logo

ISO Course

course overview

download outline

Select Country and City to View dates & book now

Overview

As application security threats grow increasingly complex, organizations must ensure that all applications, whether internally developed, outsourced, or commercially purchased, are properly secured throughout their lifecycle. ISO/IEC 27034 provides structured guidance for achieving this. By attending this course, participants will gain the skills to plan, manage, and report on audit activities; evaluate an organization’s ONF, its processes, and components associated with application security, the application security management process (ASMP), and the application’s level of trust. This training is ideal for professionals seeking to enhance their auditing capabilities, contribute to organizational compliance, and support the ongoing development of application security practices. Explore more Security training here

Audience

• Auditors seeking to perform and lead audits of application security processes

• Information security and IT professionals responsible for application security governance

• Consultants and managers involved in application security compliance assessments

• Members of audit teams and individuals preparing for ISO/IEC 27034 application security audit

Skills Gained

Upon completing this course, you will be able to:

• Explain the fundamental concepts and principles of application security based on ISO/IEC 27034

• Interpret the ISO/IEC 27034 guidelines for application security from the perspective of an auditor

• Evaluate the application security conformity to ISO/IEC 27034 guidelines, in accordance with the fundamental audit concepts and principles

• Plan, conduct, and close an ISO/IEC 27034 compliance audit, in accordance with ISO/IEC 17021-1 requirements, ISO 19011 guidelines, and other best practices of auditing

• Manage an ISO/IEC 27034 audit program

Prerequisites

• Provisional Auditor: N/A

• Auditor: [Professional experience] Two years: One year of work experience in Application Security | [ASMS project experience] a total of 200 hours

• Lead Auditor: [Professional experience] Five years: Two years of work experience in Application Security | [ASMS project experience] a total of 300 hours

• Senior Lead Auditor: [Professional experience] Ten years: Seven years of work experience in Application Security | [ASMS project experience] a total of 1,000 hours

Outline

The ISO/IEC 42001 Lead Auditor training course is beneficial for professionals seeking to stay ahead of the competition. This training course equips you with the expertise needed to navigate the intricate realm of AI-influenced organisational frameworks, ensuring you are well-prepared to contribute to the success of organisations in this transformative era. After finishing the course, you will be eligible to take the exam. After passing the exam, you will be able to apply for the 'PECB Certified ISO/IEC 42001 Lead Auditor' credential.

This certification proves your professional expertise in auditing organisations against ISO/IEC 42001 based on best auditing practices.

Day 1: Introduction to the artificial intelligence management system and ISO/IEC 42001

Module 1: Training course objectives and structure

Module 2: Introduction to ISO/IEC 42001 and management systems

Module 3: ISO/IEC 42001 certification process

Module 4: Fundamental concepts and principles of artificial intelligence

Module 5: Overview of ISO/IEC 42001 requirements

Day 2: Audit principles and the preparation for and initiation of an audit

Module 6: ISO/IEC 42001 Fundamental audit concepts and principles

Module 7: The impact of other technologies in auditing ISO/IEC 42001

Module 8: ISO/IEC 42001 Evidence-based auditing

Module 9: ISO/IEC 42001 Risk-based auditing

Module 10: Initiation of the ISO/IEC 42001 audit process

Module 11: ISO/IEC 42001 Stage 1 audit

Day 3: On-site audit activities

Module 12: Preparing for the ISO/IEC 42001 stage 2 audit Module 13: ISO/IEC 42001 Stage 2 audit

Module 14: ISO/IEC 42001 Communication during the audit

Module 15: ISO/IEC 42001 Audit procedures

Module 16: Creating ISO/IEC 42001 audit test plans

Module 17: Auditing the requirements of ISO/IEC 42001

Day 4: Closing of the audit

Module 18: Drafting ISO/IEC 42001 audit findings and nonconformity reports

Module 19: ISO/IEC 42001 audit documentation and quality review

Module 20: Closing of the ISO/IEC 42001 audit

Module 21: Evaluation of ISO/IEC 42001 action plans by the auditor

Module 22: Beyond the ISO/IEC 42001 initial audit

Module 23: Managing an internal ISO/IEC 42001 audit program

Exam details: The “PECB Certified ISO/IEC 42001 Lead Auditor” exam, which is included in your course, meets the requirements of the PECB Examination and Certification Program (ECP).

It covers the following competency domains:

    • Domain 1: Fundamental principles and concepts of an AI management system
    • Domain 2: AI management system requirements
    • Domain 3: Fundamental audit concepts and principles
    • Domain 4: Preparing an ISO/IEC 42001 audit
    • Domain 5: Conducting an ISO/IEC 42001 audit
    • Domain 6: Closing an ISO/IEC 42001 audit
    • Domain 7: Managing an ISO/IEC 42001 audit program

For specific information about the exam type, languages available, and other details, please visit the List of PECB Exams and Exam Rules and Policies.

What's included: Participants receive training course materials containing over 400 pages of information, practical examples, exercises, and quizzes. An attestation of course completion worth 31 CPD (Continuing Professional Development) credits will be issued to the participants who have attended the training course. Candidates who have completed the training course but failed the exam are eligible to retake the exam once for free within 12 months from the initial date of the exam.

. Explore more Security training here

Certification

ISO/IEC 27034 Lead Auditor

What is the ISO/IEC 27034 Lead Application Security Auditor course about?

The ISO/IEC 27034 Lead Application Security Auditor course provides practical knowledge and skills used by professionals working with this technology or framework.

Who should attend the ISO/IEC 27034 Lead Application Security Auditor training course?

This course is designed for IT professionals, engineers, analysts, administrators and project teams who need hands-on knowledge.

Does the ISO/IEC 27034 Lead Application Security Auditor course include certification or an exam?

Many ISO/IEC 27034 Lead Application Security Auditor courses prepare participants for vendor certification exams or digital badges depending on the programme.

How can I enrol in the ISO/IEC 27034 Lead Application Security Auditor course?

Visit the course page or Explore more Security training here

Talk to an expert

Thinking about Onsite?

If you need training for 3 or more people, you should ask us about onsite training. Putting aside the obvious location benefit, content can be customised to better meet your business objectives and more can be covered than in a public classroom. Its a cost effective option. One on one training can be delivered too, at reasonable rates.

Submit an enquiry from any page on this site and let us know you are interested in the requirements box, or simply mention it when we contact you.

All $ prices are in USD unless it’s a NZ or AU date

SPVC = Self Paced Virtual Class

LVC = Live Virtual Class

Please Note: All courses are availaible as Live Virtual Classes

Trusted by over 1/2 million students in 15 countries

Our clients have included prestigious national organisations such as Oxford University Press, multi-national private corporations such as JP Morgan and HSBC, as well as public sector institutions such as the Department of Defence and the Department of Health.