ABOUT THE COURSE
The Information Security Management Systems, or ISMS, standard specifies the requirements for establishing, implementing, maintaining and continually improving an information security management system within the context of the organisation. It also includes requirements for the assessment and treatment of information security risks tailored to the needs of the organisation.
This two-day course begins with the understanding of the concept of Information Security Management, the requirements of ISO/IEC 27001:2022 certification standard, and its relation to the ISO 27000 series of standards for information security management. This Internal Auditor course is based on the principles of ISO 19011:2011. It is designed for those people who wish to understand and conduct internal audit assessments to the ISO/IEC 27001:2022 certification standard and its relation to the ISO 27000 series of standards for information security management.
Duration: 2 - day course
WHAT WILL YOU LEARN FROM THE COURSE?
At the end of this course, participants will be able to:
- Appraise the common functions of a cybersecurity framework for organisations
- Evaluate the need to implement an information security management system based upon the context of the organisation and leadership commitment
- Mitigate potential risks through analysis of risk profiles for different areas of the organisation
- Determine security implementation priorities by utilizing relevant methodologies and framework implementation tiers
- Propose mitigation strategies and tactics for information security implementation risks
- Lead process improvement for information security management system
- Evaluate defence-in-depth strategies and controls by conducting internal audits of the information security management system
Note: The purpose of the course ensures a comprehensive transfer of knowledge and understanding on internal audit process with respect to ISO/IEC 27001:2022 requirements.
Topics to be covered in this course include:
- Introduction to ISMS
- Key changes in ISO 27001:2013 vs ISO 27001:2022
- Objectives and benefits of an ISMS
- Key principles and concepts of the ISMS
- Code of practice ISO/IEC 27001:2022
- Certification specification ISO/IEC 27001:2022
- Certification to ISO/IEC 27001:2022
- The ISO 27000 series of standards
- The ISMS Audit Planning
- The ISMS Audit Preparation
- Conducting an ISMS Audit
- Recording the results
- Root Cause Identification
- Presenting reports
- Conducting Audit Follow-Up
WHAT IS THE COURSE METHODOLOGY?
Participants will learn through lectures, case studies, group exercises and discussions.
WHO SHOULD TAKE THE COURSE?
The ISO 27001 internal auditor certification is ideal for anyone aspiring to advance their career in the information security sector. This includes:
- Managers or executives responsible for the security and confidentiality of their business-critical information
- People who wish to understand and conduct internal audit assessments of the ISO 27001:2022 certification standard and its relation to the emerging ISO27000 series of standards for information security management
- Internal Auditors
- Compliance Officers
- Consultants
Prerequisite: Prior experience is not required to attend this course, but a basic understanding of information security concepts is helpful.
WHO IS THE COURSE ADVISOR?
The course content and structure are designed by the domain experts from TÜV SÜD. With immense experience and knowledge of the relevant standards, our team of product specialists and technical experts at TÜV SÜD have developed the course content based on the current business landscape and market requirements.
What are the benefits of enrolling in this course?
- Foster successful innovation – Explore various stages of innovation process, from idea inception to implementation, to create effective sustainability innovation strategies
- Build robust organisational frameworks - Balance between organisational, business and sustainability needs to seize opportunities for innovation
- Achieve optimal results without compromising affordability - Leverage various funding support options to maximise affordability – receive up to 70% SkillsFuture (SSG) Course Fee Funding*.
- Global recognition powered by leading experts – With a wealth of experience and a strong presence across diverse industries, we excel at understanding and effectively addressing sector-specific sustainability needs. Our personnel certificates provide our customers with greater market opportunities.
FREQUENTLY ASKED QUESTIONS
How do I enroll for the ISO/IEC 27001:2022 Information Security Management System Internal Auditor course?
To enroll, please fill out the form on the webpage accordingly.
What is the funding eligibility criteria?
Self-sponsored learners: Up to 50% of course fees for Singapore Citizens and Permanent Residents between 21 and 39 years old, and up to 70% of course fees for Singapore Citizens above 40 years old.
Company-sponsored learners:
1. SME employers who sponsor the following persons can apply for up to 70% funding
2. All employers can apply for absentee payroll
a. Singapore Citizens and PR: $4.50 per hour, capped at $100,000 per enterprise per calendar year
b. Singapore Citizens aged 30 and above (or Persons with Special Needs aged 13 and above), earning a monthly salary ≤$2,500: 95% of hourly basic salary, capped at $13 per hour

Are there any tests in the middle of the ISO/IEC 27001:2022 Information Security Management System Internal Auditor course?
There are no in-between assessments, but case studies will be included in the ISO/IEC 27001:2022 Information Security Management System Internal Auditor course.
Can I get a refund if I cancel my enrollment?
Yes, please contact us at [email protected] for more details. Terms and conditions apply.
Can I also attend E-learning courses on top of attending the ISO/IEC 27001:2022 Information Security Management System Internal Auditor instructor-led course?
Yes, you can register to any e-learning courses. If you have special requirements, please contact us at [email protected] and we can customise a suitable package for you.
Upon completion of the ISO/IEC 27001:2022 Information Security Management System Internal Auditor course, would I get a certificate for completion?
Yes, you will receive a certificate of completion at the end of the ISO/IEC 27001:2022 Information Security Management System Internal Auditor course. You will also receive a Statement of Attainment from SSG subject to your achievement of a Competency grading for the final assessments.
Who developed the ISO/IEC 27001:2022 Information Security Management System Internal Auditor course and what are their qualifications?
The ISO/IEC 27001:2022 Information Security Management System Internal Auditor course content and structure are designed by the domain experts from TÜV SÜD. With immense experience and knowledge in the relevant standards, our team of product specialists and technical experts at TÜV SÜD, developed the ISO/IEC 27001:2022 Information Security Management System Internal Auditor course content based on current business landscape and market requirements. The experts also undergo relevant upskilling programmes, benefitting from TÜV SÜD’s 150 years of expertise and global heritage.
