We’ve detected that you are using an outdated browser. This will prevent you from accessing certain features. Update browser

want to know more about Security Management Systems (ISMS)?

Introduction to ISO 27001:2013 and ISO 27001:2013 Internal Auditor.

Contact us about training
Book now View dates & locations

Prices from


Course Type

  • In-house
  • Virtual
  • Public

Course length

You need this course if...

  • You want to know more about Information Security Management Systems (ISMS)
  • Your organisation needs to conform to ISO/IEC 27001
  • You need to perform internal audits of your Information Security Management (ISMS)
  • You are an experienced Auditor extending your role into information security
  • You are an Information Security Practitioner looking for audit training

You will learn...

  • The benefits and purpose of an ISMS
  • The purpose and intent of both standards ISO/IEC 27001 and ISO/IEC 27002
  • The process involved in establishing, implementing, operating, monitoring, reviewing and improving an ISMS
  • To develop an information security infrastructure
  • The requirements needed for certification to ISO/IEC 27001
  • An overview of the structure and content of ISO/IEC 27001
  • The contribution internal ISMS audits can make to the effectiveness of your management system
  • How to establish an effective internal audit system which conforms with ISO/IEC 27001
  • The roles and responsibilities of an internal ISMS auditor
  • How to plan your audits by developing effective checklists
  • How to verify that current practice in your organisation conforms with defined requirements
  • That auditing for conformity can improve the stability and robustness of management systems
  • To gather objective evidence through observation, interviewing and sampling of documentation
  • To report findings accurately
  • What corrective action is and who is responsible for taking action
  • How to follow up and verify the effectiveness of corrective action taken

You will need…

  • To be familiar with the types of data held by your organisation and the methods used to store and process this data
  • To be familiar with the types of data held by your organisation and the methods used to store and process this data
  • A basic understanding of management system frameworks
  • Ideally to have taken our Introduction to ISO 27001:2013 Requirements course

Your future development

  • ISO 27001 Internal Auditor
  • ISO 27001 Auditor/Lead Auditor
  • Tutored Audits (coached live audit at your company)
  • See our Business Improvement courses
Book now View dates & locations

Prices from


Course Type

  • In-house
  • Virtual
  • Public

Course length

In-house

If you are looking for a course for four or more people, you may find our in-house option more cost-effective. Contact the team for a quote.

Contact us about training