PECB ISO/IEC 27005 Foundation Training Course
Training course is focused on the information security risk management process introduced by ISO/IEC 27005 and the structure of the standard.
The course provides an overview of the guidelines of ISO/IEC 27005 for managing information security risks, including context establishment, risk assessment, risk treatment, communication and consultation, recording and reporting, and monitoring and review.
After attending the training course, you can enroll for the Foundation Exam and, if you successfully pass it, you can apply for a “PECB Certificate Holder in ISO/IEC 27005 Foundation” certificate.
Foundation Exam ( extra cost): Duration: 1 hour, Questions: 40, Where: Online
A PECB Foundation certificate shows that you have knowledge on the fundamental concepts, principles, methodologies, processes, and management approaches used in information security risk management.
Course Outline
Day 1: Introduction to ISO/IEC 27005 and implementation of a risk management program
                  • Course objectives and structure
                  • Standard and regulatory framework
                  • Concepts and definitions of risk
                  • Risk management programme
                  • Context establishment
                  
Day 2: Risk assessment, risk treatment, and risk communication and consultation based on ISO/IEC 27005
                  • Risk identification
                  • Risk analysis
                  • Risk evaluation
                  • Risk assessment with a quantitative method
                  • Risk treatment
                  • Information security risk acceptance
Open Training Courses require 5+ participants.
PECB ISO/IEC 27005 Foundation Training Course - Booking
PECB ISO/IEC 27005 Foundation Training Course - Enquiry
Testimonials (1)
The fact that all the standard was reviewed and discussed with some examples, when needed and required.
Ioana
Course - ISO/IEC 27005 Information Security Risk Management
Provisional Courses
Related Courses
ISO 22301 Introduction
7 HoursISO 22301 Introduction training course enables you to comprehend the basic concepts of a Business Continuity Management System (BCMS).
By attending the ISO 22301 Introduction course, you will understand the importance of a Business Continuity Management System and the benefits that businesses, society and governments can obtain.
Who should attend?
- Individuals interested in Business Continuity Management
- Individuals seeking to gain knowledge about the main processes of a Business Continuity Management System (BCMS)
Learning objectives
- Understand the concepts, approaches, methods, and techniques used to implement a Business Continuity Management System
- Understand the basic elements of a Business Continuity Management System
ISO 22301 Lead Implementer
35 HoursAfter attending the training course, you can sit the exam and, if you successfully pass the exam, you can apply for the “Certified ISO 22301 Lead Implementer” credential. The internationally recognized “Certified ISO 22301 Lead Implementer” certificate will prove that you have the professional capabilities and practical knowledge to implement a BCMS based on the requirements of ISO 22301 in an organization.
Who should attend?
- Project managers and consultants involved in business continuity
- Expert advisors seeking to master the implementation of the business continuity management system
- Individuals responsible to maintain conformity with BCMS requirements within an organization
- Members of the BCMS team
Learning objectives
- Gain a comprehensive understanding of the concepts, approaches, methods, and techniques used for the implementation and effective management of a BCMS
- Learn how to interpret and implement the requirements of ISO 22301 in the specific context of an organization
- Understand the operation of the business continuity management system and its processes based on ISO 22301
- Acquire the necessary knowledge to support an organization in effectively planning, implementing, managing, monitoring, and continually improving a BCMS
Educational approach
- This training course is based on theory, implementation best practices, and ISO 22301 requirements useful for the implementation of a BCMS.
- Lecture sessions are illustrated with practical exercises based on a case study which includes role-playing and discussions.
- The participants are encouraged to intercommunicate and engage in discussions and exercises.
- The exercises are similar to the certification exam.
General Information
- Certification fees are included in the exam price. After completion of the course you will be able to book the exam.
- Participants will be provided with the training material containing over 450 pages of explanatory information and practical examples.
- An Attendance Record worth 31 CPD (Continuing Professional Development) credits will be issued to participants who have attended the training course.
- In case candidates fail the exam, they can retake the exam within 12 months following the initial exam for free.
PECB ISO/IEC 27001 Lead Auditor
35 HoursISO/IEC 27001 Lead Auditor
ISO/IEC 27001 Lead Auditor training enables you to develop the necessary expertise to perform an Information Security Management System (ISMS) audit by applying widely recognized audit principles, procedures and techniques.
Why should you attend?
During this training course, you will acquire the knowledge and skills to plan and carry out internal and external audits in compliance with ISO 19011 and ISO/IEC 17021-1 certification process.
Based on practical exercises, you will be able to master audit techniques and become competent to manage an audit program, audit team, communication with customers, and conflict resolution.
After acquiring the necessary expertise to perform this audit, you can sit for the exam and apply for a “PECB Certified ISO/IEC 27001 Lead Auditor” credential. By holding a PECB Lead Auditor Certificate, you will demonstrate that you have the capabilities and competencies to audit organizations based on best practices.
Who should attend?
- Auditors seeking to perform and lead Information Security Management System (ISMS) certification audits
- Managers or consultants seeking to master an Information Security Management System audit process
- Individuals responsible for maintaining conformance with Information Security Management System requirements
- Technical experts seeking to prepare for an Information Security Management System audit
- Expert advisors in Information Security Management
Learning objectives
- Understand the operations of an Information Security Management System based on ISO/IEC 27001
- Acknowledge the correlation between ISO/IEC 27001, ISO/IEC 27002 and other standards and regulatory frameworks
- Understand an auditor’s role to: plan, lead and follow-up on a management system audit in accordance with ISO 19011
- Learn how to lead an audit and audit team
- Learn how to interpret the requirements of ISO/IEC 27001 in the context of an ISMS audit
- Acquire the competencies of an auditor to: plan an audit, lead an audit, draft reports, and follow-up on an audit in compliance with ISO 19011
Educational approach
- This training is based on both theory and best practices used in ISMS audits
- Lecture sessions are illustrated with examples based on case studies
- Practical exercises are based on a case study which includes role playing and discussions
- Practice tests are similar to the Certification Exam
ISO 27002 Lead Manager
35 HoursISO/IEC 27002 Lead Manager training enables you to develop the necessary expertise and knowledge to support an organization in implementing and managing Information Security controls as specified in ISO/IEC 27002.
After completing this course, you can sit for the exam and apply for the “PECB Certified ISO/IEC 27002 Lead Manager” credential. A PECB Lead Manager Certification, proves that you have mastered the principles and techniques for the implementation and management of Information Security Controls based on ISO/IEC 27002.
Who should attend?
- Managers or consultants seeking to implement an Information Security Management System (ISMS) based on ISO/IEC 27001 and ISO/IEC 27002
- Project managers or consultants seeking to master the Information Security Management System implementation process
- Individuals responsible for the information security, compliance, risk, and governance, in an organization
- Members of information security teams
- Expert advisors in information technology
- Information Security officers
- Privacy officers
- IT professionals
- CTOs, CIOs and CISOs
Learning objectives
- Master the implementation of Information Security controls by adhering to the framework and principles of ISO/IEC 27002
- Gain a comprehensive understanding of the concepts, approaches, standards, methods and techniques required for the effective implementation and management of Information Security controls
- Comprehend the relationship between the components of Information Security controls, including responsibility, strategy, acquisition, performance, conformance, and human behavior
- Understand the importance of information security for the strategy of the organization
- Master the implementation of information security management processes
- Master the formulation and implementation of security requirements and objectives
Educational approach
- This training is based on both theory and practice
- Sessions of lectures illustrated with examples based on real cases
- Practical exercises based on case studies
- Review exercises to assist the exam preparation
- Practice test similar to the certification exam
General Information
- Certification fees are included on the exam price
- Training material containing over 500 pages of information and practical examples will be distributed to the participants
- A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued to the participants
- In case of exam failure, you can retake the exam within 12 months for free
ISO/IEC 27005 Lead Risk Manager
35 HoursISO/IEC 27005 Lead Risk Manager training enables you to acquire the necessary expertise to support an organization in the risk management process related to all assets of relevance for Information Security using the ISO/IEC 27005 standard as a reference framework. During this training course, you will gain a comprehensive knowledge of a process model for designing and developing an Information Security Risk Management program. The training will also contain a thorough understanding of best practices of risk assessment methods such as OCTAVE, EBIOS, MEHARI and harmonized TRA. This training course supports the implementation process of the ISMS framework presented in the ISO/IEC 27001 standard.
After mastering all the necessary concepts of Information Security Risk Management based on ISO/IEC 27005, you can sit for the exam and apply for a “PECB Certified ISO/IEC 27005 Lead Risk Manager” credential. By holding a PECB Lead Risk Manager Certificate, you will be able to demonstrate that you have the practical knowledge and professional capabilities to support and lead a team in managing Information Security Risks.
Who should attend?
- Information Security risk managers
- Information Security team members
- Individuals responsible for Information Security, compliance, and risk within an organization
- Individuals implementing ISO/IEC 27001, seeking to comply with ISO/IEC 27001 or individuals who are involved in a risk management program
- IT consultants
- IT professionals
- Information Security officers
- Privacy officers
Examination - Duration: 3 hours
The “PECB Certified ISO/IEC 27005 Lead Risk Manager” exam fully meets the requirements of the PECB Examination and Certification Programme (ECP). The exam covers the following competency domains:
- Domain 1 Fundamental principles and concepts of Information Security Risk Management
- Domain 2 Implementation of an Information Security Risk Management program
- Domain 3 Information security risk assessment
- Domain 4 Information security risk treatment
- Domain 5 Information security risk communication, monitoring and improvement
- Domain 6 Information security risk assessment methodologies
General Information
- Certification fees are included on the exam price
- Training material containing over 350 pages of information and practical examples will be distributed
- A participation certificate of 21 CPD (Continuing Professional Development) credits will be issued
- In case of exam failure, you can retake the exam within 12 months for free
ISO 28000 Lead Implementer
35 HoursISO 28000 Lead Implementer training enables you to develop the necessary expertise to support an organization in establishing, implementing, managing and maintaining a Supply Chain Security Management System (SCSMS) based on ISO 28000. During this training course, you will also gain a thorough understanding of the best practices of Supply Chain Security Management Systems and be able to improve efficiency in managing potential security risks and their impacts in an organization`s supply chain.
After mastering all the necessary concepts of Supply Chain Security Management Systems, you can sit for the exam and apply for a “PECB Certified ISO 28000 Lead Implementer” credential. By holding a PECB Lead Implementer Certificate, you will demonstrate that you have the practical knowledge and professional capabilities to implement ISO 28000 in an organization.
Who should attend?
- Managers or consultants involved in Supply Chain Security Management
- Expert advisors seeking to master the implementation of a Supply Chain Security Management System
- Individuals responsible for maintaining conformance with SCSMS requirements
- SCSMS team members
Learning objectives
- Acknowledge the correlation between ISO 28000 and other standards and regulatory frameworks
- Master the concepts, approaches, methods and techniques used for the implementation and effective management of a SCSMS
- Learn how to interpret the ISO 28000 requirements in the specific context of an organization
- Learn how to support an organization to effectively plan, implement, manage, monitor and maintain a SCSMS
- Acquire the expertise to advise an organization in implementing Supply Chain Security Management System best practices
Educational approach
- This training is based on both theory and best practices used in the implementation of a SCSMS
- Lecture sessions are illustrated with examples based on case studies
- Practical exercises are based on a case study which includes role playing and discussions
- Practice tests are similar to the Certification Exam
General Information
- Certification fees are included on the exam price
- Training material containing over 450 pages of information and practical examples will be distributed
- A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued
- In case of exam failure, you can retake the exam within 12 months for free
PECB ISO 9001 Foundation
14 HoursISO 9001 Foundation training enables you to learn the basic elements to implement and manage a Quality Management System (QMS) as specified in ISO 9001. During this training course, you will be able to understand the different modules of a QMS, including QMS policy, procedures, performance measurements, management commitment, internal audit, management review and continual improvement.
After completing this course, you can sit for the exam and apply for a “PECB Certified ISO 9001 Foundation” credential. A PECB Foundation Certificate shows that you have understood the fundamental methodologies, requirements, framework and management approach.
Who should attend?
- Individuals involved in Quality Management
- Individuals seeking to gain knowledge about the main processes of Quality Management Systems (QMS)
- Individuals interested to pursue a career in Quality Management
The “PECB Certified ISO 9001 Foundation” exam fully meets the requirements of the PECB Examination and Certification Programme (ECP). The exam covers the following competency domains: h Domain 1: Fundamental principles and concepts of a Quality Management System (QMS) h Domain 2: Quality Management System (QMS)
Upon the successful completion of the exam, you can apply for the “PECB Certified ISO 9001 Foundation” credential.
General Information
Certification fees are included on the exam price
Training material containing over 200 pages of information and practical examples will be distributed
A participation certificate of 14 CPD (Continuing Professional Development) credits will be issued
In case of exam failure, you can retake the exam within 12 months for free
PECB ISO 9001 Lead Auditor
35 HoursThe ISO 9001 Lead Auditor training enables you to develop the necessary expertise to perform a Quality Management System (QMS) audit by applying widely recognized audit principles, procedures and techniques. During this training course, you will acquire the knowledge and skills to plan and carry out internal and external audits in compliance with ISO 19011 and the certification process according to ISO/IEC 17021-1.
Based on practical exercises, you will be able to master the audit techniques and become competent to manage an audit program, audit team, communication with customers, and conflict resolution.
After acquiring the necessary expertise to perform this audit, you can sit for the exam and apply for a “PECB Certified ISO 9001 Lead Auditor” credential. By holding a PECB Lead Auditor Certificate, you will demonstrate that you have the capabilities and competencies to audit organizations based on best practices.
Who should attend?
- Auditors seeking to perform and lead Quality Management System (QMS) certification audits
- Managers or consultants seeking to master a Quality Management System audit process
- Individuals responsible for maintaining conformance with QMS requirements
- Technical experts seeking to prepare for a Quality Management System audit
- Expert advisors in Quality Management
General information
- Certification fees are included in the exam price
- Training material containing over 450 pages of information and practical examples will be distributed
- A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued
- In case of exam failure, you can retake the exam within 12 months free of charge
PECB ISO 9001 Lead Implementer
35 HoursISO 9001 Lead Implementer training enables you to develop the necessary expertise to support an organization in establishing, implementing, managing and maintaining a Quality Management System (QMS) based on ISO 9001. During this training course, you will also gain a thorough understanding of the best practices of Quality Management Systems and consequently improve an organization’s customer satisfaction and overall performance and effectiveness.
After mastering all the necessary concepts of Quality Management Systems, you can sit for the exam and apply for a “PECB Certified ISO 9001 Lead Implementer” credential. By holding a PECB Lead Implementer Certificate, you will be able to demonstrate that you have the practical knowledge and professional capabilities to implement ISO 9001 in an organization.
Who should attend?
- Managers or consultants involved in Quality Management
- Expert advisors seeking to master the implementation of a Quality Management System
- Individuals responsible for maintaining conformance with QMS requirements
- QMS team members
General information
- Certification fees are included on the exam price
- Training material containing over 450 pages of information and practical examples will be distributed
- A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued
- In case of exam failure, you can retake the exam within 12 months for free
ISO 9001 and ISO 27001 – Interpretation and Internal Auditor
21 HoursISO 9001 and ISO 27001 are internationally recognized standards for quality and information security management systems, respectively.
This instructor-led, live training (online or onsite) is aimed at intermediate-level professionals who wish to interpret ISO 9001 and ISO 27001 standards and perform internal audits effectively.
By the end of this training, participants will be able to:
- Understand the principles and requirements of ISO 9001 and ISO 27001.
- Interpret the clauses and controls in real-world contexts.
- Plan and conduct internal audits aligned with ISO standards.
- Identify nonconformities and recommend corrective actions.
Format of the Course
- Interactive lecture and discussion.
- Simulated auditing exercises and case studies.
- Hands-on analysis of quality and security scenarios.
Course Customization Options
- To request a customized training for this course, please contact us to arrange.
Certified Lead Ethical Hacker
35 HoursWhy should you attend?
The Certified Lead Ethical Hacker training course enables you to develop the necessary expertise to perform information system penetration tests by applying recognized principles, procedures and penetration testing techniques, in order to identify potential threats on a computer network. During this training course, you will gain the knowledge and skills to manage a penetration testing project or team, as well as plan and perform internal and external pentests, in accordance with various standards such as the Penetration Testing Execution Standard (PTES) and the Open Source Security Testing Methodology Manual (OSSTMM). Moreover, you will also gain a thorough understanding on how to draft reports and countermeasure proposals. Additionally, through practical exercises, you will be able to master penetration testing techniques and acquire the skills needed to manage a pentest team, as well as customer communication and conflict resolution.
The Certified Lead Ethical Hacking training course provides a technical vision of information security through ethical hacking, using common techniques such as information gathering and vulnerability detection, both inside and outside of a business network.
The training is also compatible with the NICE (The National Initiative for Cybersecurity Education) Protect and Defend framework.
After mastering the necessary knowledge and skills in ethical hacking, you can take the exam and apply for the "PECB Certified Lead Ethical Hacker" credential. By holding a PECB Lead Ethical Hacker certificate, you will be able to demonstrate that you have acquired the practical skills for performing and managing penetration tests according to best practices.
Who should attend?
- Individuals interested in IT Security, and particularly in Ethical Hacking, to either learn more about the topic or to start a process of professional reorientation.
- Information security officers and professionals seeking to master ethical hacking and penetration testing techniques.
- Managers or consultants wishing to learn how to control the penetration testing process.
- Auditors wishing to perform and conduct professional penetration tests.
- Persons responsible for maintaining the security of information systems in an organization.
- Technical experts who want to learn how to prepare a pentest.
- Cybersecurity professionals and information security team members.
Problem Solving with Root Cause Analysis (RCA)
14 HoursThis instructor-led, live training in Poland (online or onsite) is aimed at intermediate-level professionals who wish to develop a systematic approach to identifying, analyzing, and resolving problems using RCA methodologies.
By the end of this training, participants will be able to:
- Understand essential concepts of RCA and continuous improvement cycles.
- Apply different RCA tools to identify the root cause of problems.
- Develop and implement effective problem-solving strategies.
- Integrate RCA into organizational improvement and prevention efforts.
Root Cause Analysis (RCA) for Internal Auditors
14 HoursThis instructor-led, live training in Poland (online or onsite) is aimed at intermediate-level internal auditors who wish to enhance their audit effectiveness by applying structured RCA techniques.
By the end of this training, participants will be able to:
- Understand RCA methodologies and their role in internal auditing.
- Identify and analyze the root causes of audit findings.
- Apply RCA tools such as the 5 Whys, Fishbone Diagram, and Failure Mode and Effects Analysis (FMEA).
- Develop corrective and preventive action plans based on RCA findings.
- Integrate RCA into the internal audit process to improve risk management.
Root Cause Analysis (RCA) with Operational Safety Focus
14 HoursThis instructor-led, live training (online or onsite) is aimed at intermediate-level safety professionals and operational managers who wish to enhance their ability to investigate incidents, identify systemic weaknesses, and design effective corrective and preventive actions.
 
                     
                    