ISO 37301 Compliance Management System Training Course
ISO 37301 is an international standard that outlines the requirements for establishing, developing, implementing, evaluating, maintaining, and improving an effective compliance management system (CMS).
This instructor-led live training (available online or onsite) is designed for beginner to intermediate professionals who wish to understand, implement, or audit a compliance management system based on ISO 37301.
By the end of this training, participants will be able to:
- Understand the structure, purpose, and scope of ISO 37301.
- Implement the key elements of a compliance management system (CMS).
- Identify compliance risks and opportunities across the organization.
- Integrate ISO 37301 CMS with existing governance, risk, or ISO systems.
Format of the Course
- Interactive lecture and discussion.
- Hands-on exercises and real-world case studies.
- Group activities and compliance scenario simulations.
Course Customization Options
- To request a customized training for this course, please contact us to arrange.
Course Outline
Introduction to ISO 37301 and Compliance Management
- Overview of ISO 37301 and its purpose
- Principles of compliance: integrity, accountability, transparency
- Difference between ISO 19600 and ISO 37301
Context of the Organization and Leadership
- Understanding the organization's external and internal context
- Top management responsibilities and leadership role
- Establishing a compliance policy and objectives
Planning and Support Functions
- Assessing compliance risks and setting mitigation strategies
- Competence, awareness, and communication requirements
- Documentation and resource requirements for CMS
Operational Controls and Compliance Processes
- Establishing operational procedures and responsibilities
- Outsourcing and third-party compliance considerations
- Documenting compliance obligations and controls
Monitoring, Evaluation, and Reporting
- Compliance performance measurement and KPIs
- Conducting internal audits and compliance assessments
- Compliance reporting and escalation processes
Management Review and Continuous Improvement
- Reviewing system performance and leadership input
- Addressing noncompliance and corrective actions
- Ensuring continual improvement of the CMS
Certification, Integration, and Future Readiness
- Steps for ISO 37301 certification and third-party audits
- Integration with ISO 37001, ISO 9001, or ISO 27001
- Emerging compliance trends and digital governance
Summary and Next Steps
Requirements
- An understanding of compliance and risk-related concepts
- Familiarity with management system standards
- Experience in regulatory, legal, or internal control functions
Audience
- Compliance officers and internal control managers
- Auditors, legal advisors, and risk professionals
- Senior managers and governance leaders seeking to ensure compliance integrity
Need help picking the right course?
southafrica@nobleprog.co.za or +27 (0)10 005 5793
ISO 37301 Compliance Management System Training Course - Enquiry
Testimonials (1)
Theory followed by practical examples and exercices. Job well done!
Vincenzo Delle Donne - Department of National Defence
Course - ISO 37301 Compliance Management System
Related Courses
PECB CISO
35 HoursBy attending the PECB CISO training course, you will acquire the essential expertise to oversee and manage information security. This includes ensuring the deployment of robust security measures, identifying and mitigating information security risks, and developing effective security strategies tailored to the organisation’s specific requirements.
ISO 13485 Foundation
14 HoursThis instructor-led, live training in Botswana (online or on-site) is designed for quality assurance beginners, regulatory compliance staff, medical device engineers, and any professionals involved in medical device manufacturing who wish to gain a foundational understanding of ISO 13485. This knowledge will help them implement and maintain a compliant quality management system and ensure regulatory compliance within their organisations.
By the end of this training, participants will be able to:
- Understand the structure, purpose, and requirements of ISO 13485:2016.
- Learn about the quality management principles specific to medical devices.
- Gain insights into key processes and documentation required for compliance.
- Understand the steps to implement and maintain an ISO 13485 quality management system (QMS).
ISO 22301 Foundation
14 HoursWhy should you attend?
This training course is designed to assist participants in understanding the fundamental concepts and principles of a business continuity management system (BCMS) based on ISO 22301. By attending this course, participants will gain insight into the structure and requirements of the standard, including the BCMS policy, top management’s commitment, internal audit, management review, and the continual improvement process.
Upon completing the training course, you may sit for the exam. If you successfully pass it, you can apply for the “PECB Certificate Holder in ISO 22301 Foundation” credential. A PECB Foundation certificate demonstrates that you possess knowledge of the fundamental concepts, principles, methodologies, requirements, framework, and management approach used in business continuity.
Who should attend?
- Individuals involved in business continuity
- Individuals seeking to gain knowledge about the main processes of business continuity management systems (BCMS)
- Individuals interested in pursuing a career in business continuity
Learning objectives
- Acknowledge the correlation between ISO 22301 and other standards and regulatory frameworks
- Understand the components and operation of a BCMS based on ISO 22301 and its principal processes
- Understand the concepts, approaches, methods, and techniques used for the implementation and management of a BCMS
Educational approach
- Lecture sessions include discussion questions and examples.
- The exercises include multiple-choice quizzes.
- Participants are encouraged to interact, engage in discussion, and complete quizzes.
- Quizzes are similar to the certificate exam.
ISO 22301 Introduction: Business Continuity Management System (BCMS)
7 HoursThe ISO 22301 introductory training course allows you to grasp the fundamental concepts of a Business Continuity Management System (BCMS).
By participating in this ISO 22301 Introduction course, you will appreciate the significance of a Business Continuity Management System and the advantages it offers to organisations, communities, and government entities.
Who is this for?
- Individuals with an interest in Business Continuity Management
- Those wishing to learn about the core processes of a Business Continuity Management System (BCMS)
Learning outcomes
- Grasp the concepts, approaches, methods, and techniques employed to implement a Business Continuity Management System
- Understand the foundational components of a Business Continuity Management System
ISO 22301 Lead Implementer
35 HoursUpon completing the training course, you may sit for the examination. If you successfully pass the exam, you can apply for the 'Certified ISO 22301 Lead Implementer' credential. This internationally recognised certificate demonstrates your professional capability and practical knowledge to implement a Business Continuity Management System (BCMS) in line with ISO 22301 requirements within an organisation.
Who should attend?
- Project managers and consultants involved in business continuity
- Expert advisors seeking to master the implementation of the business continuity management system
- Individuals responsible for maintaining conformity with BCMS requirements within an organisation
- Members of the BCMS team
Learning objectives
- Gain a comprehensive understanding of the concepts, approaches, methods, and techniques used for the implementation and effective management of a BCMS
- Learn how to interpret and implement the requirements of ISO 22301 within the specific context of an organisation
- Understand the operation of the business continuity management system and its processes based on ISO 22301
- Acquire the necessary knowledge to support an organisation in effectively planning, implementing, managing, monitoring, and continually improving a BCMS
Educational approach
- This training course is based on theory, implementation best practices, and ISO 22301 requirements useful for the implementation of a BCMS.
- Lecture sessions are illustrated with practical exercises based on a case study which includes role-playing and discussions.
- Participants are encouraged to interact and engage in discussions and exercises.
- The exercises are similar to the certification exam.
General Information
- Certification fees are included in the exam price. Upon completion of the course, you will be able to book the exam.
- Participants will be provided with training material containing over 450 pages of explanatory information and practical examples.
- An Attendance Record worth 31 CPD (Continuing Professional Development) credits will be issued to participants who have attended the training course.
- In the event that candidates fail the exam, they may retake it within 12 months of the initial attempt at no additional cost.
ISO 27001:2023 Internal Auditor of the Information Security Management System
35 HoursObjectives
- Acquire comprehensive knowledge of ISO 27001:2023
- Understand how to conduct audits in alignment with the standard
- Familiarise yourself with established best practices
ISO 27001:2023 Lead Auditor of the Information Security Management System
35 HoursObjectives
- Acquiring comprehensive knowledge of ISO 27001:2023
- Understanding the procedures for conducting audits in compliance with the standard
- Learning industry best practices
ISO 27001:2023 Requirements
14 HoursObjectives
- Gaining knowledge about changes to ISO 27001 2023 edition
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
PECB ISO/IEC 27001 Foundation
14 HoursWhy should you attend?
The ISO/IEC 27001 Foundation training equips you with the essential knowledge to implement and manage an Information Security Management System (ISMS) in accordance with the ISO/IEC 27001 standard. Throughout this course, you will gain a comprehensive understanding of the various ISMS components, such as ISMS policies, procedures, performance metrics, management commitment, internal audits, management reviews, and continual improvement processes.
Upon completing this course, you will be eligible to sit for the examination and apply for the “PECB Certified ISO/IEC 27001 Foundation” certification. Earning a PECB Foundation Certificate demonstrates that you have grasped the fundamental methodologies, requirements, framework, and management approaches associated with the standard.
Who should attend?
- Professionals involved in Information Security Management
- Individuals wishing to acquire knowledge about the core processes of Information Security Management Systems (ISMS)
- Those interested in pursuing a career in Information Security Management
Educational approach
- Lecture sessions are reinforced with practical questions and examples
- Practical exercises incorporate examples and group discussions
- Practice tests mirror the format of the actual Certification Exam
ISO 27002 Lead Manager
35 HoursThe ISO/IEC 27002 Lead Manager training equips you with the essential expertise and knowledge to assist an organisation in implementing and managing Information Security controls as outlined in ISO/IEC 27002.
Upon completing this course, you may sit for the examination and apply for the "PECB Certified ISO/IEC 27002 Lead Manager" credential. A PECB Lead Manager Certification confirms that you have mastered the principles and techniques for implementing and managing Information Security Controls in line with ISO/IEC 27002.
Who should attend?
- Managers or consultants aiming to implement an Information Security Management System (ISMS) based on ISO/IEC 27001 and ISO/IEC 27002
- Project managers or consultants seeking to master the ISMS implementation process
- Individuals responsible for information security, compliance, risk, and governance within an organisation
- Members of information security teams
- Expert advisors in information technology
- Information Security officers
- Privacy officers
- IT professionals
- CTOs, CIOs and CISOs
Learning objectives
- Master the implementation of Information Security controls by adhering to the framework and principles of ISO/IEC 27002
- Gain a comprehensive understanding of the concepts, approaches, standards, methods, and techniques required for the effective implementation and management of Information Security controls
- Comprehend the relationships between the components of Information Security controls, including responsibility, strategy, acquisition, performance, conformance, and human behaviour
- Understand the significance of information security for the organisation's strategy
- Master the implementation of information security management processes
- Master the formulation and implementation of security requirements and objectives
Educational approach
- This training is grounded in both theory and practice
- Sessions feature lectures illustrated with examples from real-life cases
- Practical exercises based on case studies
- Review exercises to aid exam preparation
- Practice tests similar to the certification examination
General Information
- Certification fees are included in the exam price
- Training material comprising over 500 pages of information and practical examples will be provided to participants
- A participation certificate awarding 31 CPD (Continuing Professional Development) credits will be issued to participants
- In the event of an exam failure, you may retake the exam within 12 months at no additional cost
PECB ISO/IEC 27001 Lead Implementer
35 HoursInformation security threats and attacks are escalating and becoming more sophisticated. The most effective defence against these risks is the proper implementation and management of information security controls and best practices. Furthermore, information security is a critical expectation and requirement for customers, legislators, and other interested parties.
This training course is designed to equip participants with the skills to implement an Information Security Management System (ISMS) in accordance with ISO/IEC 27001. It aims to provide a comprehensive understanding of ISMS best practices and establish a framework for its ongoing management and improvement.
Upon completing the training course, you will be eligible to take the exam. If you successfully pass, you can apply for the “PECB Certified ISO/IEC 27001 Lead Implementer” credential, which demonstrates your ability and practical knowledge to implement an ISMS based on the requirements of ISO/IEC 27001.
Who Can Attend?
- Project managers and consultants involved in and concerned with the implementation of an ISMS
- Expert advisors seeking to master the implementation of an ISMS
- Individuals responsible for ensuring conformity to information security requirements within an organization
- Members of an ISMS implementation team
General information
- Certification fees are included in the exam price
- Training material containing over 450 pages of information and practical examples will be distributed
- A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued
- In case of exam failure, you can retake the exam within 12 months free of charge
Educational approach
- This training course contains essay-type exercises, multiple-choice quizzes, examples, and best practices used in the implementation of an ISMS.
- The participants are encouraged to communicate with each other and engage in discussions when completing quizzes and exercises.
- The exercises are based on a case study.
- The structure of the quizzes is similar to that of the certification exam.
Learning objectives
This training course will help you:
- Gain a comprehensive understanding of the concepts, approaches, methods, and techniques used for the implementation and effective management of an ISMS
- Acknowledge the correlation between ISO/IEC 27001, ISO/IEC 27002, and other standards and regulatory frameworks
- Understand the operation of an information security management system and its processes based on ISO/IEC 27001
- Learn how to interpret and implement the requirements of ISO/IEC 27001 in the specific context of an organization
- Acquire the necessary knowledge to support an organization in effectively planning, implementing, managing, monitoring, and maintaining an ISMS
ISO 9001 and ISO 27001 – Interpretation and Internal Auditor
21 HoursISO 9001 and ISO 27001 are internationally recognized standards for quality and information security management systems, respectively.
This instructor-led, live training (online or onsite) is aimed at intermediate-level professionals who wish to interpret ISO 9001 and ISO 27001 standards and perform internal audits effectively.
By the end of this training, participants will be able to:
- Grasp the principles and requirements of ISO 9001 and ISO 27001.
- Interpret the clauses and controls in real-world contexts.
- Plan and conduct internal audits aligned with ISO standards.
- Identify nonconformities and recommend corrective actions.
Format of the Course
- Interactive lecture and discussion.
- Simulated auditing exercises and case studies.
- Hands-on analysis of quality and security scenarios.
Course Customization Options
- To request a customized training for this course, please contact us to arrange.
ISO/IEC 27001 Lead Auditor (certification course)
35 HoursWho is this course for?
- Auditors aiming to conduct and lead information security management system (ISMS) audits
- Managers or consultants looking to gain mastery over the ISMS audit process
- Personnel tasked with ensuring organisational conformity to ISMS requirements
- Technical specialists preparing to perform information security management system audits
- Expert advisors specialising in information security management
Learning objectives
Upon completion of this training course, participants will be capable of:
- Articulating the core concepts and principles of an information security management system (ISMS) aligned with ISO/IEC 27001
- Interpreting the ISO/IEC 27001 requirements for an ISMS from an auditor’s viewpoint
- Assessing ISMS conformity to ISO/IEC 27001 requirements, grounded in fundamental audit concepts and principles
- Planning, executing, and concluding an ISO/IEC 27001 compliance audit, adhering to ISO/IEC 17021-1 requirements, ISO 19011 guidelines, and established auditing best practices
- Managing an ISO/IEC 27001 audit programme
Educational approach
- This training integrates theoretical knowledge with best practices utilised in ISMS audits
- Lecture sessions are supplemented with illustrative examples drawn from case studies
- Practical exercises utilise a case study approach, incorporating role-playing and group discussions
- Practice tests mirror the format of the Certification Exam
PECB ISO 27001:2022 Transition
14 HoursThis instructor-led, live training in Botswana (available online or onsite) is targeted at intermediate to expert-level IT professionals seeking to advance their skills and qualifications in information security or related areas.
By the end of this training, participants will be able to:
- Understand the differences between ISO/IEC 27001:2013 and ISO/IEC 27001:2022.
- Gain the knowledge and skills to plan and implement the transition from the 2013 to the 2022 version of the standard efficiently.
- Apply the knowledge in real-world scenarios, facilitating a smooth transition in their respective organizations.