ISO/IEC 27005 Risk Manager (PECB-ISO27005-RM)

Master information security risk management with ISO/IEC 27005 — assess, treat and communicate risk in a way that supports ISO/IEC 27001 certification.

Google 4.4/5 Average Rating
1,330+ Learners
Industry Recognized
Certification Body PECB
Delivery Profice
Lowest price guaranteed
Self-Paced e-Learning
€480
Excl. VAT
See price
  • Exam voucher
  • Hands-on labs
  • Certificate
  • Lifetime support
  • Official courseware

Flexible payment — invoice, card or PayPal

About the ISO/IEC 27005 Risk Manager

The ISO/IEC 27005 Risk Manager programme teaches you to manage information security risk the way ISO/IEC 27001 expects — systematically, and in a way that stands up to audit. Delivered self-paced and online, it covers the full risk management process: establishing context, identifying and analysing risk, evaluating it, and deciding how to treat it.

You’ll work through the guidance of ISO/IEC 27005 and see how it plugs directly into an ISMS, giving you the practical judgement to run credible risk assessments and support certification.

Course Information

Course Code PECB-ISO27005-RM
Duration Self-paced · 24-hour programme
Delivery Self Paced
Exam Voucher Included
Certification Body PECB
Certification ISO/IEC 27005 Risk Manager

What You Will Learn

Master the core concepts of information security risk management
Apply the ISO/IEC 27005 risk management process
Identify, analyse and evaluate information security risk
Select and justify appropriate risk treatment options
Communicate, monitor and review risk over time
Align risk management with an ISO/IEC 27001 ISMS

Course Curriculum

  • Risk management concepts and terminology
  • The ISO/IEC 27005 approach
  • How risk fits within an ISMS
  • Establishing the context
  • Identifying assets, threats and vulnerabilities
  • Analysing likelihood and impact
  • Qualitative and quantitative methods
  • Building the risk picture
  • Evaluating and prioritising risk
  • Treatment options and controls
  • Risk acceptance
  • The Statement of Applicability link
  • Risk communication and consultation
  • Monitoring and reviewing risk
  • Keeping the assessment current
  • Reporting to management
  • Exam domains overview
  • Revision guidance
  • Booking and sitting the PECB exam

Get the Full Syllabus as a PDF

Curriculum, exam format & everything included — sent straight to your inbox.

All You Need to Know

Who Should Attend

This programme suits professionals responsible for information security risk, including:

  • Risk managers and information security officers
  • ISMS project team members
  • Consultants advising on ISO/IEC 27001
  • Anyone accountable for security risk decisions
Prerequisites

A fundamental understanding of ISO/IEC 27005 or of risk management is recommended.

Examination

The programme prepares you for the PECB Certified ISO/IEC 27005 Risk Manager exam, covering the concepts and process of information security risk management.

What Our Learners Say

Career Opportunities After This Training

An information security risk manager identifies, analyses and treats the risks facing an organisation's information assets. ISO 27005 Risk Manager training provides the structured, standard-based method employers look for.

Hiring Companies

IBM Deloitte PwC Accenture

Average Salary

£42,000 Min
£62,000 Average
£85,000 Max

Frequently Asked Questions

A PECB credential proving you can manage information security risk using the guidelines of ISO/IEC 27005 — identifying, analysing, evaluating and treating risks that affect an ISO 27001 ISMS.

ISO 27001 requires a risk-based approach to information security; ISO 27005 provides the detailed guidance on how to actually perform that risk management. The two are commonly used together.

The exam is an essay-type, open-book paper of roughly 3 hours. You need the passing score set by PECB (generally around 70%). After passing you receive a 'Certificate of Exam Success', and the full certification is issued once you also meet PECB's professional-experience requirements.

Risk managers, information security officers, ISMS implementers and consultants who need a structured, internationally recognised method for information security risk assessment.

PECB certifications are valid for three years. You keep yours active by earning Continuing Professional Development (CPD) credits and paying the annual maintenance fee.

Premium training, now at the lowest price.

Lowest price guaranteed
See price
4.4/5 rating Official PECB partner Exam included 1,330+ alumni
Ready to enrol?

No payment now — reserve your seat and we'll send the invoice.

Under a minute · invoice, card or PayPal
1 Submit your details
2 Receive your invoice
3 Pay & get access