Develop the expertise to implement, manage, and maintain information security controls based on the internationally recognized ISO/IEC 27002 standard. The ISO/IEC 27002 Manager Training & Certification course provides practical knowledge for selecting, implementing, and managing security controls that help organizations reduce information security risks and strengthen their Information Security Management System (ISMS).
Throughout this self-paced PECB training, you'll gain a comprehensive understanding of ISO/IEC 27002 best practices, learn how information security controls support ISO/IEC 27001 implementation, and discover how to manage security risks across organizational, people, physical, and technological domains.
After successfully completing the course, you can take the certification exam and apply for the PECB Certified ISO/IEC 27002 Manager credential, demonstrating your professional competence in managing information security controls based on internationally recognized best practices.
Who Should Attend?
This course is ideal for:
Managers involved in implementing or managing an Information Security Management System (ISMS) based on ISO/IEC 27001
Information security managers and coordinators
IT professionals and consultants seeking to expand their information security expertise
Members of an ISMS implementation or information security team
Professionals responsible for selecting, implementing, and managing information security controls
Individuals pursuing a career in information security management
Learning Objectives
Upon completing this course, you will be able to:
Explain the core principles of information security, cybersecurity, and privacy based on ISO/IEC 27002
Understand the relationship between ISO/IEC 27001, ISO/IEC 27002, and other information security standards and regulatory frameworks
Select appropriate information security controls based on organizational risks
Support the implementation and ongoing management of ISO/IEC 27002 information security controls
Apply industry best practices for protecting organizational information assets
Strengthen an organization's Information Security Management System (ISMS)
Educational Approach
This self-paced training combines theory with practical implementation guidance to help participants develop real-world information security management skills.
The course includes:
Official PECB training materials
Practical implementation examples
Interactive exercises and quizzes
Discussions based on industry best practices
Practice questions designed to reflect the certification exam
Real-world information security management scenarios
Prerequisites
Participants should have:
A fundamental understanding of ISO/IEC 27002
General knowledge of information security principles and practices
Course Agenda
Day 1
Introduction to ISO/IEC 27002
Day 2
Information assets
People controls
Physical controls
Operational security controls
Day 3
Information security incident management
Monitoring information security controls
Certification examination
Examination
The PECB Certified ISO/IEC 27002 Manager Exam fully meets the requirements of the PECB Examination and Certification Program (ECP).
The examination evaluates the following competency domains:
Domain 1: Fundamental principles and concepts of information security, cybersecurity, and privacy
Domain 2: Information security controls based on ISO/IEC 27002
Certification Requirements
After successfully passing the examination, you may apply for one of the following PECB credentials.
Credential
Exam
Professional Experience
Information Security Management Experience
Other Requirements
PECB Certified ISO/IEC 27002 Provisional Manager
Pass the PECB ISO/IEC 27002 Manager Exam (or equivalent)
None
None
Sign the PECB Code of Ethics
PECB Certified ISO/IEC 27002 Manager
Pass the PECB ISO/IEC 27002 Manager Exam (or equivalent)
Two years of professional experience, including one year in Information Security Management
A minimum of 200 hours of Information Security Management activities
Sign the PECB Code of Ethics
To qualify, Information Security Management activities should follow recognized implementation and management best practices and typically include:
Drafting an ISMS implementation plan
Managing information security implementation projects
Implementing information security processes
Selecting and implementing ISO/IEC 27002 information security controls
General Information
Certification and examination fees are included in the course price.
Official PECB training materials containing more than 350 pages of practical guidance and examples are included.
Participants who complete the course receive an Attestation of Course Completion worth 21 Continuing Professional Development (CPD) credits.
Candidates who do not pass the exam on their first attempt may retake it once within 12 months at no additional cost.
Training Format
Self-Study
Study at your own pace with flexible online learning.
The self-study package includes:
Official PECB course materials
Practical examples and implementation guidance
Interactive quizzes and exercises
Practice examination questions
Standard documentation and supporting resources
Self-paced online access for maximum flexibility
This format allows professionals to prepare for certification while balancing work and personal commitments.