About This Course
The ISO/IEC 27001 Lead Auditor programme prepares you to audit information security management systems (ISMS) against the world’s leading information-security standard. Delivered fully self-paced and online, it lets you learn around your own schedule while covering exactly the same competency domains as PECB’s instructor-led programme.
You’ll move from the fundamentals of an ISMS through to planning and leading a complete audit — applying the internationally recognised auditing guidelines of ISO/IEC 17021-1 and ISO 19011. Along the way you’ll build the judgement a lead auditor needs: scoping an audit, gathering and evaluating evidence, raising and grading nonconformities, and communicating findings that hold up to scrutiny.
By the end you’ll be ready to sit the PECB Certified ISO/IEC 27001 Lead Auditor exam and to take on first-, second- and third-party ISMS audits — an ideal step for auditors, security managers and consultants who want a globally respected credential.
Course Information
What You Will Learn
Course Curriculum
- Information security principles and the ISMS concept
- Structure and key requirements of ISO/IEC 27001
- The certification and accreditation landscape
- How the standard relates to the Annex A controls
- Fundamental audit concepts and principles
- Risk-based audit thinking
- Initiating the audit and establishing scope
- Reviewing documentation and preparing the audit plan
- Conducting the opening meeting
- Collecting evidence through interviews and sampling
- Drafting audit findings
- Grading nonconformities and observations
- Preparing audit conclusions and the report
- Conducting the closing meeting
- Audit follow-up and corrective action
- Managing an ongoing audit programme
- The seven competency domains explained
- Exam technique and revision guidance
- Booking and sitting the PECB exam
Get the Full Syllabus as a PDF
Curriculum, exam format & everything included — sent straight to your inbox.
All You Need to Know
This programme is designed for professionals who audit or oversee information security management systems, including:
- Internal and external auditors carrying out ISMS audits
- Managers and consultants who need to master the ISMS audit process
- Individuals responsible for maintaining conformity with ISO/IEC 27001
- Technical experts and advisors preparing for information security audits
A fundamental understanding of ISO/IEC 27001 and a working knowledge of audit principles are recommended. If you’re newer to the standard, the ISO/IEC 27001 Foundation programme is a good first step.
The programme prepares you for the PECB Certified ISO/IEC 27001 Lead Auditor exam, which assesses seven competency domains — from the fundamentals of an ISMS and audit principles through to planning, leading, closing and following up an audit. Successful candidates can then apply for the corresponding PECB certification.
Completing the training also earns 31 CPD (Continuing Professional Development) credits.
Frequently Asked Questions
Yes — the programme is delivered online and self-paced, so you can complete each module around your own schedule while covering the same competency domains as PECB’s instructor-led course.
A fundamental understanding of ISO/IEC 27001 and basic audit principles is recommended. If you’re new to the standard, start with ISO/IEC 27001 Foundation and progress to Lead Auditor.
Lead Auditor prepares you to audit and evaluate an ISMS against ISO/IEC 27001, while Lead Implementer prepares you to build and run one. Auditors assess conformity; implementers establish and manage the system.
After passing the exam and meeting PECB’s requirements, you can apply for the globally recognised PECB Certified ISO/IEC 27001 Lead Auditor credential.
The programme carries 31 CPD (Continuing Professional Development) credits, which count towards maintaining many professional certifications.