ISO/IEC 27001·Internal Auditor·Internal Audit

ISO/IEC 27001 Internal Auditor

Plan, conduct and report internal ISMS audits aligned with ISO 19011 and ISO/IEC 27007.

3 days Live Virtual English 4.8 (0 reviews)

Learning outcomes

  • Plan a risk-based ISMS audit programme
  • Conduct opening, fieldwork and closing meetings
  • Apply ISO 19011 and ISO/IEC 27007 guidance
  • Write clear findings, NCRs and CARs
  • Drive corrective action follow-up

Curriculum

  1. 01
    Audit principles
    • · ISO 19011 principles
    • · Auditor competence and ethics
    • · Risk-based auditing
    • · Audit programme design
  2. 02
    Preparing the audit
    • · Audit plan and checklists
    • · Sampling strategy
    • · Document review
    • · Stakeholder coordination
  3. 03
    Conducting the audit
    • · Opening meeting
    • · Interview techniques
    • · Collecting objective evidence
    • · Recording observations
  4. 04
    Reporting
    • · Classifying findings
    • · Writing non-conformities
    • · Closing meeting
    • · Audit report structure
  5. 05
    Follow-up and practice
    • · Root cause analysis
    • · Corrective actions
    • · Verification
    • · Mock audit exercise

Target audience

Internal auditorsISMS managers and coordinatorsQuality auditors expanding into securitySecond-line risk teamsConsultants supporting clients

Prerequisites

  • ISO 27001 Foundation knowledge
  • Familiarity with basic audit terminology

Instructor

OK
Omar Khalil
Principal ISMS Auditor

Lead auditor for 200+ certification audits.

Frequently asked

Is the certificate accredited?

MAST Study issues a verifiable digital certificate of attainment. Where a programme aligns with an external certification body, candidates are prepared to sit that body's exam separately.

Can I get a refund?

All programmes carry a 30-day satisfaction guarantee from your first session.

Is corporate pricing available?

Yes — private cohorts, annual subscriptions and volume pricing are all available.