Skip to content
EasyUphillTRAININGCORPORATE DEVELOPMENT
Governance, Risk & Compliance

Information Security Governance under ISO 27001

This course prepares delegates to establish and govern an information security management system aligned with ISO 27001. Participants cover risk assessment, the Annex A controls, statements of applicability, and the governance and audit activities that keep the system alive. The programme balances the management system requirements with the practical selection of security controls.

5 DaysIn-house or publicLive online available

Course outline

What this programme covers, module by module.

  1. 01Establishing the scope and context of an ISMS
  2. 02Conducting security risk assessment and treatment
  3. 03Selecting and justifying Annex A controls
  4. 04Preparing a statement of applicability
  5. 05Governing and auditing the security management system
  6. 06Preparing for certification and surveillance audits

What you will gain

  • Establish the scope and context of an ISMS
  • Conduct information security risk assessment and treatment
  • Select and justify Annex A controls
  • Prepare a statement of applicability
  • Govern and audit the security management system
  • Prepare for certification and surveillance audits

Who should attend

  • Information security managers
  • IT governance and risk staff
  • Compliance officers
  • ISMS project teams

Upcoming sessions

DateCityDurationFeesBook
9 to 13 Nov 2026London5 DaysUS$1,800
23 to 27 Nov 2026Dubai5 DaysUS$1,800
7 to 11 Dec 2026Pretoria5 DaysR18,000
11 to 15 Jan 2027Durban5 DaysR18,000
1 to 5 Feb 2027Cape Town5 DaysR18,000
12 to 16 Apr 2027Johannesburg5 DaysR18,000
14 to 18 Jun 2027London5 DaysUS$1,800

Fees are per delegate and exclude VAT. Public intakes are confirmed once minimum numbers are met. We also deliver this course on your own schedule, in-house or live online.

Enquire about this course

Register your team or ask for a tailored in-house quote. We reply within one working day.

WhatsApp usCourse brochure (PDF)
Fees from
R18,000 per delegate
Duration
5 Days
Field
Governance, Risk & Compliance
Formats
In-house, public, online

More in Governance, Risk & Compliance

Governance, Risk & Compliance

Enterprise Risk Management under ISO 31000

Delegates learn to build and run an enterprise risk management framework aligned with the principles and process of ISO 31000. The course covers risk appetite, identification, analysis, evaluation, and treatment, together with the governance and reporting that hold it all together. Practical sessions include building a risk register and calibrating a risk matrix for a real organisation.

5 DaysFrom R18,000 per delegateNext intake 2 to 6 Nov 2026, Johannesburg
View
Governance, Risk & Compliance

Anti-Money Laundering and Financial Crime Compliance

This course equips compliance staff to detect, prevent, and report money laundering and related financial crime. Delegates study customer due diligence, sanctions screening, transaction monitoring, and suspicious activity reporting within a risk-based framework. The programme reflects the recommendations of the Financial Action Task Force and regional regulatory expectations.

3 DaysFrom R13,000 per delegateNext intake 9 to 11 Nov 2026, London
View
Governance, Risk & Compliance

Regulatory Compliance Management Frameworks

Delegates learn to design and operate a structured compliance function that keeps the organisation ahead of its legal and regulatory obligations. The course covers obligation registers, compliance risk assessment, monitoring and testing, and breach management. Emphasis is placed on embedding compliance into business processes rather than treating it as a separate policing activity.

3 DaysFrom R13,000 per delegateNext intake 26 to 28 Oct 2026, London
View