Given the number of
practical exercises, the number of training participants may be limited.Back to Top»»
Examination and Certification
The
“ISO 27001 Lead Implementer” examination lasts 3 (three) hours and fully meets the
requirements of the PECB Examination Certification Programme (ECP).
The exam covers the following competence domains:
Domain 1: Fundamental principles and concepts of information security
Domain 2: Information Security Controls Best Practices, based on ISO 27002
Domain 3: Planning an ISO 27001-conformant ISMS
Domain 4: Implementing an ISO 27001-conformant ISMS
Domain 5: Performance evaluation, monitoring and measurement of an ISO
27001-conformant ISMS
Domain 6: Continuous improvement of an ISO 27001-conformant ISMS
Domain 7: Preparing for an ISO 27001 ISMS certification audit
After successfully completing the examination, participants
may apply for an ISO 27001 Provisional Implementer, ISO 27001 Implementer or ISO 27001 Lead Implementer
credential, depending on their level of professional experience. Certification
will be granted to participants who successfully pass the examination and comply
with all other requirements related to this credential.
Back to Top»»
Certification Experience
Requirements
The table below shows the professional experience required for each of the ISO
27001 Implementer Certifications.
|
Course |
Professional Experience |
ISMS-specific Experience |
|
Certified ISO 27001 Provisional Implementer |
None |
None |
|
Certified ISO 27001 Implementer |
2 years total;
1 year in information security |
200 hours of implementation |
|
Certified ISO 27001 Lead Implementer |
5 years total;
2 years in information security |
300 hours of implementation |
For Certification purposes, the following implementation types constitute valid
implementation experience:
-
Internal implementation
-
External/consulting implementation
-
Partial implementation
To be considered valid, implementation activities should follow best
implementation practices and include most of the following activities:
-
Drafting an ISMS
implementation business case
-
Managing an ISMS
implementation project
-
Implementing information
security controls
-
Managing information security
controls
-
Implementing metrics
-
Implementing corrective or
preventive action
-
Performing a management review
-
Performing a risk assessment
-
Managing incidents
-
Managing an information
security team
In addition, all applicants for Certification will be required to sign and to uphold PECB's and should also make themselves aware of the applicable
.
Further details may be found here:
.
Back to Top»»
General Information
Each participant will receive:
-
a student manual containing over 450 pages of information and practical
examples
-
a 31 CPE (Continuing
Professional Education) participation certificate
All examination and certification charges
are included in the course
fee.
Back to Top»»