logo-img
ISO 27001 Lead Auditor Training (PECB)

ISO 27001 Lead Auditor Training (PECB)

5 days including exam day Classroom Engels, Nederlands
Zelfstudie Self study

Sharpest price in just 2 steps

Requesting more information and/or the current price of this training is easy. We take into account any ongoing promotions, subsidies, or relationship discounts.

Description

Information security threats and attacks are continuously increasing and becoming more sophisticated. Organizations are therefore under pressure to demonstrably protect their valuable information. Effectively implementing, auditing, and managing security measures according to best practices is essential. Moreover, customers, regulators, and other stakeholders are setting increasingly higher demands for information security, with ISO 27001 becoming a highly sought-after certification. 

The ISO 27001 Lead Auditor training prepares you for auditing an ISMS based on ISO/IEC 27001:2022. You will learn how to plan and conduct both internal and external audits according to the guidelines of ISO 19011 and the certification process of ISO/IEC 17021-1.

The training is highly practice-oriented, with exercises and cases from daily practice. This way, you not only develop the right auditing skills but also learn how to manage an audit program, guide an audit team, communicate effectively with stakeholders, and deal with resistance or conflict situations.

The lesson days consist of a combination of theory and practice:

  • Lessons that are richly filled with practical examples based on real cases
  • Practical assignments based on a full case study including role play
  • A mock exam that is comparable to the real certification exam

In the ISO 27001 Lead Auditor exam, you will be tested on the domains below, for which the training will prepare you:

  • Domain 1: Fundamental principles and concepts of an Information Security Management System (ISMS)
  • Domain 2: Information Security Management System (ISMS) 
  • Domain 3: Fundamental audit concepts and principles 
  • Domain 4: Preparation of an ISO/IEC 27001 audit
  • Domain 5: Execution of an ISO/IEC 27001 audit
  • Domain 6: Closure of an ISO/IEC 27001 audit 
  • Domain 7: Management of an ISO/IEC 27001 audit program 

Working method

The training is a combination of theory and practice and is illustrated with examples based on real cases. To fully benefit from the various practical assignments, the number of participants per group is limited. You will complete the training immediately with the subsequent exam, after which you can apply for the corresponding certification and title, depending on your experience, if you achieve a good result. Our trainers have extensive practical experience with ISO 27001 audits in various sectors.

This training is classroom-based but can also be attended Live Online if desired. You will then follow the training live remotely with our own instructor, view the slides and notes on the whiteboard, and can ask questions to both the trainer and your fellow participants. So, it's just like being present at the classroom training, but from your own location. If the Live Online training does not meet your expectations, you may attend it again in person with us free of charge within a year.

Certification

By passing the included "ISO 27001 Lead Auditor" exam, which takes place on the last day of the training, you will obtain the corresponding ISO 27001 (Lead) Auditor certification from PECB. This exam can be taken both on-site with us and online from home. If you prefer not to take the exam immediately after the training, you can do so at a later time, up to a year after the training.

Training Requirements

  • Auditors die Information Security Management System (ISMS) audits willen uitvoeren en leiden.
  • Managers of consultants die het auditproces van een Information Security Management System onder de knie willen krijgen.
  • Personen die verantwoordelijk zijn voor het handhaven van de conformiteit met de ISMS-eisen binnen een organisatie.
  • Technische experts die zich willen voorbereiden op de audit van het Information Security Management System.
  • Deskundige adviseurs op het gebied van informatiebeveiliging.

Training Content

Doelstellingen en structuur van de training

Normen en regelgevende kaders

Certificeringsproces

Fundamentele concepten en principes van informatiebeveiliging

Information Security Management System (ISMS)

Fundamentele auditconcepten en -principes

De impact van trends en technologie op auditing

Evidence-based auditing

Risk-based auditing

Initiatie van het auditproces

Stage 1 audit

Voorbereiding op de Stage 2 audit

Stage 2 audit

Communicatie tijdens de audit

Auditprocedures

Opstellen van audit-testplannen

Opstellen van auditbevindingen en nonconformity-rapporten

Auditdocumentatie en kwaliteitsbeoordeling

Afsluiting van de audit

Evaluatie van actieplannen door de auditor

Verder kijken dan de initiële audit

Beheer van een intern auditprogramma

Description

Information security threats and attacks are continuously increasing and becoming more sophisticated. Organizations are therefore under pressure to demonstrably protect their valuable information. Effectively implementing, auditing, and managing security measures according to best practices is essential. Moreover, customers, regulators, and other stakeholders are setting increasingly higher demands for information security, with ISO 27001 becoming a highly sought-after certification. 

The ISO 27001 Lead Auditor training prepares you for auditing an ISMS based on ISO/IEC 27001:2022. You will learn how to plan and conduct both internal and external audits according to the guidelines of ISO 19011 and the certification process of ISO/IEC 17021-1.

The training is highly practice-oriented, with exercises and cases from daily practice. This way, you not only develop the right auditing skills but also learn how to manage an audit program, guide an audit team, communicate effectively with stakeholders, and deal with resistance or conflict situations.

The lesson days consist of a combination of theory and practice:

  • Lessons that are richly filled with practical examples based on real cases
  • Practical assignments based on a full case study including role play
  • A mock exam that is comparable to the real certification exam

In the ISO 27001 Lead Auditor exam, you will be tested on the domains below, for which the training will prepare you:

  • Domain 1: Fundamental principles and concepts of an Information Security Management System (ISMS)
  • Domain 2: Information Security Management System (ISMS) 
  • Domain 3: Fundamental audit concepts and principles 
  • Domain 4: Preparation of an ISO/IEC 27001 audit
  • Domain 5: Execution of an ISO/IEC 27001 audit
  • Domain 6: Closure of an ISO/IEC 27001 audit 
  • Domain 7: Management of an ISO/IEC 27001 audit program 

Working method

The training is a combination of theory and practice and is illustrated with examples based on real cases. To fully benefit from the various practical assignments, the number of participants per group is limited. You will complete the training immediately with the subsequent exam, after which you can apply for the corresponding certification and title, depending on your experience, if you achieve a good result. Our trainers have extensive practical experience with ISO 27001 audits in various sectors.

This training is classroom-based but can also be attended Live Online if desired. You will then follow the training live remotely with our own instructor, view the slides and notes on the whiteboard, and can ask questions to both the trainer and your fellow participants. So, it's just like being present at the classroom training, but from your own location. If the Live Online training does not meet your expectations, you may attend it again in person with us free of charge within a year.

Certification

By passing the included "ISO 27001 Lead Auditor" exam, which takes place on the last day of the training, you will obtain the corresponding ISO 27001 (Lead) Auditor certification from PECB. This exam can be taken both on-site with us and online from home. If you prefer not to take the exam immediately after the training, you can do so at a later time, up to a year after the training.

Training Requirements

  • Auditors die Information Security Management System (ISMS) audits willen uitvoeren en leiden.
  • Managers of consultants die het auditproces van een Information Security Management System onder de knie willen krijgen.
  • Personen die verantwoordelijk zijn voor het handhaven van de conformiteit met de ISMS-eisen binnen een organisatie.
  • Technische experts die zich willen voorbereiden op de audit van het Information Security Management System.
  • Deskundige adviseurs op het gebied van informatiebeveiliging.

Training Content

Doelstellingen en structuur van de training

Normen en regelgevende kaders

Certificeringsproces

Fundamentele concepten en principes van informatiebeveiliging

Information Security Management System (ISMS)

Fundamentele auditconcepten en -principes

De impact van trends en technologie op auditing

Evidence-based auditing

Risk-based auditing

Initiatie van het auditproces

Stage 1 audit

Voorbereiding op de Stage 2 audit

Stage 2 audit

Communicatie tijdens de audit

Auditprocedures

Opstellen van audit-testplannen

Opstellen van auditbevindingen en nonconformity-rapporten

Auditdocumentatie en kwaliteitsbeoordeling

Afsluiting van de audit

Evaluatie van actieplannen door de auditor

Verder kijken dan de initiële audit

Beheer van een intern auditprogramma

shape

I am taking this next step in my lifelong learning journey.

1

Applicant Information

2

Billing Information

What Can I Learn After The ISO 27001 Lead Auditor Training (PECB)?

  • Understanding the core principles and functioning of an ISMS according to ISO/IEC 27001 and explaining this in an audit context.
  • Independently prepare, conduct, and complete an ISO 27001 audit according to ISO/IEC 17021-1 and the guidelines of ISO 19011.
  • Identify and apply the requirements of ISO/IEC 27001 from the perspective of an auditor.
  • Setting up, managing, and continuously improving an ISO 27001 audit program.
  • Assessing the extent to which an ISMS complies with the standard, based on recognized audit principles.

Schedules

This training is scheduled as follows in the coming period. Missing a date? Feel free to contact us.

Zelfstudie Self study
Date: 13+14 & 20-22 juli 2026

Location: TSTC Veenendaal - Klassikaal & Live Online

Date: 2+3 & 9-11 november 2026 (Engelstalige sessie)

Location: TSTC Veenendaal - Klassikaal & Live Online

Date: In overleg

Location: TSTC Veenendaal - Klassikaal & Live Online

1

Applicant Information

2

Billing Information

Learning paths

This training can also be taken as part of the below learning path(s). If you want to follow multiple titles from a learning path, please contact our advisors for a suitable bundle offer.

Shape

Frequently Asked Questions

ISO 27001 is a certifiable standard that serves as a tool for the security and management of valuable data within an organization (information security). The standard specifies requirements for establishing, implementing, operating, monitoring, reviewing, maintaining, and improving a documented information security management system (ISMS) in the context of the overall business risks for the organization. With an ISO 27001 certification, an organization also demonstrates that it takes the security of (customer) data seriously.

• The implementation of an information security management system that meets all the requirements of ISO/IEC 27001 enables an organization to assess and address the information security risks it faces. • ISO/IEC 27001 helps you understand the practical approaches involved in implementing an information security management system that ensures the confidentiality, integrity, and availability of information through risk management. • Certified ISO/IEC 27001 professionals demonstrate that they possess the necessary expertise to support organizations in implementing information security policies and procedures tailored to the organization's needs, and to promote continuous improvement of the management system and business operations. • Furthermore, you can demonstrate that you have the necessary skills to support the integration process of the information security management system into business processes and ensure that the intended results are achieved.

I am taking this next step in my lifelong learning journey.

1

Applicant Information

2

Billing Information

Why experienced professionals choose TSTC for their studies

Train smarter, not harder. TSTC's unique approach guarantees the effective acquisition of skills and the greatest chance of success.

Learn more about TSTC
Toucan Rhino