40 minutes · free · certificate valid 1 year
ISO 27001 Staff Awareness
Understand what ISO 27001 is, how an Information Security Management System works, and the part you play in it: the policies you're expected to follow, the everyday controls that protect information, and how incidents, audits, and continual improvement keep certification alive. Finish the final assessment with a score of 75% or higher to earn a certificate, valid for one year.
Done this course before, or already know the material? You can go straight to the final assessment and renew your certificate without re-reading the lessons.
What you'll cover
- 1
What ISO 27001 is
The international standard for information security management, the CIA triad, the risk-based approach, and why certification matters.
- 2
Policies and your responsibilities
The ISMS policy set, why following it is audit-relevant, asset ownership, and who is responsible for what.
- 3
Everyday controls
The controls you touch daily: access and authentication, classification and disposal, physical security and media, backups, change, and suppliers.
- 4
Incidents, audits and improvement
Recognising and reporting security events, how audits work and how to behave in one, and how the ISMS improves over time.
- 5
Final assessment
20 questions drawn at random from the full question bank. Score 75% or higher to earn your certificate.
Questions rotate on every attempt, so retaking a section or the final assessment gives you a different set of questions in a different order, not the same fixed quiz.