CQI and IRCA Certified ISO/IEC 27001:2022 Information Security Management System (ISMS) Lead Auditor

Course Objectives

  • Effective auditing helps to ensure that the measures you put in place to protect your
  • organization and your customers are properly managed and achieve the desired result the main requirements of ISO/IEC 27001

Target Audience

This course is suitable for those wishing to Lead audits of ISMS in accordance with ISO 27001:2013 (either as a 2nd party, or 3rd party auditor), those wishing to learn about  effective audit practices. Security and quality professionals, existing information  security auditors who wish to expand their auditing skills and consultants who wish to provide advice on ISO 27001:2013 ISMS Auditing.

Methodology

Delegates are expected to have the following prior knowledge:

Management systems

Understand the Plan-Do-Check-Act (PDCA) cycle.

Information security management (Knowledge of the following information

security management principles and concepts):

  • Awareness of the need for information security
  • The assignment of responsibility for information security
  • Incorporating management commitment and the interests of stakeholders
  • Enhancing societal values
  • BSI Training Academy
  • ISM04101_1022 Page 2 of 5
  • Using the results of risk assessments to determine appropriate controls to
  • reach acceptable levels of risk
  • Incorporating security as an essential element of information networks and systems
  • The active prevention and detection of information security incidents
  • Ensuring a comprehensive approach to information security management
  • Continual reassessment of information security and making of modifications as appropriate

Course Modules

Day 1

  • Benefits to you, welcome and introductions
  • Course aims, objectives and structure

Module 1: First, second and third party audits

Module 2: Audit process

Module 3: Audit objectives, scopes and criteria’s

Module 4: Audit resources

Module 5: Audit methods

Module 6 : Stage 1 audit

Module 7: Stage 2 audit

Module 8: Audit plan

Module 9: Work documents

Module 10: Opening meeting

Module 11: Audit evidence

Module 12: Effective communication

Module 13: Audit findings

Module 14: Audit meetings

Module 15: Closing meeting

Module 16: Audit reports

Module 17: Audit follow-Up

Module 18: Course review and summary

Day 2

  • Day 1 review

Module 19: Purpose and business benefits of an ISMS

Module 20: Terminology

Module 21: Plan-Do-Check-Act

Module 22: ISMS context

Module 23: Role of the auditor

Module 24: ISMS documentation

Module 25: Initiating the audit

Module 26: Document review

Module 27: Audit plan

Module 28: Work documents

Module 29: Opening meeting

Module 30: Observations

Module 31: Auditing ‘Top Management’

Day 3

  • specimen exam: Sections 1 and 2 review

Module 31: Auditing ‘Context’

Module 32: Auditing ‘Actions to address risks and opportunities’

Module 33: Tutorial on body language

Module 34: Audit trails

Module 35: Auditing ‘Objectives, resource and competence’

Module 36: Auditing ‘Operations and monitoring….’

Day 4

  • Specimen exam: Section 3 review

Module 37: Auditing ‘Continual improvement’

Module 38: Nonconformities

Closing meeting

Module 39: Audit report

Module 40: Audit follow-up

Module 41: Specimen exam: Section 4

Day 5

  • Specimen exam: Section 3 review

Module 42: Hand in homework – audit report

Module 43: The certification and accreditation process, the role of CQI and IRCA, the  CQI and IRCA ISMS auditor certification requirements and code of conduct

Module 44: Final questions/final revision

Evaluation

Module 45: Evaluation

Module 46: Introduction/readiness to the exam

Module 47: Exam

Get To Know The Trainer

Trainer Irvin

 4.5

Irvin Teh holds a B.Sc (Hons) degree in Computing & Information Systems from the London Guildhall University in the United Kingdom. Throughout the years, Irvin has worked in many corporations and possessed vast Quality, Safety & Health and Environmental experiences.

Trainer Cheong

 4.5

Cheong is a multi-system specialist with more than ten years of proven track records in training, consulting and auditing. An experience and dedicated management system consultant, he possesses extensive hands-on experience in project management; coaching organizations establishing, implementing, maintaining and improving management systems in diversified discipline for Quality, Environmental, Information Security and Energy Management.

Trainer Mabel

 4.5

With a background of Bachelor of Science (Hons) in Computing and Information System from University of Lincoln, Mabel began her career in one of the largest electronics manufacturing multinational organization in Malaysia.

Trainer Joanne

 4.5

With an education background of Applied Sciences and Psychology, Joanne Yip began her career with a plastic resin and film extrusion organization. She then joined a plastic injection moulding organization as Management Representative involving in Quality (incl. Automotive, Medical Device), Environmental, Safety and Health management systems as well as product safety. She had spearheaded the achievement of ISO13485 certification and digitalization of document management system to SharePoint.

  View more trainers

Chat with us LIVE to get a

FREE QUOTATION!

THIS PUBLIC COURSE INCLUDES

*T&C Applies

PARTICIPANT REVIEWS FOR THIS COURSE

No review yet.

Courses you may like

Optimized by Optimole

MEMBERS ONLY FEATURE

Kindly sign-up or log-in to get access.

LOGIN

[nextend_social_login]

Login with your social account

or

Don’t have an account with us?

FREE FOR LIFE

Sign Up to Bookmark your Favourite Course
or Request for a Quotation instantly

[nextend_social_login]

Sign in with your social account

or

By signing up, you agree to our Terms of Use and Privacy Policy

Have an account with us already?