PECB ISO/IEC 27005 Foundation Training Course
This training course concentrates on the information security risk management process outlined in ISO/IEC 27005, as well as the standard's structural framework.
Participants will receive a comprehensive overview of the ISO/IEC 27005 guidelines for managing information security risks. Key topics include establishing context, conducting risk assessments, implementing risk treatment plans, facilitating communication and consultation, maintaining records and reporting, and performing monitoring and reviews.
Upon completing the training, you may register for the Foundation Exam. If you pass the examination, you can apply for a "PECB Certificate Holder in ISO/IEC 27005 Foundation" credential.
Foundation Exam (additional fee): Duration: 1 hour, Questions: 40, Format: Online
Earning a PECB Foundation certificate demonstrates your proficiency in the fundamental concepts, principles, methodologies, processes, and management approaches essential to information security risk management.
This course is available as onsite live training in Czech Republic or online live training.Course Outline
Introduction to ISO/IEC 27005 and implementation of a risk management program
- Course objectives and structure
- Standard and regulatory framework
- Concepts and definitions of risk
- Risk management programme
- Context establishment
Risk assessment, risk treatment, and risk communication and consultation based on ISO/IEC 27005
- Risk identification
- Risk analysis
- Risk evaluation
- Risk assessment with a quantitative method
- Risk treatment
- Information security risk acceptance
Open Training Courses require 5+ participants.
PECB ISO/IEC 27005 Foundation Training Course - Booking
PECB ISO/IEC 27005 Foundation Training Course - Enquiry
Testimonials (1)
The fact that all the standard was reviewed and discussed with some examples, when needed and required.
Ioana
Course - ISO/IEC 27005 Information Security Risk Management
Upcoming Courses
Related Courses
ISO 22301 Introduction: Business Continuity Management System (BCMS)
7 HoursThe ISO 22301 primer course provides a clear understanding of the foundational principles behind a Business Continuity Management System (BCMS).
By participating in this ISO 22301 primer, you will gain insight into the significance of a BCMS and the advantages it offers to businesses, society, and public sector organizations.
Target Audience:
- Professionals with an interest in Business Continuity Management
- Individuals looking to acquire knowledge regarding the core processes of a Business Continuity Management System (BCMS)
Key Learning Outcomes:
- Comprehend the concepts, strategies, methodologies, and techniques essential for implementing a Business Continuity Management System
- Identify the fundamental components of a Business Continuity Management System
ISO 22301 Lead Implementer
35 HoursUpon completing the training course, you may take the exam. If you pass successfully, you can apply for the 'Certified ISO 22301 Lead Implementer' credential. This internationally recognized certificate validates your professional capabilities and practical knowledge to implement a Business Continuity Management System (BCMS) in accordance with ISO 22301 requirements within an organization.
Who should attend?
- Project managers and consultants involved in business continuity
- Expert advisors seeking to master the implementation of the business continuity management system
- Individuals responsible for maintaining conformity with BCMS requirements within an organization
- Members of the BCMS team
Learning objectives
- Gain a comprehensive understanding of the concepts, approaches, methods, and techniques used for the implementation and effective management of a BCMS
- Learn how to interpret and implement the requirements of ISO 22301 within the specific context of an organization
- Understand the operation of the business continuity management system and its processes based on ISO 22301
- Acquire the necessary knowledge to support an organization in effectively planning, implementing, managing, monitoring, and continually improving a BCMS
Educational approach
- This training course is based on theory, implementation best practices, and ISO 22301 requirements useful for the implementation of a BCMS.
- Lecture sessions are illustrated with practical exercises based on a case study which includes role-playing and discussions.
- The participants are encouraged to intercommunicate and engage in discussions and exercises.
- The exercises are similar to the certification exam.
General Information
- Certification fees are included in the exam price. After completion of the course you will be able to book the exam.
- Participants will be provided with the training material containing over 450 pages of explanatory information and practical examples.
- An Attendance Record worth 31 CPD (Continuing Professional Development) credits will be issued to participants who have attended the training course.
- In case candidates fail the exam, they can retake the exam within 12 months following the initial exam for free.
ISO 27002 Lead Manager
35 HoursThe PECB ISO/IEC 27002 Lead Manager training program equips you with the essential expertise and knowledge required to assist an organization in implementing and managing Information Security controls in accordance with ISO/IEC 27002.
Upon successful completion of this course, you will be eligible to take the exam and apply for the "PECB Certified ISO/IEC 27002 Lead Manager" credential. This PECB Lead Manager Certification validates your mastery of the principles and techniques necessary for the implementation and management of Information Security Controls based on ISO/IEC 27002.
Who should attend?
- Managers or consultants aiming to implement an Information Security Management System (ISMS) based on ISO/IEC 27001 and ISO/IEC 27002
- Project managers or consultants seeking to master the implementation process of an Information Security Management System
- Individuals responsible for information security, compliance, risk, and governance within an organization
- Members of information security teams
- Expert advisors in information technology
- Information Security officers
- Privacy officers
- IT professionals
- CTOs, CIOs, and CISOs
Learning objectives
- Master the implementation of Information Security controls by adhering to the framework and principles of ISO/IEC 27002
- Gain a comprehensive understanding of the concepts, approaches, standards, methods, and techniques required for the effective implementation and management of Information Security controls
- Comprehend the relationship between the components of Information Security controls, including responsibility, strategy, acquisition, performance, conformance, and human behavior
- Understand the importance of information security for organizational strategy
- Master the implementation of information security management processes
- Master the formulation and implementation of security requirements and objectives
Educational approach
- This training integrates both theory and practice
- Lecture sessions illustrated with examples based on real-world cases
- Practical exercises based on case studies
- Review exercises designed to assist with exam preparation
- Practice tests similar to the certification exam
General Information
- Certification fees are included in the exam price
- Training material containing over 500 pages of information and practical examples will be distributed to participants
- A participation certificate granting 31 CPD (Continuing Professional Development) credits will be issued to participants
- In the event of an exam failure, you may retake the exam within 12 months free of charge
ISO 28000 Lead Implementer
35 HoursThe ISO 28000 Lead Implementer training program equips you with the necessary expertise to assist an organization in establishing, implementing, managing, and maintaining a Supply Chain Security Management System (SCSMS) in accordance with ISO 28000. Throughout this course, you will gain a comprehensive understanding of best practices for SCSMS, enabling you to enhance efficiency in managing potential security risks and their impacts within the organization’s supply chain.
Upon mastering the essential concepts of Supply Chain Security Management Systems, you will be eligible to sit for the exam and apply for the “PECB Certified ISO 28000 Lead Implementer” certification. Holding a PECB Lead Implementer Certificate demonstrates that you possess the practical knowledge and professional capabilities required to implement ISO 28000 within an organization.
Who should attend?
- Managers or consultants involved in Supply Chain Security Management
- Expert advisors aiming to master the implementation of a Supply Chain Security Management System
- Individuals responsible for ensuring conformance with SCSMS requirements
- Members of the SCSMS team
Learning objectives
- Understand the correlation between ISO 28000 and other standards and regulatory frameworks
- Master the concepts, approaches, methods, and techniques used for implementing and effectively managing an SCSMS
- Learn how to interpret ISO 28000 requirements within the specific context of an organization
- Learn how to support an organization in planning, implementing, managing, monitoring, and maintaining an SCSMS
- Acquire the expertise to advise organizations on implementing best practices for Supply Chain Security Management Systems
Educational approach
- This training combines theoretical knowledge with best practices used in SCSMS implementation
- Lecture sessions are enriched with examples derived from case studies
- Practical exercises utilize a case study approach, incorporating role-playing and group discussions
- Practice tests mirror the format of the Certification Exam
General Information
- Certification fees are included in the exam price
- Training material comprising over 450 pages of information and practical examples will be distributed
- A participation certificate awarding 31 CPD (Continuing Professional Development) credits will be issued
- In the event of an exam failure, you may retake the exam within 12 months at no additional cost
ISO 37001 Anti-Bribery Management System
14 HoursISO 37001:2025 serves as an international standard for Anti-Bribery Management Systems (ABMS), offering requirements and guidance to help organizations of any size or industry prevent, detect, and address bribery risks.
This instructor-led live training, available online or onsite, targets beginner to intermediate-level professionals aiming to grasp and support the implementation or auditing of an anti-bribery management system in line with ISO 37001:2025.
Upon completing this training, participants will be equipped to:
- Comprehend the structure and objectives of ISO 37001:2025.
- Implement anti-bribery requirements within practical organizational settings.
- Create and monitor effective internal controls and reporting mechanisms.
- Assist organizations in achieving regulatory compliance and upholding ethical integrity.
Course Format
- Interactive lectures and discussions.
- Real-world case studies and examples.
- Scenario-based exercises and collaborative group work.
Course Customization Options
- For customized training arrangements, please get in touch with us.
ISO 37301 Compliance Management System
14 HoursISO 37301 is an international standard that outlines the requirements for establishing, developing, implementing, evaluating, maintaining, and improving an effective compliance management system (CMS).
This instructor-led, live training (available online or onsite) is designed for beginner to intermediate-level professionals who want to understand, implement, or audit a compliance management system based on ISO 37301.
By the end of this training, participants will be able to:
- Understand the structure, purpose, and scope of ISO 37301.
- Implement the key elements of a compliance management system (CMS).
- Identify compliance risks and opportunities across the organization.
- Integrate ISO 37301 CMS with existing governance, risk, or ISO systems.
Format of the Course
- Interactive lecture and discussion.
- Hands-on exercises and real-world case studies.
- Group activities and compliance scenario simulations.
Course Customization Options
- To request a customized training for this course, please contact us to arrange.
ISO/IEC 42001 Foundation
14 HoursThe ISO/IEC 42001 Foundation training program provides you with the essential principles required to establish and manage an Artificial Intelligence Management System (AIMS) in compliance with ISO/IEC 42001. The course is designed to deliver a comprehensive understanding, laying a robust groundwork for advanced expertise in AIMS.
PECB ISO/IEC 42001 Lead Auditor
35 HoursThe ISO/IEC 42001 Lead Auditor training course equips you with the essential expertise to audit Artificial Intelligence Management Systems (AIMS). You will achieve this by applying widely accepted audit principles, procedures, and techniques.
PECB ISO 9001 Foundation
14 HoursThe ISO 9001 Foundation training empowers you with the essential knowledge to implement and manage a Quality Management System (QMS) in accordance with ISO 9001 standards. Throughout this course, you will gain a clear understanding of the various components of a QMS, including QMS policy, procedures, performance metrics, management commitment, internal audits, management reviews, and continual improvement processes.
Upon finishing the course, you will be eligible to take the exam and apply for the "PECB Certified ISO 9001 Foundation" certification. Earning a PECB Foundation Certificate demonstrates your comprehensive grasp of the fundamental methodologies, requirements, framework, and management approaches associated with ISO 9001.
Who should attend?
- Professionals currently involved in Quality Management
- Individuals aiming to acquire knowledge about the core processes of Quality Management Systems (QMS)
- Aspiring professionals interested in building a career in Quality Management
The "PECB Certified ISO 9001 Foundation" exam fully complies with the requirements of the PECB Examination and Certification Programme (ECP). The assessment covers the following competency domains: h Domain 1: Fundamental principles and concepts of a Quality Management System (QMS) h Domain 2: Quality Management System (QMS)
After successfully passing the exam, you can apply for the "PECB Certified ISO 9001 Foundation" credential.
General Information
Certification fees are included in the exam price
Comprehensive training materials, including over 200 pages of information and practical examples, will be provided
A participation certificate granting 14 CPD (Continuing Professional Development) credits will be issued
In the event of an exam failure, you are entitled to retake the exam within 12 months at no additional cost
PECB ISO 9001 Lead Auditor
35 HoursThe ISO 9001 Lead Auditor training is designed to help you develop the necessary expertise to conduct Quality Management System (QMS) audits by applying widely recognized audit principles, procedures, and techniques. Throughout this course, you will gain the knowledge and skills required to plan and execute both internal and external audits in compliance with ISO 19011, as well as manage the certification process according to ISO/IEC 17021-1.
Through practical exercises, you will master audit techniques and become competent in managing audit programs, leading audit teams, communicating with clients, and resolving conflicts.
Once you have acquired the necessary expertise to perform these audits, you can take the exam and apply for the "PECB Certified ISO 9001 Lead Auditor" credential. Holding a PECB Lead Auditor Certificate demonstrates that you possess the capabilities and competencies to audit organizations based on industry best practices.
Who should attend?
- Auditors who wish to perform and lead Quality Management System (QMS) certification audits
- Managers or consultants aiming to master the Quality Management System audit process
- Individuals responsible for ensuring conformance with QMS requirements
- Technical experts preparing for a Quality Management System audit
- Expert advisors in the field of Quality Management
General information
- Certification fees are included in the exam price
- Training materials comprising over 450 pages of information and practical examples will be provided
- A participation certificate granting 31 CPD (Continuing Professional Development) credits will be issued
- In the event of an exam failure, you may retake the exam free of charge within 12 months
ISO 9001 and ISO 27001 – Interpretation and Internal Auditor
21 HoursISO 9001 and ISO 27001 are globally recognized benchmarks for quality management and information security management systems, respectively.
This instructor-led live training, available either online or in-person, targets intermediate-level professionals aiming to master the interpretation of ISO 9001 and ISO 27001 standards and conduct effective internal audits.
Upon completion of this training, participants will be capable of:
- Grasping the core principles and requirements of both ISO 9001 and ISO 27001.
- Interpreting specific clauses and controls within practical business contexts.
- Planning and executing internal audits that align with ISO standards.
- Identifying nonconformities and proposing appropriate corrective actions.
Course Format
- Engaging lectures paired with interactive discussions.
- Simulated auditing exercises and real-world case studies.
- Practical analysis of quality and security scenarios.
Customization Options
- To arrange a tailored version of this course, please reach out to us for customization details.
Problem Solving with Root Cause Analysis (RCA)
14 HoursThis instructor-led, live training in Czech Republic (online or onsite) is aimed at intermediate-level professionals who wish to develop a systematic approach to identifying, analyzing, and resolving problems using RCA methodologies.
By the end of this training, participants will be able to:
- Understand essential concepts of RCA and continuous improvement cycles.
- Apply different RCA tools to identify the root cause of problems.
- Develop and implement effective problem-solving strategies.
- Integrate RCA into organizational improvement and prevention efforts.
Root Cause Analysis (RCA) for Internal Audit
7 HoursThe primary objective of this program is to shift the audit process from a reactive approach focused merely on "identifying" issues to a proactive strategy centered on "preventing" them. By mastering Root Cause Analysis, the Internal Audit team can specifically target the elimination of recurring findings. This ensures that once a weakness is identified, the recommendations provide a permanent solution, thereby safeguarding the organization's operational efficiency and financial integrity.
Failing to implement structured RCA creates a high-risk environment:
- Financial Erosion: Unresolved root causes in financial processes lead to cumulative leakages that increase over time.
- Resource Wastage: Auditors spend 40% more time re-auditing the same failed controls instead of focusing on new strategic risks.
- Diminished Authority: Repeatedly reporting the same issues weakens the Audit Division's influence with senior management and auditees.
Root Cause Analysis (RCA) for Internal Auditors
14 HoursThis instructor-led, live training in Czech Republic (online or onsite) targets intermediate-level internal auditors aiming to enhance their audit efficacy through structured RCA techniques.
By the conclusion of this training, participants will be able to:
- Understand RCA methodologies and their role in internal auditing.
- Identify and analyze the root causes of audit findings.
- Apply RCA tools such as the 5 Whys, Fishbone Diagram, and Failure Mode and Effects Analysis (FMEA).
- Develop corrective and preventive action plans based on RCA findings.
- Integrate RCA into the internal audit process to improve risk management.
Root Cause Analysis (RCA) with Operational Safety Focus
14 HoursThis instructor-led, live training (online or onsite) is aimed at intermediate-level safety professionals and operational managers who wish to enhance their ability to investigate incidents, identify systemic weaknesses, and design effective corrective and preventive actions.