INFORMATION SECURITY MANAGEMENT SYSTEMS

ISO/IEC 27001 TRAINING COURSES

Explore Quality Academy’s ISO/IEC 27001 training courses. Learn how an information security management system helps organisations identify and manage risks to their information. Choose the course that matches your role, from foundational knowledge to internal auditing, implementation or leading audits.

Information Protection

Protect the confidentiality, integrity and availability of information.

Risk Management

Identify information security risks and select appropriate responses.

Stakeholder Confidence

Demonstrate a structured approach to managing sensitive information.

Continual Improvement

Review security performance and improve the management system over time.

ISO/IEC 27001 training pathways

Compare the four courses

Foundation

Best forBeginners and professionals seeking an introduction to information security management.

What you will learnISO/IEC 27001 fundamentals, ISMS concepts and a risk-based approach to information security.

PrerequisiteNone.

Duration8 hours.

Typical next stepInternal Auditor or Lead Implementer training.

Internal Auditor

Best forInformation security staff responsible for checking and improving their organisation’s ISMS.

What you will learnPlan and conduct internal audits, gather evidence, report findings and follow up corrective actions.

PrerequisiteBasic ISO/IEC 27001 knowledge recommended.

Duration16 hours.

Typical next stepLead Auditor training for those intending to lead audit teams.

Lead Implementer

Best forSecurity managers, consultants and professionals responsible for establishing or improving an ISMS.

What you will learnPlan, implement, manage and maintain an information security management system based on ISO/IEC 27001.

PrerequisiteISO/IEC 27001 knowledge recommended.

Duration5 days.

Typical next stepLead ISMS implementation and improvement within an organisation.

Lead Auditor

Best forAuditors and security professionals preparing to lead ISMS audits.

What you will learnPlan and lead audits, manage audit teams, evaluate evidence and report findings.

PrerequisiteISO/IEC 27001 knowledge and an understanding of auditing principles recommended.

Duration40 hours.

Typical next stepAdvanced information security auditing responsibilities.

Ready to choose your training?

Individual learners can explore available courses and dates in the training catalogue. Organisations can request a training solution for their team.

Frequently asked questions

ISO/IEC 27001 Training FAQs

Find clear answers about course selection, delivery and certification.

Which ISO/IEC 27001 course should I choose?

Choose Foundation if you are new to ISO/IEC 27001, Internal Auditor if you will assess your organisation’s ISMS, Lead Implementer if you will establish or improve an ISMS, or Lead Auditor if you intend to lead ISMS audits.

Should I choose Lead Implementer or Lead Auditor?

Lead Implementer focuses on establishing, managing and improving an information security management system. Lead Auditor focuses on planning and leading audits of that system.

Do I need to take Foundation before another course?

Foundation is a useful starting point if you are new to ISO/IEC 27001. If you already have relevant knowledge or experience, check the entry requirements of the course you want to take.

How are the courses delivered?

Available learning methods may vary by course and schedule. Check the current training catalogue for individual enrolment, or contact our team about training for your organisation.

Will completing a course certify my organisation to ISO/IEC 27001?

No. A training course develops an individual’s knowledge and skills. Certification of an organisation’s information security management system is a separate process.