ISO/IEC 27001 – ISMS Lead Auditor

  • Overview: This certification equips professionals with the knowledge and skills to perform audits of Information Security Management Systems (ISMS) against ISO 27001.
  • Target Audiences: Information security auditors, managers, and consultants.
  • Prerequisites: Familiarity with ISO 27001 standards and prior experience in ISMS is recommended.
  • Course Content:
    • Audit Principles and Practices:
      • Understanding the principles of auditing as per ISO 19011.
      • Roles and responsibilities of an ISMS lead auditor.
      • Developing audit plans and checklists.
      • Conducting opening and closing meetings.
    • ISMS Audit Process:
      • Performing ISO 27001 audits in accordance with international standards.
      • Gathering audit evidence through interviews, observations, and documentation review.
      • Assessing compliance with ISO 27001 requirements.
      • Identifying and reporting non-conformities.
    • Audit Reporting and Follow-up:
      • Preparing clear and concise audit reports.
      • Communicating audit findings to management and stakeholders.
      • Following up on corrective actions and closing non-conformities.
      • Continuous improvement of the audit process.
    • Managing an Audit Program:
      • Establishing and managing an ISMS audit program.
      • Risk-based auditing and prioritizing audit activities.
      • Monitoring the effectiveness of the audit program.
      • Integrating the audit program with other management system audits.
  • Exam Details:
    • 80 multiple-choice questions
    • 2-hour duration
    • Passing score: 70%
  • Price: Approximately $900 USD for the exam; training costs typically range from $2,000 to $3,500 USD.