PECB Certified ISO 27005 Lead Risk Manager

Master the fundamental principles and concepts of Risk Assessment and Optimal Risk Management in Information Security based on ISO/IEC 27005

Select the training mode

Training description

Training program
Day 1
Introduction to ISO 27005, concepts and implementation of a risk management program
  • Course objectives and structure
  • Standard and regulatory framework
  • Concepts and definitions of risk
  • Implementing a risk management programme
  • Context establishment
Day 2
Risk identification, evaluation, and treatment as specified in ISO 27005
  • Risk Indentification
  • Risk Analysis
  • Risk Evaluation
  • Risk Assessment with a quantitive method
  • Risk Treatment
Day 3
Information Security Risk Acceptance, Communication, Consultation, Monitoring and Review
  • Information security risk acceptance
  • Information security risk communication and consultation
  • Information security risk monitoring and review
Day 4
Risk Assessment Methodologies
  • OCTAVE Method
  • MEHARI Method
  • EBIOS Method
  • Harmonized Treat and Risk Assessment (TRA) Method
  • Applying for certification and closing the training
Day 5
Certification Exam
Who should attend?
  • Information Security risk managers
  • Information Security team members
  • Individuals responsible for Information Security, compliance, and risk within an organization
  • Individuals implementing ISO/IEC 27001, seeking to comply with ISO/IEC 27001 or individuals who are involved in a risk management program
  • IT consultants
  • IT professionals
  • Information Security officers
  • Privacy officers
Training objectives
  • Master the concepts, approaches, methods and techniques that enable an effective risk management process based on ISO/IEC 27005
  • Acknowledge the correlation between Information Security risk management and security controls
  • Learn how to interpret the requirements of ISO/IEC 27001 in Information Security Risk Management
  • Acquire the competence and skills to effectively advise organizations on Information Security Risk Management best practices
  • Acquire the knowledge necessary for the implementation, management and maintenance of an ongoing risk management program
Exam
  • Duration: 3 hours
  • The “PECB Certified ISO/IEC 27005 Lead Risk Manager” exam fully meets the requirements of the PECB Examination and Certification Programme (ECP). The exam covers the following competency domains:
    • Domain 1: Fundamental principles and concepts of Information Security Risk Management

    • Domain 2: Implementation of an Information Security Risk Management program

    • Domain 3: Information security risk assessment

    • Domain 4: Information security risk treatment

    • Domain 5: Information security risk communication, monitoring and improvement

    • Domain 6: Information security risk assessment methodologie

Certification
After successfully completing the exam, you can apply for the credentials shown on the table below. You will receive a certificate once you comply with all the requirements related to the selected credential.
Certificate name
PECB Certifed ISO/IEC 27005 Provisional Risk Manager
Exam name
PECB Certified ISO/IEC 27005 Lead Risk Manager Exam or equivalent
Experience
None
Information Security Risk Management experience
None
Other requirements
Signing the PECB Code of Ethics
Certificate name
PECB Certifed ISO/IEC 27005 Risk Manager
Exam name
PECB Certified ISO/IEC 27005 Lead Risk Manager Exam or equivalent
Experience
Two years: One year of work experience in ISRM
Information Security Risk Management experience
Information Security Risk Management activities: a total of 200 hours
Other requirements
Signing the PECB Code of Ethics
Certificate name
PECB Certifed ISO/IEC 27005 Lead Risk Manager
Exam name
PECB Certifed ISO/IEC 27005 Lead Risk Manager exam or equivalent
Experience
Five years: Two years of work experience in ISRM
Information Security Risk Management experience
Information Security Risk Management activities: a total of 300 hours
Other requirements
Signing the PECB Code of Ethics
Certificate name
PECB Certified ISO/IEC 27005 Senior Lead Risk Manager
Exam name
PECB Certified ISO/IEC 27005 Lead Risk Manager Exam or equivalent
Experience
Ten years: Seven years of work experience in ISRM
Information Security Risk Management experience
Information Security Risk Management activities: a total of 1,000 hours
Other requirements
Signing the PECB Code of Ethics

To be considered valid, the information security activities should follow best implementation and management practices and include the following:

  1. Defining a risk management approach
  2. Determining the basic criteria, objectives, scope and boundaries
  3. Identifying assets, threats, existing controls, vulnerabilities and consequences (impacts)
  4. Assessing consequences and incident likelihood
  5. Performing risk assessment
  6. Designing and implementing an overall risk management process for an organization
  7. Defining risk evaluation criteria
  8. Evaluating risk treatment options
  9. Determining the risk acceptance criteria
  10. Selecting and implementing Information Security controls
  11. Determining the risk communication plans and objectives
  12. Performing risk management monitoring and reviews
What do you get?
certificate of participation
meetings with experts
best practices / experiences
innovative forms of classes
competitive prices
General information
  • Certification fees are included on the exam price
  • Training material containing over 450 pages of information and practical examples will be distributed
  • A participation certificate of 31 CPD (Continuig Professional Development) credits will be issued
  • In case of exam failure, you can retake the exam within 12 months for free
  • Minimum number of people: stationary training and online training with a trainer - 5
  • Check the date of training in the training schedule
Gross price
  • Stationary - 6 150,00 PLN
  • Online training - 5 610,00 PLN
  • Self-study with the support of a trainer - 4 880,00 PLN
  • Self-study - 3 325,00 PLN
PECB Certified ISO 27001 Foundation
Become acquainted with the best practices of Information Security Management Systems (ISMS) based on ISO/IEC 27001
PECB Certified ISO 27001 Lead Implementer
Master the implementation and management of Information Security Management Systems (ISMS) based on ISO/IEC 27001
PECB Certified ISO 27001 Lead Auditor
Master the Audit of Information Security Management Systems (ISMS) based on ISO/IEC 27001
Contact us
Resilia Sp. z o.o.
Resilia Sp. z o. o.
43 Żurawia Street, Ap. 205
00-680 Warsaw
KRS 0000379789
NIP 5222972858
REGON 142839818

I consent to the processing of my personal data (in the form of full name, telephone number, e-mail address) by Resilia Spółka z o.o. (Resilia Ltd.) in order to conduct marketing activities regarding its products or services, including sending commercial information in the form of:


Providing personal data and consenting to their processing is voluntary.

The consent to the processing of personal data may be withdrawn at any time by submitting a declaration - in writing - to the address of Resilia sp. z o. o. (Resilia Ltd.) ul. Żurawia 43 lok (office premises no.) 205, 00-680 Warsaw or electronically - to the address kontakt@resilia.pl.

The administrator of your personal data is Resilia Spółka z o.o. (Resilia Ltd.). The full information clause regarding the processing of personal data can be found here..

Dziękujemy za przesłanie formularza z pytaniem. Postaramy się jak najszybciej na nie odpowiedzieć!
Niestety formularza nie udało się wysłać. Proszę spróbować ponownie później lub skontaktować się z nami bezpośrednio.

    I consent to the processing of my personal data
    (in the form of full name, telephone number, e-mail address) by
    Resilia Spółka z o.o. (Resilia Ltd.) in order
    to conduct marketing activities regarding its products or services,
    including sending commercial information in the form of:

    Providing personal data and consenting to their processing is voluntary.

    The consent to the processing of personal data may be withdrawn at any
    time by submitting a declaration - in writing - to the address of Resilia sp.
    z o. o. (Resilia Ltd.) ul. Żurawia 43 lok (office premises no.) 205, 00-680
    Warsaw or electronically - to the address
    kontakt@resilia.pl