ISO/IEC 27001·Foundation·Information Security
ISO/IEC 27001 Foundation
Build a solid foundation in ISO/IEC 27001:2022 — scope, Annex A controls, risk treatment and certification pathway.
2 days Self-Paced English 4.8 (0 reviews)
Learning outcomes
- Explain the ISMS lifecycle and PDCA model
- Map Annex A 2022 control themes to risks
- Outline the certification audit stages
- Describe documented information requirements
- Identify common ISMS implementation pitfalls
Curriculum
- 01Foundations of ISMS
- · History of ISO 27000 family
- · Key terms and definitions
- · PDCA cycle
- · Business case for certification
- 02ISO/IEC 27001:2022 clauses
- · Context (cl.4)
- · Leadership (cl.5)
- · Planning (cl.6)
- · Support and operation (cl.7-8)
- · Performance and improvement (cl.9-10)
- 03Annex A 2022 controls
- · Organisational (37)
- · People (8)
- · Physical (14)
- · Technological (34)
- · Mapping to 2013 controls
- 04Risk and Statement of Applicability
- · Risk assessment basics
- · ISO 27005 alignment
- · Building the SoA
- · Risk treatment plan
- 05Certification pathway
- · Stage 1 and Stage 2 audits
- · Surveillance and recertification
- · Common findings
- · Preparing the team
Target audience
IT and security staff new to ISO 27001GRC and compliance analystsNew internal auditorsProject managers supporting ISMS rolloutVendor risk teams
Prerequisites
- — No prior ISO experience required
- — Basic IT or security awareness helpful
Instructor
DA
Dr. Aisha Rahman
Lead ISMS Auditor
15+ years across ISO 27001 certifications in MENA.
Frequently asked
Is the certificate accredited?
MAST Study issues a verifiable digital certificate of attainment. Where a programme aligns with an external certification body, candidates are prepared to sit that body's exam separately.
Can I get a refund?
All programmes carry a 30-day satisfaction guarantee from your first session.
Is corporate pricing available?
Yes — private cohorts, annual subscriptions and volume pricing are all available.
Related programmes
