Certificate overview
This program enables participants to acquire comprehensive knowledge and advanced practical skills to plan, implement, manage, and maintain an Information Security Management System based on ISO 27001.
Participants will learn to lead ISMS implementation projects from initial risk assessment through to certification readiness, ensuring protection of information assets and compliance with regulatory requirements. The course emphasizes practical application of information security controls, risk management methodologies, security governance, and incident response planning, qualifying professionals to drive sustainable information security across organizations of all sizes and sectors.
What you will learn
Understand the structure, requirements, and benefits of ISO 27001 Information Security Management Systems.
Conduct comprehensive information security risk assessments and gap analysis.
Design and implement security controls from ISO 27001 Annex A control set.
Develop and document ISMS policies, procedures, and documented information.
Apply risk treatment methodologies and establish risk acceptance criteria.
Lead ISMS implementation projects using effective project management and change control.
Establish information security governance framework and organizational roles.
Implement security awareness programs and competence development initiatives.
Design incident response plans and business continuity procedures for information security.
Prepare organizations for internal audits, management reviews, and third-party certification.
Curriculum
9 modules
- 01Introduction to Information Security Management and ISO 27001
- 02Information Security Risk Management
- 03Planning ISMS Implementation Projects
- 04Gap Analysis and Readiness Assessment
- 05Designing and Implementing Security Controls (Annex A)
- 06Developing ISMS Documentation and Policies
- 07Implementation, Training, and Security Awareness
- 08Internal Audits, Incident Management, and Continual Improvement
- 09Certification Preparation and ISMS Maintenance
Who it is for
- Information security managers and officers
- IT managers and security architects
- Risk management and compliance professionals
- CISO and security governance leaders
- Consultants specializing in information security and ISO 27001
Eligibility requirements
Applicants must:
- Hold a degree from a recognized educational organization.
- Have professional experience in the field.
- Sit for and pass the certification examination.
- Adhere to the Professional Development Institute (PDI) Code of Ethics.
Exam Requirements
Online Examination will need to be sat under controlled conditions at a PDI accredited centre.
- 70% passing grade
- Exam available in a range of different languages
- 3 Hours duration
- The examination is offered in multiple languages to support international candidates.
- All candidates are required to sit for their exam at an accredited PDI Test Centre.
- The exam duration is (3) hours.
- Each exam consists of 100 multiple-choice questions (MCQs).


