Course Information
What You Will Learn
Course Curriculum
What is ISO/IEC 27001:2022, A brief history and status of the standard, Definitions, Certification framework, Why get certified?
ISO/IEC 27000:2018, ISO/IEC 27001:2022, ISO/IEC 27002:2022, ISO/IEC 2003:2010, ISO/IEC 27004:2009, ISO/IEC 27005:2011, Definition of ISMS, Required documents for an ISMS.
ISO 9001:2008, ISO/IEC 20000-1:2011
Scope and Perimeter of the ISMS, ISMS Policy, Defining the Risk Analysis Approach and Methodology, Statement of Applicability, Risk Management Plan, Implementing Controls and Countermeasures, Defining Training and Awareness Programs, Resource Management, Incident Management.
Security Controls: What, How, and Why, Overview, Security Policy, Asset Management, Human Resources Security, Access Control, IS Incident Management, Compliance.
Overview, Rationales for Auditing, Types of Audits, Audit Results, Audit Organization (Minor and Major Nonconformities, Observations, Evidence).
Get the Full Syllabus as a PDF
Curriculum, exam format & everything included — sent straight to your inbox.
All You Need to Know
The course is intended for those interested in implementing or maintaining an ISMS and wishing to have a basic understanding of the ISO/IEC 27001:2022 standard, as well as for those working in various roles within an organization that is already certified or is considering ISO/IEC 27001:2022 certification.
There are no prerequisites for qualification at Foundation level
Frequently Asked Questions
ISO/IEC 27001 Foundation introduces the core principles of Information Security Management Systems (ISMS) based on the ISO/IEC 27001 standard, covering key terminology, structure, and requirements.
No prior experience is required. ISO/IEC 27001 Foundation is designed as an entry-level certification suitable for professionals new to information security management.
After completing Foundation, most learners progress to ISO/IEC 27001 Practitioner certification, which tests the practical application of ISMS implementation. Profice Group offers both as a natural progression.
This certification suits IT professionals, compliance officers, and managers who need foundational knowledge of information security management systems for their role or organisation.
Yes, APMG International is a globally recognised accreditation body, and this Foundation certification is respected as an entry point into information security management careers worldwide.