers the following competency domains:
Domain 1: Fundamental principles and concepts of an information security management system
Domain 2: Information security management system requirements
Domain 3: Planning of an ISMS implementation based on ISO/IEC 27001
Domain 4: Implementation of an ISMS based on ISO/IEC 27001
Domain 5: Monitoring and measurement of an ISMS based on ISO/IEC 27001
Domain 6: Continual improvement of an ISMS based on ISO/IEC 27001
Domain 7: Preparation for an ISMS certification audit
For specific information about exam type, languages available, and other details, please visit the List of PECB Exams and the Examination Rules and Policies.
Certificate requirements
Upon the successful completion of the exam, you can apply for one of the credentials shown in the table below. You will receive a certificate once you fulfill all the requirements related to the selected credential. For more information about ISO 9001 credentials and the PECB certification process, please refer to the Certification Rules and Policies.
The credentials in the PECB ISO/IEC 27001 certification scheme have the following requirements:
Designation | Exam | Professional experience | MS audit/assessment experience | Other requirements |
PECB Certified ISO/IEC 27001 Provisional Implementer | PECB Certified ISO/IEC 27001 Lead Implementer exam or equivalent | None | None | Signing the PECB Code of Ethics |
PECB Certified ISO/IEC 27001 Implementer | PECB Certified ISO/IEC 27001 Lead Implementer exam or equivalent | Two years: One year of work experience in Information Security Management | Project activities: a total of 200 hours | Signing the PECB Code of Ethics |
PECB Certified ISO/IEC 27001 Lead Implementer | PECB Certified ISO/IEC 27001 Lead Implementer exam or equivalent | Five years: Two years of work experience in Information Security Management | Project activities: a total of 300 hours | Signing the PECB Code of Ethics |
PECB Certified ISO/IEC 27001 Senior Lead Implementer | PECB Certified ISO/IEC 27001 Lead Implementer exam or equivalent | Ten years: Seven years of work experience in Information Security Management | Project activities: a total of 1,000 hours | Signing the PECB Code of Ethics |
Note: PECB certified individuals who possess both the Lead Implementer and Lead Auditor credentials are qualified for the respective PECB Master Credential, given they have taken 4 additional Foundation Exams related to this scheme. For more information about the Foundation Exams and the overall Master Requirements, please go to PECB Master Credentials.
To be considered valid, the audit activities should follow best audit practices and include the following:
- Drafting an ISMS implementation business case
- Managing an ISMS implementation project
- Implementing the ISMS
- Managing documented information
- Implementing corrective actions
- Monitoring the ISMS performance
- Managing an ISMS implementation team
General Information
- Certification and examination fees are included in the price of the training course.
- PECB will provide over 500 pages of instructional materials containing explanations, guidance, and practical examples.
- An attestation of course completion worth 31 CPD (Continuing Professional Development) credits will be issued to participants who have attended the training course.
- In case of exam failure, the candidate can retake the exam once for free within 12 months following the initial exam date.