PECB ISO 27001:2022 Transition Training Course
ISO 27001:2022 serves as a benchmark for information security management systems, providing a comprehensive set of criteria that enables organisations and professionals to achieve compliance certification. This standard supports the establishment, deployment, maintenance, and continual improvement of an information security management system (ISMS).
This instructor-led, live training—available either online or at a physical location—is designed for IT professionals at intermediate to advanced levels who wish to upgrade their expertise and credentials in information security or allied domains.
Upon completion of this training, participants will be equipped to:
- Identify the key distinctions between ISO/IEC 27001:2013 and ISO/IEC 27001:2022.
- Acquire the necessary knowledge and skills to efficiently plan and execute the transition from the 2013 version to the 2022 standard.
- Apply this knowledge in practical scenarios to ensure a seamless transition within their respective organisations.
Course Format
- Interactive lectures and discussions.
- Extensive exercises and practical practice.
- Hands-on implementation within a live-lab environment.
Customisation Options
- To arrange customised training for this course, please contact us to discuss your requirements.
Course Outline
Introduction
- Review of ISO/IEC 27001:2013.
- Overview of ISO/IEC 27001:2022.
- Importance of Information Security Management Systems (ISMS).
Understanding the Changes
- ISO/IEC 27001:2013 vs. ISO/IEC 27001:2022.
- Major changes in Annex A.
- Updates to the clauses.
- Implications of the title change.
New Concepts and Elements in ISO/IEC 27001:2022
- Introduction to new concepts.
- Risk management enhancements.
- Enhanced focus on leadership and commitment.
- Compliance and continuous improvement aspects.
Transitioning to ISO/IEC 27001:2022
- Key steps for transitioning to the new standard.
- Identifying areas of change.
- Planning and implementing changes.
- Transition timeline and deadlines.
Auditing and Certification Process
- Changes in the auditing process for the 2022 standard.
- Certification requirements and procedures.
- Transition exam overview.
- Compliance with PECB's code of ethics standards ISO/IEC 17024.
Taking the Examination
- Registration procedures.
- Tips and tricks for passing the exam.
Summary and Next Steps
Requirements
- A fundamental understanding of the principles and concepts underpinning the ISO/IEC 27001:2013 standard.
Target Audience
- Information security managers.
- ISO/IEC 27001 auditors.
- IT professionals.
Need help picking the right course?
southafrica@nobleprog.co.za or +27 (0)10 005 5793
PECB ISO 27001:2022 Transition Training Course - Enquiry
Testimonials (2)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
Speed of response and communication
Bader Bin rubayan - Lean Business Services
Course - ISO/IEC 27001 Lead Implementer
Related Courses
AML OFFICER MASTERCLASS
21 HoursCombating money laundering is a priority on the global stage. Compliance officers, AML Officers, MLROs, KYC analysts, auditors, and managers must understand how to ensure adherence to Subsidiary 373.01, the Prevention of Money Laundering and Funding of Terrorism Regulations (PMLFTR).
Under the PMLFTR, all Subject Persons, including those within the regulated financial services sector, are mandated to appoint a Money Laundering Reporting Officer (MLRO).
This practical course provides you with the knowledge and essential guidance on how to approach AML compliance within your organisation, with specific attention to the regulatory environment in Malta.
Compliance for Payment Services in Japan
7 HoursThis instructor-led, live training in Botswana (online or onsite) is designed for compliance professionals in the payment services sector who aim to establish, implement, and enforce a robust compliance programme within their organisation.
Upon completion of this training, participants will be able to:
- Grasp the regulatory requirements set by government authorities for payment service providers.
- Develop the internal policies and procedures necessary to meet regulatory obligations.
- Implement a compliance programme that aligns with applicable laws.
- Ensure that all corporate processes and procedures adhere to the established compliance programme.
- Safeguard the business's reputation while protecting it against legal action.
Cybersecurity Governance, Risk & Compliance (GRC)
14 HoursThis instructor-led, live training in Botswana (online or onsite) is aimed at intermediate-level cybersecurity professionals who wish to enhance their understanding of GRC frameworks and apply them to secure and compliant business operations.
By the end of this training, participants will be able to:
- Understand the key components of cybersecurity governance, risk, and compliance.
- Conduct risk assessments and develop risk mitigation strategies.
- Implement compliance measures and manage regulatory requirements.
- Develop and enforce security policies and procedures.
Accessibility by Design (Compliance with EU ACT)
21 HoursThis course offers an expert introduction to the newly enacted Accessibility Law, equipping developers with the practical skills necessary to design, develop, and maintain fully accessible applications. Beginning with a contextual discussion on the law's importance and implications, the course quickly transitions to hands-on coding practices, tools, and testing techniques to ensure compliance and inclusivity for users with disabilities.
HiTrust Common Security Framework Compliance
14 HoursThis instructor-led, live training in Botswana (online or on-site) is targeted at developers and administrators who wish to produce software and products that are HiTRUST compliant.
By the end of this training, participants will be able to:
- Understand the key concepts of the HiTrust CSF (Common Security Framework).
- Identify the HITRUST CSF administrative and security control domains.
- Learn about the different types of HiTrust assessments and scoring.
- Understand the certification process and requirements for HiTrust compliance.
- Know the best practices and tips for adopting the HiTrust approach.
ISO 27001:2023 Internal Auditor of the Information Security Management System
35 HoursObjectives
- Acquire comprehensive knowledge of ISO 27001:2023
- Understand how to conduct audits in alignment with the standard
- Familiarise yourself with established best practices
ISO 27001:2023 Lead Auditor of the Information Security Management System
35 HoursObjectives
- Acquiring comprehensive knowledge of ISO 27001:2023
- Understanding the procedures for conducting audits in compliance with the standard
- Learning industry best practices
ISO 27001:2023 Requirements
14 HoursObjectives
- Gaining knowledge about changes to ISO 27001 2023 edition
- Gaining knowledge on how to audit in accordance with the standard
- Getting to know good practices
ISO 27002 Lead Manager
35 HoursThe ISO/IEC 27002 Lead Manager training equips you with the essential expertise and knowledge to assist an organisation in implementing and managing Information Security controls as outlined in ISO/IEC 27002.
Upon completing this course, you may sit for the examination and apply for the "PECB Certified ISO/IEC 27002 Lead Manager" credential. A PECB Lead Manager Certification confirms that you have mastered the principles and techniques for implementing and managing Information Security Controls in line with ISO/IEC 27002.
Who should attend?
- Managers or consultants aiming to implement an Information Security Management System (ISMS) based on ISO/IEC 27001 and ISO/IEC 27002
- Project managers or consultants seeking to master the ISMS implementation process
- Individuals responsible for information security, compliance, risk, and governance within an organisation
- Members of information security teams
- Expert advisors in information technology
- Information Security officers
- Privacy officers
- IT professionals
- CTOs, CIOs and CISOs
Learning objectives
- Master the implementation of Information Security controls by adhering to the framework and principles of ISO/IEC 27002
- Gain a comprehensive understanding of the concepts, approaches, standards, methods, and techniques required for the effective implementation and management of Information Security controls
- Comprehend the relationships between the components of Information Security controls, including responsibility, strategy, acquisition, performance, conformance, and human behaviour
- Understand the significance of information security for the organisation's strategy
- Master the implementation of information security management processes
- Master the formulation and implementation of security requirements and objectives
Educational approach
- This training is grounded in both theory and practice
- Sessions feature lectures illustrated with examples from real-life cases
- Practical exercises based on case studies
- Review exercises to aid exam preparation
- Practice tests similar to the certification examination
General Information
- Certification fees are included in the exam price
- Training material comprising over 500 pages of information and practical examples will be provided to participants
- A participation certificate awarding 31 CPD (Continuing Professional Development) credits will be issued to participants
- In the event of an exam failure, you may retake the exam within 12 months at no additional cost
PECB ISO/IEC 27001 Lead Implementer
35 HoursInformation security threats and attacks are escalating and becoming more sophisticated. The most effective defence against these risks is the proper implementation and management of information security controls and best practices. Furthermore, information security is a critical expectation and requirement for customers, legislators, and other interested parties.
This training course is designed to equip participants with the skills to implement an Information Security Management System (ISMS) in accordance with ISO/IEC 27001. It aims to provide a comprehensive understanding of ISMS best practices and establish a framework for its ongoing management and improvement.
Upon completing the training course, you will be eligible to take the exam. If you successfully pass, you can apply for the “PECB Certified ISO/IEC 27001 Lead Implementer” credential, which demonstrates your ability and practical knowledge to implement an ISMS based on the requirements of ISO/IEC 27001.
Who Can Attend?
- Project managers and consultants involved in and concerned with the implementation of an ISMS
- Expert advisors seeking to master the implementation of an ISMS
- Individuals responsible for ensuring conformity to information security requirements within an organization
- Members of an ISMS implementation team
General information
- Certification fees are included in the exam price
- Training material containing over 450 pages of information and practical examples will be distributed
- A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued
- In case of exam failure, you can retake the exam within 12 months free of charge
Educational approach
- This training course contains essay-type exercises, multiple-choice quizzes, examples, and best practices used in the implementation of an ISMS.
- The participants are encouraged to communicate with each other and engage in discussions when completing quizzes and exercises.
- The exercises are based on a case study.
- The structure of the quizzes is similar to that of the certification exam.
Learning objectives
This training course will help you:
- Gain a comprehensive understanding of the concepts, approaches, methods, and techniques used for the implementation and effective management of an ISMS
- Acknowledge the correlation between ISO/IEC 27001, ISO/IEC 27002, and other standards and regulatory frameworks
- Understand the operation of an information security management system and its processes based on ISO/IEC 27001
- Learn how to interpret and implement the requirements of ISO/IEC 27001 in the specific context of an organization
- Acquire the necessary knowledge to support an organization in effectively planning, implementing, managing, monitoring, and maintaining an ISMS
Compliance and the Management of Compliance Risk
21 HoursTarget Audience
This programme is designed for all staff members who need a practical grasp of Compliance and effective Risk Management.
Training Format
The training employs a blended learning strategy that comprises:
- Guided group discussions
- Presentations supported by slides
- Analysis of case studies
- Practical real-world examples
Course Objectives
Upon completion of this course, participants will be capable of:
Gaining a comprehensive understanding of the core elements of Compliance, as well as national and global initiatives focused on managing related risks.
Articulating how organisations and their teams can build an effective Compliance Risk Management Framework.
Outlining the duties of the Compliance Officer and the Money Laundering Reporting Officer, and understanding how these roles fit into the broader business structure.
Pinpointing key risk areas within Financial Crime, especially concerning international operations, offshore centres, and high-net-worth clients.
Open Source Software (OSS) Management
14 HoursOpen Source Software (OSS) Management entails the oversight of the lifecycle for open-source components within an organization, ensuring their secure, compliant, and efficient utilisation.
This instructor-led, live training (available online or onsite) is designed for intermediate-level IT professionals seeking to implement best practices for managing open-source software in enterprise and government settings.
Upon completion of this training, participants will be capable of:
- Establishing effective OSS policies and governance frameworks.
- Utilising SBOM and SCA tools to identify, track, and manage open-source dependencies.
- Mitigating risks associated with licensing and security vulnerabilities.
- Streamlining OSS adoption while maximising innovation and cost savings.
Course Format
- Interactive lectures and discussions.
- Case studies and scenario-based exercises.
- Hands-on demonstrations using OSS management tools.
Customisation Options
- This course can be tailored to align with specific organisational OSS policies and toolchains. Please contact us to arrange.
PCI-DSS Practitioner
14 HoursThis instructor-led, live Payment Card Industry Professional training in Botswana (online or onsite) offers a personal qualification for industry practitioners aiming to showcase their professional expertise and grasp of the PCI Data Security Standard (PCI DSS).
Upon completion of this training, participants will be capable of:
- Grasping the payment process and the PCI standards established to safeguard it.
- Understanding the roles and responsibilities of entities within the payment industry.
- Gaining profound insight into and understanding the 12 PCI DSS requirements.
- Showing knowledge of PCI DSS and its application to organisations involved in the transaction process.
Secrets of Boardroom Leadership
7 HoursThe governance of any organisation is only as strong as its board of directors… and that board is only as effective as its chairman. The role of board leadership is not only critical to board effectiveness but is also the one receiving the least training and support. Board leaders and chief executives frequently clash over power. This course reveals the secrets of the world’s top board leaders, sharing the practical leadership techniques of seasoned board professionals.
Welcome to the Boardroom!
7 HoursWhether you are pursuing your inaugural board position, have recently accepted a board role and need to prepare for that initial meeting, or are part of a company aiming to align rising managers and diverse talent with the essential knowledge required for boardroom inclusion and success, this program is for you. This intensive one-day course equips you with everything necessary to be informed, effective, and fully prepared from the moment you step into the boardroom.