Certificate overview
This program provides comprehensive understanding of Information Security ManagementSystems based on ISO 27001, together with the principles and practices of auditing ISMS inaccordance with ISO 19011 and ISO/IEC 17021. The program is designed to develop bothconceptual understanding of information security principles and ISO 27001 requirements, andpractical auditing competence required to plan, conduct, report, and follow up on ISMS audits.
The course supports learners pursuing roles as information security auditors, IT auditors, third-party certification auditors, and professionals seeking CQI-IRCA or equivalent certificationpathways in information security management system auditing.
What you will learn
Explain the purpose, structure, and benefits of an Information Security Management System.
Interpret and apply the requirements of ISO 27001 including Annex A controls.
Understand information security risk management principles and methodologies.
Apply audit principles based on ISO 19011 and ISO/IEC 17021 standards.
Plan, conduct, report, and follow up ISMS audits effectively.
Evaluate audit evidence and identify conformity or nonconformity with ISO 27001.
Assess effectiveness of implemented security controls and risk treatments.
Understand auditor responsibilities, ethics, and competence requirements for ISMS auditing.
Conduct opening and closing meetings and gather information security audit evidence.
Write clear audit reports and nonconformity statements for information security contexts.
Curriculum
8 modules
- 01Introduction to Information Security and ISMS
- 02ISO 27001 Requirements and Annex A Controls
- 03Information Security Risk Management
- 04Introduction to ISMS Auditing
- 05Auditor Competence and Responsibilities
- 06Planning and Preparing ISMS Audits
- 07Conducting ISMS Audits
- 08Audit Reporting, Follow-up, and ISO/IEC 17021 Awareness
Who it is for
- Information security professionals and auditors
- IT auditors and compliance officers
- Internal auditors specializing in information security
- Third-party certification auditors
- Professionals seeking CQI-IRCA certification pathways
Eligibility requirements
Applicants must:
- Hold a degree from a recognized educational organization.
- Have professional experience in the field.
- Sit for and pass the certification examination.
- Adhere to the Professional Development Institute (PDI) Code of Ethics.
Exam Requirements
Online Examination will need to be sat under controlled conditions at a PDI accredited centre.
- 70% passing grade
- Exam available in a range of different languages
- 3 Hours duration
- The examination is offered in multiple languages to support international candidates.
- All candidates are required to sit for their exam at an accredited PDI Test Centre.
- The exam duration is (3) hours.
- Each exam consists of 100 multiple-choice questions (MCQs).


