Full Programme
Everything covered in this programme, so you can confirm it's the right fit before you complete your registration above.
Cyber incidents now rank among the most disruptive risks any organisation faces, and the pressure to demonstrate good practice comes from every side: customers in tender documents, regulators in data protection and sector rules, insurers and donors in due diligence questionnaires. ISO/IEC 27001 offers a recognised, auditable way to show that security is managed rather than improvised.
The Planning and Implementation of Cybersecurity & Information Security (ISO 27001) Training Course is a practical ten-day journey through the standard's requirements and the work needed to meet them. The first week covers the structure of the standard, scoping, leadership, policy, asset inventory, risk methodologies and the Statement of Applicability. The second week concentrates on implementing and testing controls, including technical measures, people and supplier security, incident management and continuity, followed by internal audit, management review and certification preparation.
Throughout, participants build the documents and records an auditor expects, using templates and a running case organisation. The course emphasises proportionate, risk-based decisions so that smaller institutions can adopt the same logic as large ones, and closes with a roadmap participants can take straight back to work.
By the end of the programme, participants will be able to:
The programme is designed for professionals who plan, run or assess information security, including:
Participants complete the programme with:
The programme is workshop-driven, using a single case organisation across the ten days, with:
Participants who attend the programme and complete the workshops and labs receive a CPD-accredited Certificate of Completion issued by Vision Reach Global Consultancy.
The certificate evidences training completed and does not constitute ISO 27001 lead implementer or auditor certification.