Information security auditor reviewing cybersecurity compliance procedures in a corporate environment

Overview

ISO/IEC 27001:2022 Lead Auditor Training is designed to provide professionals with the knowledge and skills required to plan, conduct, and lead Information Security Management System (ISMS) audits based on ISO/IEC 27001:2022.

The course covers ISMS requirements, controls, documented information, risk management, and audit processes. Participants will gain practical understanding of how to interpret the standard, conduct audits, and manage audit activities from planning through to closing.

This programme is suitable for professionals involved in information security, compliance, and auditing who aim to develop lead auditing expertise and achieve ISO 27001 certification.

Curriculum

This programme consists of ten structured learning sessions designed to develop practical competence in ISO/IEC 27001:2022 lead auditing and ISMS implementation.

Session 1: Overview of ISO/IEC 27001:2022 Information Security Management System
Session 2: ISO/IEC 27001:2022 Requirements
Session 3: ISO/IEC 27001:2022 ISMS Controls
Session 4: Documented Information
Session 5: Risk Management (Risk Assessment and Risk Treatment)
Session 6: ISMS Internal Audit Process
Session 7: Terms, Definitions, Roles and Responsibilities
Session 8: Performing an ISMS Audit
Session 9: Nonconformity and Corrective Action
Session 10: Climate Action Changes – New Amendments (2024)

Course Delivery

This programme is delivered through a combination of structured learning materials and assessment activities designed to support practical understanding and application.

• Audio-visual lectures and real-time audit demonstration videos
• Downloadable handouts and supporting documentation
• Practical audit checklists, case studies, and reference tools
• Session-based assessments and a final examination

Programme Outcomes

• Understand ISO/IEC 27001:2022 ISMS requirements and controls
• Understand risk management, risk evaluation, and treatment
• Understand documented information and Statement of Applicability (SoA)
• Develop skills to plan, conduct, and lead ISMS audits
• Understand nonconformities and corrective actions
• Gain confidence in conducting opening and closing meetings

Who Should Attend

This programme is designed for professionals involved in information security management systems and auditing.

• Individuals seeking to become ISO/IEC 27001 Lead Auditors
• ISMS consultants and technical professionals
• Professionals involved in ISMS implementation or audits
• Individuals seeking formal certification in ISMS auditing

Prerequisites

• Ability to understand instructions in English
• Basic knowledge of information security is beneficial
• Awareness of ISO/IEC 27001 standard is advantageous
• Interest in auditing and assessment processes

Faculty & Facilitators

This programme is delivered by Qualified Skills Development Facilitators (SDFs) who are certified Lead Auditors and industry-experienced professionals. Our facilitators bring practical auditing expertise and real-world implementation experience, ensuring that training remains relevant, applied, and aligned with current industry standards

Assessment & Certification

Each programme includes structured module summaries designed to reinforce key learning outcomes and support assessment preparation. Participants are required to complete a final online assessment to demonstrate competency. Upon successful completion of the assessment requirements, a formal course certificate is issued. Certificates are available for download and may be independently verified using the issued certificate reference number.

Programme Snapshot

Duration:
Delivery Mode:
Accreditation:

How It Works

1. Enrol Online
2. Receive Instant Access
3. Study at Your Own Pace
4. Complete Online Assessment
5. Receive Your Certificate

Enquire Now

Explore Related Courses

IT service management auditor reviewing service delivery and operational compliance procedures in a corporate environment
ISO/IEC 20000-1:2018 Lead Auditor Training providing practical knowledge of IT service management system auditing and certification processes.
IT service management professionals reviewing service delivery and support procedures in a corporate environment
ISO/IEC 20000-1:2018 Awareness Training providing essential knowledge of IT service management system requirements and certification processes.
Information security professionals reviewing cybersecurity and data protection procedures in a corporate office environment
ISMS Foundation Training ISO/IEC 27001:2022 providing essential knowledge of ISMS requirements, documentation, and certification processes.
Cart (0 items)

To Lead Our Clients To Better Performance

Contact Info

Mon - Fri : 8:00 -16:30
+27 31 020 2248
admin@m-theory.co.za

Office Address

First Floor Building 2
Gleneagles Office Park
10 Flanders Drive
Mount Edgecombe
Durban
Kwa-Zulu Natal
4302