ISO/IEC 27001 Foundation – Self-Study
Course Overview
ISO/IEC 27001 Foundation introduces the fundamental concepts and requirements of an information security management system (ISMS) based on ISO/IEC 27001.
The course provides an accessible starting point for professionals who want to understand how organisations establish, operate, maintain and continually improve an ISMS. It covers the purpose and structure of ISO/IEC 27001, key management-system principles and the role of information-security controls within a structured governance approach.
This course is suitable for learners beginning their ISO/IEC 27001 journey as well as professionals who work with information-security, governance, risk, compliance or management-system activities and need a practical understanding of the standard.
Who Should Attend
Managers and consultants seeking foundational information-security knowledge
Professionals who need to understand ISO/IEC 27001 requirements
Members of teams supporting ISMS implementation, operation or assurance
Professionals working in information security, risk, governance or compliance
Individuals interested in beginning an ISO/IEC 27001 certification pathway
Prerequisites
No formal professional or project-experience prerequisite applies to the Foundation course. A general interest in information security or management systems can be helpful, but prior ISO/IEC 27001 experience is not required.
Learning Objectives
Understand the fundamental concepts and principles of an information security management system
Understand the purpose and structure of ISO/IEC 27001
Become familiar with the main ISO/IEC 27001 requirements
Understand how an ISMS supports the management of information-security risk
Recognise the key activities involved in establishing, operating, maintaining and continually improving an ISMS
Develop foundational knowledge for further ISO/IEC 27001 learning and certification
Course Outline
Introduction to ISO/IEC 27001 and information security
Purpose and context of an ISMS
Key information-security and management-system concepts
ISO/IEC 27001 requirements
Understanding the structure of the standard
Core ISMS requirements and organisational responsibilities
Operating an ISMS
Planning, implementation and operation
Monitoring, review and continual improvement
Information-security controls and supporting processes
Certification preparation
Review of foundation-level concepts
Preparation for the associated certificate exam
Exam & Certification
The course includes access to the associated PECB examination and certification pathway in accordance with applicable PECB requirements.
Candidates who successfully pass the examination may apply for the PECB Certificate Holder in ISO/IEC 27001:2022 Foundation credential.
Where applicable under PECB policy, partner-delivered training includes the first examination attempt, one free retake within the applicable 12-month period, the certification application fee and the first year of the annual maintenance fee. Certification remains subject to PECB examination and eligibility requirements.
This Self-Study option is designed for learners who prefer to work independently using the learning materials provided through the applicable PECB enrolment.
After purchase, CyberCognize will process your enrolment with PECB. Your course access, learning materials, and applicable PECB instructions will be provided separately once your enrolment has been completed.
Your purchase also includes the CyberCognize PECB Enrolment & Next Steps Guide, which explains what happens after checkout and how your access will be issued.

