SlideShare uma empresa Scribd logo
1 de 4
Baixar para ler offline
CERTIFIED ISO 27034
LEAD AUDITOR
MASTERING THE AUDIT OF IT - SECURITY TECHNIQUES – APPLICATION SECURITY
BASED ON ISO 27034, IN COMPLIANCE WITH THE REQUIREMENTS OF ISO 19011 AND
ISO 17021
SUMMARY
This five-day intensive course enables the participants develop the necessary expertise to audit an Information technology
- Security techniques – Application Security as specified in ISO/IEC 27034, and manage a team of auditors by applying
widely recognized audit principles, procedures and techniques. During this training, the participant will acquire the
necessary knowledge and skills to proficiently plan and perform internal and external audits in compliance with ISO
19011 and ISO 17021. Based on practical exercises, the participant will develop the skills (mastering audit techniques)
and competencies (managing audit teams and audit program, communicating with customers, conflict resolution, etc.)
necessary for efficient conduct of an audit.

COURSE AGENDA

DURATION: 5 DAYS

DAY 1
Introduction to IT - Security techniques –
Application Security overview and concepts
as required by ISO 27034
▶▶ 	 ormative, regulatory and legal framework related to
N
application security
▶▶ 	 undamental principles of Application Security
F
▶▶ 	SO 27034 certification process
I
▶▶ 	T - Security Techniques – Application Security
I
▶▶ 	 etailed presentation of the clauses of ISO 27034
D

DAY 3
Conducting an ISO 27034 audit
▶▶ 	 ommunication during the audit
C
▶▶ 	 udit procedures: observation, document review,
A
interview, sampling techniques, technical verification,
corroboration and evaluation
▶▶ 	 udit test plans
A
▶▶ 	 ormulation of the audit findings
F
▶▶ 	 ocumenting nonconformities
D

DAY 5

DAY 2
Planning and initiating an ISO 27034 audit
▶▶
▶▶
▶▶
▶▶
▶▶

F
	 undamental audit concepts and principles
A
	 udit the approach based on evidence and risk
P
	 reparation of an ISO 27034 audit
A
	 pplication Security documentation audit
C
	 onducting an opening meeting

DAY 4
Concluding and ensuring the follow-up of
an ISO 27034 audit
▶▶ 	 udit documentation
A
▶▶ 	 uality review
Q
▶▶ 	 onducting a closing meeting and conclusion of an
C
ISO 27034 audit
▶▶ 	 valuation of corrective action plans
E
▶▶ 	SO 27034 surveillance audit
I
▶▶ ISO 27034 internal audit management program

Certification Exam
www.pecb.org
WHO SHOULD ATTEND?
▶▶
▶▶
▶▶
▶▶
▶▶
▶▶
▶▶

I
	nternal auditors
A
	 uditors wanting to perform and lead IT - Security techniques – Application Security audit
Project managers or consultants who want to master the IT - Security techniques – Application Security audit process
C
	 xO and senior managers responsible for the IT governance of an enterprise and the management of its risks
M
	 embers of an information security team
Expert advisors in Information Technology
Technical experts wanting to prepare for Application Security audit function

LEARNING OBJECTIVES
▶▶ 	 o acquire the expertise needed to perform an ISO 27034 internal audit following the ISO 19011 guidelines
T
▶▶ 	 o acquire the expertise needed to perform an ISO 27034 audit following the ISO 19011 guidelines and the
T
specifications of ISO 17021 and ISO 27006
▶▶ 	 o acquire the necessary expertise to manage an IT - Application Security audit team
T
▶▶ 	 o understand the operation of an ISO 27034 conformant Application Security management system
T
▶▶ 	 o understand the relationship between an IT - Security techniques – Application Security, including risk
T
management, controls and compliance with the requirements of different stakeholders of the organization
▶▶ 	 o improve the ability to analyze the internal and external environment of an organization, its risk assessment and
T
audit decision-making

PECB

www.pecb.org

Certified
ISO 27034
Lead Auditor
EXAMINATION
▶▶ The “Certified ISO 27034 Lead Auditor” exam fully meets the requirements of the PECB Examination and
Certification Program (ECP). The exam covers the following competence domains:
DOMAIN 1: FUNDAMENTAL PRINCIPLES AND CONCEPTS IN APPLICATION SECURITY

1

Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can understand, interpret and illustrate the
main Application Security concepts related to an Information Technology Application Security (AS)
DOMAIN 2: INFORMATION TECHNOLOGY APPLICATION SECURITY (AS)

2

Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can understand, interpret and illustrate the
main concepts and components of an Information Technology Application Security based on ISO 27034
DOMAIN 3: FUNDAMENTAL AUDIT CONCEPTS AND PRINCIPLES

3

Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can understand, interpret and apply the
main concepts and principles related to an AS audit in the context of ISO 27034
DOMAIN 4: PREPARATION OF AN ISO 27034 AUDIT

4

Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can prepare appropriately an AS audit in
the context of ISO 27034
DOMAIN 5: CONDUCT OF AN ISO 27034 AUDIT

5

Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can conduct efficiently an AS audit in the
context of ISO 27034
DOMAIN 6: CONCLUSION AND FOLLOW-UP OF AN ISO 27034 AUDIT

6

Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can conclude an AS audit and conduct
follow-up activities in the context of ISO 27034
DOMAIN 7: MANAGEMENT OF AN ISO 27034 AUDIT PROGRAM

7

Main Objective: To ensure that the ISO 27034 Lead Auditor understands how to establish and manage an AS
audit program

▶▶ The “Certified ISO/IEC 27034 Lead Auditor” exam is available in different languages, including English, French,
Spanish and Portuguese
▶▶ Duration: 3 hours
▶▶ For more information about the exam, please visit: www.pecb.org

www.pecb.org
CERTIFICATION
▶▶ 	 fter successfully completing the exam, participants can apply for the credentials of Certified ISO/IEC 27034
A
Provisional Auditor, Certified ISO/IEC 27034 Auditor or Certified ISO/IEC 27034 Lead Auditor depending on their
level of experience. Those credentials are available for internal and external auditors
▶▶ A certificate will be issued to those participants who successfully pass the exam and comply with all the other
requirements related to the selected credential:
Credential

Exam

Professional
Experience

ITST Audit
Experience

ITST Project
Experience

Other
Requirements

ISO 27034
Provisional
Auditor

ISO 27034
Lead Auditor
Exam

None

None

None

Signing the
PECB
code of ethics

ISO 27034
Auditor

ISO 27034
Lead Auditor
Exam

Two years
One year of
Information
Technology
Security Techniques
work experience

Audit activities
totaling
200 hours

None

Signing the
PECB
code of ethics

ISO 27034
Lead
Auditor

ISO 27034
Lead Auditor
Exam

Five years
Two years of
Information
Technology
Security Techniques
work experience

Audit activities
totaling
300 hours

None

Signing the
PECB
code of ethics

GENERAL INFORMATION
▶▶
▶▶
▶▶
▶▶

Certification fees are included in the exam price
Participant manual contains over 450 pages of information and practical examples
A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued to the participants
In case of failure of the exam, participants are allowed to retake it for free under certain conditions

For additional information,
please contact us at info@pecb.org

www.pecb.org

PECB

Certified
ISO 27034
Lead Auditor

Mais conteúdo relacionado

Mais procurados

ISO 17025 Lead Auditor - Two Page Brochure
ISO 17025 Lead Auditor - Two Page Brochure	ISO 17025 Lead Auditor - Two Page Brochure
ISO 17025 Lead Auditor - Two Page Brochure PECB
 
ISO 17025 Lead Auditor - One Page Brochure
ISO 17025 Lead Auditor - One Page BrochureISO 17025 Lead Auditor - One Page Brochure
ISO 17025 Lead Auditor - One Page BrochurePECB
 
Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015
Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015
Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015usama eladl
 
ISO 13053 Lead Auditor - Two Page Brochure
ISO 13053 Lead Auditor - Two Page Brochure	ISO 13053 Lead Auditor - Two Page Brochure
ISO 13053 Lead Auditor - Two Page Brochure PECB
 
ISO 50001 Lead Auditor – Four Page Brochure
ISO 50001 Lead Auditor – Four Page Brochure	ISO 50001 Lead Auditor – Four Page Brochure
ISO 50001 Lead Auditor – Four Page Brochure PECB
 
ISO 20121 Lead Auditor - Two Page Brochure
ISO 20121 Lead Auditor - Two Page Brochure	ISO 20121 Lead Auditor - Two Page Brochure
ISO 20121 Lead Auditor - Two Page Brochure PECB
 
Certified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page BrochureCertified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page BrochurePECB
 
ISO 22301 Lead Auditor – Two Page Brochure
ISO 22301 Lead Auditor – Two Page BrochureISO 22301 Lead Auditor – Two Page Brochure
ISO 22301 Lead Auditor – Two Page BrochurePECB
 
ISO 20121 Lead Auditor - One Page Brochure
ISO 20121 Lead Auditor - One Page Brochure	ISO 20121 Lead Auditor - One Page Brochure
ISO 20121 Lead Auditor - One Page Brochure PECB
 
ISO 13485 Lead Auditor - Two Page Brochure
ISO 13485 Lead Auditor - Two Page BrochureISO 13485 Lead Auditor - Two Page Brochure
ISO 13485 Lead Auditor - Two Page BrochurePECB
 
ISO 13485 Lead Auditor - One Page Brochure
ISO 13485 Lead Auditor - One Page BrochureISO 13485 Lead Auditor - One Page Brochure
ISO 13485 Lead Auditor - One Page BrochurePECB
 
ISO 50001 Lead Auditor - Two Page Brochure
ISO 50001 Lead Auditor - Two Page Brochure	ISO 50001 Lead Auditor - Two Page Brochure
ISO 50001 Lead Auditor - Two Page Brochure PECB
 
ISO 13053 Lead Auditor - One Page Brochure
ISO 13053 Lead Auditor - One Page Brochure	ISO 13053 Lead Auditor - One Page Brochure
ISO 13053 Lead Auditor - One Page Brochure PECB
 
ISO 22301 Lead Auditor - One Page Brochure
ISO 22301 Lead Auditor - One Page BrochureISO 22301 Lead Auditor - One Page Brochure
ISO 22301 Lead Auditor - One Page BrochurePECB
 
ISO 50001 Lead Auditor - One Page Brochure
ISO 50001 Lead Auditor - One Page Brochure	ISO 50001 Lead Auditor - One Page Brochure
ISO 50001 Lead Auditor - One Page Brochure PECB
 

Mais procurados (16)

ISO 17025 Lead Auditor - Two Page Brochure
ISO 17025 Lead Auditor - Two Page Brochure	ISO 17025 Lead Auditor - Two Page Brochure
ISO 17025 Lead Auditor - Two Page Brochure
 
ISO 17025 Lead Auditor - One Page Brochure
ISO 17025 Lead Auditor - One Page BrochureISO 17025 Lead Auditor - One Page Brochure
ISO 17025 Lead Auditor - One Page Brochure
 
Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015
Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015
Certified OHSAS-18001-Lead-Auditor.>>> CAIRO IN JULY19,2015
 
ISO 13053 Lead Auditor - Two Page Brochure
ISO 13053 Lead Auditor - Two Page Brochure	ISO 13053 Lead Auditor - Two Page Brochure
ISO 13053 Lead Auditor - Two Page Brochure
 
ISO 50001 Lead Auditor – Four Page Brochure
ISO 50001 Lead Auditor – Four Page Brochure	ISO 50001 Lead Auditor – Four Page Brochure
ISO 50001 Lead Auditor – Four Page Brochure
 
ISO 20121 Lead Auditor - Two Page Brochure
ISO 20121 Lead Auditor - Two Page Brochure	ISO 20121 Lead Auditor - Two Page Brochure
ISO 20121 Lead Auditor - Two Page Brochure
 
Certified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page BrochureCertified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page Brochure
 
ISO 22301 Lead Auditor – Two Page Brochure
ISO 22301 Lead Auditor – Two Page BrochureISO 22301 Lead Auditor – Two Page Brochure
ISO 22301 Lead Auditor – Two Page Brochure
 
ISO 20121 Lead Auditor - One Page Brochure
ISO 20121 Lead Auditor - One Page Brochure	ISO 20121 Lead Auditor - One Page Brochure
ISO 20121 Lead Auditor - One Page Brochure
 
ISO 13485 Lead Auditor - Two Page Brochure
ISO 13485 Lead Auditor - Two Page BrochureISO 13485 Lead Auditor - Two Page Brochure
ISO 13485 Lead Auditor - Two Page Brochure
 
ISO 13485 Lead Auditor - One Page Brochure
ISO 13485 Lead Auditor - One Page BrochureISO 13485 Lead Auditor - One Page Brochure
ISO 13485 Lead Auditor - One Page Brochure
 
ISO 50001 Lead Auditor - Two Page Brochure
ISO 50001 Lead Auditor - Two Page Brochure	ISO 50001 Lead Auditor - Two Page Brochure
ISO 50001 Lead Auditor - Two Page Brochure
 
ISO 13053 Lead Auditor - One Page Brochure
ISO 13053 Lead Auditor - One Page Brochure	ISO 13053 Lead Auditor - One Page Brochure
ISO 13053 Lead Auditor - One Page Brochure
 
2016-10_API-570
2016-10_API-5702016-10_API-570
2016-10_API-570
 
ISO 22301 Lead Auditor - One Page Brochure
ISO 22301 Lead Auditor - One Page BrochureISO 22301 Lead Auditor - One Page Brochure
ISO 22301 Lead Auditor - One Page Brochure
 
ISO 50001 Lead Auditor - One Page Brochure
ISO 50001 Lead Auditor - One Page Brochure	ISO 50001 Lead Auditor - One Page Brochure
ISO 50001 Lead Auditor - One Page Brochure
 

Semelhante a ISO 27034 Lead Auditor - Four Page Brochure

ISO 27034 Lead Implementer - Four Page Brochure
ISO 27034 Lead Implementer - Four Page Brochure	ISO 27034 Lead Implementer - Four Page Brochure
ISO 27034 Lead Implementer - Four Page Brochure PECB
 
ISO 21500 Lead Auditor - Four Page Brochure
ISO 21500 Lead Auditor - Four Page BrochureISO 21500 Lead Auditor - Four Page Brochure
ISO 21500 Lead Auditor - Four Page BrochurePECB
 
ISO 22301 Lead Auditor - Four Page Brochure
ISO 22301 Lead Auditor - Four Page BrochureISO 22301 Lead Auditor - Four Page Brochure
ISO 22301 Lead Auditor - Four Page BrochurePECB
 
Iso9001leadauditor fourpage-131129094738-phpapp01
Iso9001leadauditor fourpage-131129094738-phpapp01Iso9001leadauditor fourpage-131129094738-phpapp01
Iso9001leadauditor fourpage-131129094738-phpapp01Jose P. Banuelos
 
Certified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page BrochureCertified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page BrochurePECB
 
Certified ISO 22000 Lead Auditor – Four Page Brochure
Certified ISO 22000 Lead Auditor – Four Page BrochureCertified ISO 22000 Lead Auditor – Four Page Brochure
Certified ISO 22000 Lead Auditor – Four Page BrochurePECB
 
Certified ISO 22000 Lead Auditor - Four Page Brochure
Certified ISO 22000 Lead Auditor - Four Page BrochureCertified ISO 22000 Lead Auditor - Four Page Brochure
Certified ISO 22000 Lead Auditor - Four Page BrochurePECB
 
ISO 13485 Lead Auditor - Four Page Brochure
ISO 13485 Lead Auditor - Four Page Brochure	ISO 13485 Lead Auditor - Four Page Brochure
ISO 13485 Lead Auditor - Four Page Brochure PECB
 
ISO 21500 Lead Implementer - Four Page Brochure
ISO 21500 Lead Implementer - Four Page BrochureISO 21500 Lead Implementer - Four Page Brochure
ISO 21500 Lead Implementer - Four Page BrochurePECB
 
ISO 17025 Lead Auditor - Four Page Brochure
ISO 17025 Lead Auditor - Four Page BrochureISO 17025 Lead Auditor - Four Page Brochure
ISO 17025 Lead Auditor - Four Page BrochurePECB
 
ISO 39001 Lead Auditor - Four Page Brochure
ISO 39001 Lead Auditor - Four Page Brochure	ISO 39001 Lead Auditor - Four Page Brochure
ISO 39001 Lead Auditor - Four Page Brochure PECB
 
ISO 22301 Lead Implementer - Four Page Brochure
ISO 22301 Lead Implementer - Four Page BrochureISO 22301 Lead Implementer - Four Page Brochure
ISO 22301 Lead Implementer - Four Page BrochurePECB
 
ISO 29001 Lead Auditor - Four Page Brochure
ISO 29001 Lead Auditor - Four Page Brochure	ISO 29001 Lead Auditor - Four Page Brochure
ISO 29001 Lead Auditor - Four Page Brochure PECB
 
ISO 29001 Lead Auditor - Two Page Brochure
ISO 29001 Lead Auditor - Two Page Brochure	ISO 29001 Lead Auditor - Two Page Brochure
ISO 29001 Lead Auditor - Two Page Brochure PECB
 
Certified ISO 22000 Lead Implementer – Four Page Brochure
Certified ISO 22000 Lead Implementer –  Four Page BrochureCertified ISO 22000 Lead Implementer –  Four Page Brochure
Certified ISO 22000 Lead Implementer – Four Page BrochurePECB
 
Certified ISO 22000 Lead Implementer – Four Page Brochure
Certified ISO 22000 Lead Implementer –  Four Page BrochureCertified ISO 22000 Lead Implementer –  Four Page Brochure
Certified ISO 22000 Lead Implementer – Four Page BrochurePECB
 
ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training Drew Kahrs
 
ISO 27034 Lead Implementer - One Page Brochure
ISO 27034 Lead Implementer - One Page Brochure	ISO 27034 Lead Implementer - One Page Brochure
ISO 27034 Lead Implementer - One Page Brochure PECB
 
ISO 17025 Lead Implementer - Four Page Brochure
ISO 17025 Lead Implementer - Four Page Brochure	ISO 17025 Lead Implementer - Four Page Brochure
ISO 17025 Lead Implementer - Four Page Brochure PECB
 
Certified iso-9001-lead-auditor
Certified iso-9001-lead-auditorCertified iso-9001-lead-auditor
Certified iso-9001-lead-auditorusama eladl
 

Semelhante a ISO 27034 Lead Auditor - Four Page Brochure (20)

ISO 27034 Lead Implementer - Four Page Brochure
ISO 27034 Lead Implementer - Four Page Brochure	ISO 27034 Lead Implementer - Four Page Brochure
ISO 27034 Lead Implementer - Four Page Brochure
 
ISO 21500 Lead Auditor - Four Page Brochure
ISO 21500 Lead Auditor - Four Page BrochureISO 21500 Lead Auditor - Four Page Brochure
ISO 21500 Lead Auditor - Four Page Brochure
 
ISO 22301 Lead Auditor - Four Page Brochure
ISO 22301 Lead Auditor - Four Page BrochureISO 22301 Lead Auditor - Four Page Brochure
ISO 22301 Lead Auditor - Four Page Brochure
 
Iso9001leadauditor fourpage-131129094738-phpapp01
Iso9001leadauditor fourpage-131129094738-phpapp01Iso9001leadauditor fourpage-131129094738-phpapp01
Iso9001leadauditor fourpage-131129094738-phpapp01
 
Certified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page BrochureCertified ISO 22000 Lead Auditor - Two Page Brochure
Certified ISO 22000 Lead Auditor - Two Page Brochure
 
Certified ISO 22000 Lead Auditor – Four Page Brochure
Certified ISO 22000 Lead Auditor – Four Page BrochureCertified ISO 22000 Lead Auditor – Four Page Brochure
Certified ISO 22000 Lead Auditor – Four Page Brochure
 
Certified ISO 22000 Lead Auditor - Four Page Brochure
Certified ISO 22000 Lead Auditor - Four Page BrochureCertified ISO 22000 Lead Auditor - Four Page Brochure
Certified ISO 22000 Lead Auditor - Four Page Brochure
 
ISO 13485 Lead Auditor - Four Page Brochure
ISO 13485 Lead Auditor - Four Page Brochure	ISO 13485 Lead Auditor - Four Page Brochure
ISO 13485 Lead Auditor - Four Page Brochure
 
ISO 21500 Lead Implementer - Four Page Brochure
ISO 21500 Lead Implementer - Four Page BrochureISO 21500 Lead Implementer - Four Page Brochure
ISO 21500 Lead Implementer - Four Page Brochure
 
ISO 17025 Lead Auditor - Four Page Brochure
ISO 17025 Lead Auditor - Four Page BrochureISO 17025 Lead Auditor - Four Page Brochure
ISO 17025 Lead Auditor - Four Page Brochure
 
ISO 39001 Lead Auditor - Four Page Brochure
ISO 39001 Lead Auditor - Four Page Brochure	ISO 39001 Lead Auditor - Four Page Brochure
ISO 39001 Lead Auditor - Four Page Brochure
 
ISO 22301 Lead Implementer - Four Page Brochure
ISO 22301 Lead Implementer - Four Page BrochureISO 22301 Lead Implementer - Four Page Brochure
ISO 22301 Lead Implementer - Four Page Brochure
 
ISO 29001 Lead Auditor - Four Page Brochure
ISO 29001 Lead Auditor - Four Page Brochure	ISO 29001 Lead Auditor - Four Page Brochure
ISO 29001 Lead Auditor - Four Page Brochure
 
ISO 29001 Lead Auditor - Two Page Brochure
ISO 29001 Lead Auditor - Two Page Brochure	ISO 29001 Lead Auditor - Two Page Brochure
ISO 29001 Lead Auditor - Two Page Brochure
 
Certified ISO 22000 Lead Implementer – Four Page Brochure
Certified ISO 22000 Lead Implementer –  Four Page BrochureCertified ISO 22000 Lead Implementer –  Four Page Brochure
Certified ISO 22000 Lead Implementer – Four Page Brochure
 
Certified ISO 22000 Lead Implementer – Four Page Brochure
Certified ISO 22000 Lead Implementer –  Four Page BrochureCertified ISO 22000 Lead Implementer –  Four Page Brochure
Certified ISO 22000 Lead Implementer – Four Page Brochure
 
ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training ISO 27001 Lead Auditor with Net Security Training
ISO 27001 Lead Auditor with Net Security Training
 
ISO 27034 Lead Implementer - One Page Brochure
ISO 27034 Lead Implementer - One Page Brochure	ISO 27034 Lead Implementer - One Page Brochure
ISO 27034 Lead Implementer - One Page Brochure
 
ISO 17025 Lead Implementer - Four Page Brochure
ISO 17025 Lead Implementer - Four Page Brochure	ISO 17025 Lead Implementer - Four Page Brochure
ISO 17025 Lead Implementer - Four Page Brochure
 
Certified iso-9001-lead-auditor
Certified iso-9001-lead-auditorCertified iso-9001-lead-auditor
Certified iso-9001-lead-auditor
 

Mais de PECB

Beyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactBeyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactPECB
 
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of CybersecurityDORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of CybersecurityPECB
 
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI GovernanceSecuring the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI GovernancePECB
 
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...PECB
 
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...PECB
 
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks EffectivelyISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks EffectivelyPECB
 
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...PECB
 
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital TransformationISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital TransformationPECB
 
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulationsManaging ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulationsPECB
 
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?PECB
 
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...PECB
 
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...PECB
 
Student Information Session University KTMC
Student Information Session University KTMC Student Information Session University KTMC
Student Information Session University KTMC PECB
 
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...PECB
 
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...PECB
 
Student Information Session University CREST ADVISORY AFRICA
Student Information Session University CREST ADVISORY AFRICA Student Information Session University CREST ADVISORY AFRICA
Student Information Session University CREST ADVISORY AFRICA PECB
 
IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?PECB
 
Information Session University Egybyte.pptx
Information Session University Egybyte.pptxInformation Session University Egybyte.pptx
Information Session University Egybyte.pptxPECB
 
Student Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptxStudent Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptxPECB
 
Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023PECB
 

Mais de PECB (20)

Beyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactBeyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global Impact
 
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of CybersecurityDORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
DORA, ISO/IEC 27005, and the Rise of AI: Securing the Future of Cybersecurity
 
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI GovernanceSecuring the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
Securing the Future: ISO/IEC 27001, ISO/IEC 42001, and AI Governance
 
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
ISO/IEC 27032, ISO/IEC 27002, and CMMC Frameworks - Achieving Cybersecurity M...
 
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
ISO/IEC 27001 and ISO/IEC 27035: Building a Resilient Cybersecurity Strategy ...
 
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks EffectivelyISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
ISO/IEC 27001 and ISO/IEC 27005: Managing AI Risks Effectively
 
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
Aligning ISO/IEC 27032:2023 and ISO/IEC 27701: Strengthening Cybersecurity Re...
 
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital TransformationISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
ISO/IEC 27001 and ISO/IEC 27032:2023 - Safeguarding Your Digital Transformation
 
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulationsManaging ISO 31000 Framework in AI Systems - The EU ACT and other regulations
Managing ISO 31000 Framework in AI Systems - The EU ACT and other regulations
 
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
Impact of Generative AI in Cybersecurity - How can ISO/IEC 27032 help?
 
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
GDPR and Data Protection: Ensure compliance and minimize the risk of penaltie...
 
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
How Can ISO/IEC 27001 Help Organizations Align With the EU Cybersecurity Regu...
 
Student Information Session University KTMC
Student Information Session University KTMC Student Information Session University KTMC
Student Information Session University KTMC
 
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
ISO/IEC 27001 and ISO 22301 - How to ensure business survival against cyber a...
 
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
Integrating ISO/IEC 27001 and ISO 31000 for Effective Information Security an...
 
Student Information Session University CREST ADVISORY AFRICA
Student Information Session University CREST ADVISORY AFRICA Student Information Session University CREST ADVISORY AFRICA
Student Information Session University CREST ADVISORY AFRICA
 
IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?IT Governance and Information Security – How do they map?
IT Governance and Information Security – How do they map?
 
Information Session University Egybyte.pptx
Information Session University Egybyte.pptxInformation Session University Egybyte.pptx
Information Session University Egybyte.pptx
 
Student Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptxStudent Information Session University Digital Encode.pptx
Student Information Session University Digital Encode.pptx
 
Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023Cybersecurity trends - What to expect in 2023
Cybersecurity trends - What to expect in 2023
 

Último

Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104misteraugie
 
Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Celine George
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxSayali Powar
 
Z Score,T Score, Percential Rank and Box Plot Graph
Z Score,T Score, Percential Rank and Box Plot GraphZ Score,T Score, Percential Rank and Box Plot Graph
Z Score,T Score, Percential Rank and Box Plot GraphThiyagu K
 
The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13Steve Thomason
 
CARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptxCARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptxGaneshChakor2
 
Student login on Anyboli platform.helpin
Student login on Anyboli platform.helpinStudent login on Anyboli platform.helpin
Student login on Anyboli platform.helpinRaunakKeshri1
 
Sanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfSanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfsanyamsingh5019
 
Interactive Powerpoint_How to Master effective communication
Interactive Powerpoint_How to Master effective communicationInteractive Powerpoint_How to Master effective communication
Interactive Powerpoint_How to Master effective communicationnomboosow
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)eniolaolutunde
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introductionMaksud Ahmed
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Krashi Coaching
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptxVS Mahajan Coaching Centre
 
BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...
BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...
BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...Sapna Thakur
 
Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3JemimahLaneBuaron
 
9548086042 for call girls in Indira Nagar with room service
9548086042  for call girls in Indira Nagar  with room service9548086042  for call girls in Indira Nagar  with room service
9548086042 for call girls in Indira Nagar with room servicediscovermytutordmt
 
Accessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impactAccessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impactdawncurless
 
mini mental status format.docx
mini    mental       status     format.docxmini    mental       status     format.docx
mini mental status format.docxPoojaSen20
 
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Sapana Sha
 

Último (20)

Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104Nutritional Needs Presentation - HLTH 104
Nutritional Needs Presentation - HLTH 104
 
Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17Advanced Views - Calendar View in Odoo 17
Advanced Views - Calendar View in Odoo 17
 
Mattingly "AI & Prompt Design: The Basics of Prompt Design"
Mattingly "AI & Prompt Design: The Basics of Prompt Design"Mattingly "AI & Prompt Design: The Basics of Prompt Design"
Mattingly "AI & Prompt Design: The Basics of Prompt Design"
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
 
Z Score,T Score, Percential Rank and Box Plot Graph
Z Score,T Score, Percential Rank and Box Plot GraphZ Score,T Score, Percential Rank and Box Plot Graph
Z Score,T Score, Percential Rank and Box Plot Graph
 
The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13The Most Excellent Way | 1 Corinthians 13
The Most Excellent Way | 1 Corinthians 13
 
CARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptxCARE OF CHILD IN INCUBATOR..........pptx
CARE OF CHILD IN INCUBATOR..........pptx
 
Student login on Anyboli platform.helpin
Student login on Anyboli platform.helpinStudent login on Anyboli platform.helpin
Student login on Anyboli platform.helpin
 
Sanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdfSanyam Choudhary Chemistry practical.pdf
Sanyam Choudhary Chemistry practical.pdf
 
Interactive Powerpoint_How to Master effective communication
Interactive Powerpoint_How to Master effective communicationInteractive Powerpoint_How to Master effective communication
Interactive Powerpoint_How to Master effective communication
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introduction
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
 
BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...
BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...
BAG TECHNIQUE Bag technique-a tool making use of public health bag through wh...
 
Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3Q4-W6-Restating Informational Text Grade 3
Q4-W6-Restating Informational Text Grade 3
 
9548086042 for call girls in Indira Nagar with room service
9548086042  for call girls in Indira Nagar  with room service9548086042  for call girls in Indira Nagar  with room service
9548086042 for call girls in Indira Nagar with room service
 
Accessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impactAccessible design: Minimum effort, maximum impact
Accessible design: Minimum effort, maximum impact
 
mini mental status format.docx
mini    mental       status     format.docxmini    mental       status     format.docx
mini mental status format.docx
 
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
 

ISO 27034 Lead Auditor - Four Page Brochure

  • 1. CERTIFIED ISO 27034 LEAD AUDITOR MASTERING THE AUDIT OF IT - SECURITY TECHNIQUES – APPLICATION SECURITY BASED ON ISO 27034, IN COMPLIANCE WITH THE REQUIREMENTS OF ISO 19011 AND ISO 17021 SUMMARY This five-day intensive course enables the participants develop the necessary expertise to audit an Information technology - Security techniques – Application Security as specified in ISO/IEC 27034, and manage a team of auditors by applying widely recognized audit principles, procedures and techniques. During this training, the participant will acquire the necessary knowledge and skills to proficiently plan and perform internal and external audits in compliance with ISO 19011 and ISO 17021. Based on practical exercises, the participant will develop the skills (mastering audit techniques) and competencies (managing audit teams and audit program, communicating with customers, conflict resolution, etc.) necessary for efficient conduct of an audit. COURSE AGENDA DURATION: 5 DAYS DAY 1 Introduction to IT - Security techniques – Application Security overview and concepts as required by ISO 27034 ▶▶ ormative, regulatory and legal framework related to N application security ▶▶ undamental principles of Application Security F ▶▶ SO 27034 certification process I ▶▶ T - Security Techniques – Application Security I ▶▶ etailed presentation of the clauses of ISO 27034 D DAY 3 Conducting an ISO 27034 audit ▶▶ ommunication during the audit C ▶▶ udit procedures: observation, document review, A interview, sampling techniques, technical verification, corroboration and evaluation ▶▶ udit test plans A ▶▶ ormulation of the audit findings F ▶▶ ocumenting nonconformities D DAY 5 DAY 2 Planning and initiating an ISO 27034 audit ▶▶ ▶▶ ▶▶ ▶▶ ▶▶ F undamental audit concepts and principles A udit the approach based on evidence and risk P reparation of an ISO 27034 audit A pplication Security documentation audit C onducting an opening meeting DAY 4 Concluding and ensuring the follow-up of an ISO 27034 audit ▶▶ udit documentation A ▶▶ uality review Q ▶▶ onducting a closing meeting and conclusion of an C ISO 27034 audit ▶▶ valuation of corrective action plans E ▶▶ SO 27034 surveillance audit I ▶▶ ISO 27034 internal audit management program Certification Exam www.pecb.org
  • 2. WHO SHOULD ATTEND? ▶▶ ▶▶ ▶▶ ▶▶ ▶▶ ▶▶ ▶▶ I nternal auditors A uditors wanting to perform and lead IT - Security techniques – Application Security audit Project managers or consultants who want to master the IT - Security techniques – Application Security audit process C xO and senior managers responsible for the IT governance of an enterprise and the management of its risks M embers of an information security team Expert advisors in Information Technology Technical experts wanting to prepare for Application Security audit function LEARNING OBJECTIVES ▶▶ o acquire the expertise needed to perform an ISO 27034 internal audit following the ISO 19011 guidelines T ▶▶ o acquire the expertise needed to perform an ISO 27034 audit following the ISO 19011 guidelines and the T specifications of ISO 17021 and ISO 27006 ▶▶ o acquire the necessary expertise to manage an IT - Application Security audit team T ▶▶ o understand the operation of an ISO 27034 conformant Application Security management system T ▶▶ o understand the relationship between an IT - Security techniques – Application Security, including risk T management, controls and compliance with the requirements of different stakeholders of the organization ▶▶ o improve the ability to analyze the internal and external environment of an organization, its risk assessment and T audit decision-making PECB www.pecb.org Certified ISO 27034 Lead Auditor
  • 3. EXAMINATION ▶▶ The “Certified ISO 27034 Lead Auditor” exam fully meets the requirements of the PECB Examination and Certification Program (ECP). The exam covers the following competence domains: DOMAIN 1: FUNDAMENTAL PRINCIPLES AND CONCEPTS IN APPLICATION SECURITY 1 Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can understand, interpret and illustrate the main Application Security concepts related to an Information Technology Application Security (AS) DOMAIN 2: INFORMATION TECHNOLOGY APPLICATION SECURITY (AS) 2 Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can understand, interpret and illustrate the main concepts and components of an Information Technology Application Security based on ISO 27034 DOMAIN 3: FUNDAMENTAL AUDIT CONCEPTS AND PRINCIPLES 3 Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can understand, interpret and apply the main concepts and principles related to an AS audit in the context of ISO 27034 DOMAIN 4: PREPARATION OF AN ISO 27034 AUDIT 4 Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can prepare appropriately an AS audit in the context of ISO 27034 DOMAIN 5: CONDUCT OF AN ISO 27034 AUDIT 5 Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can conduct efficiently an AS audit in the context of ISO 27034 DOMAIN 6: CONCLUSION AND FOLLOW-UP OF AN ISO 27034 AUDIT 6 Main Objective: To ensure that the ISO 27034 Lead Auditor candidate can conclude an AS audit and conduct follow-up activities in the context of ISO 27034 DOMAIN 7: MANAGEMENT OF AN ISO 27034 AUDIT PROGRAM 7 Main Objective: To ensure that the ISO 27034 Lead Auditor understands how to establish and manage an AS audit program ▶▶ The “Certified ISO/IEC 27034 Lead Auditor” exam is available in different languages, including English, French, Spanish and Portuguese ▶▶ Duration: 3 hours ▶▶ For more information about the exam, please visit: www.pecb.org www.pecb.org
  • 4. CERTIFICATION ▶▶ fter successfully completing the exam, participants can apply for the credentials of Certified ISO/IEC 27034 A Provisional Auditor, Certified ISO/IEC 27034 Auditor or Certified ISO/IEC 27034 Lead Auditor depending on their level of experience. Those credentials are available for internal and external auditors ▶▶ A certificate will be issued to those participants who successfully pass the exam and comply with all the other requirements related to the selected credential: Credential Exam Professional Experience ITST Audit Experience ITST Project Experience Other Requirements ISO 27034 Provisional Auditor ISO 27034 Lead Auditor Exam None None None Signing the PECB code of ethics ISO 27034 Auditor ISO 27034 Lead Auditor Exam Two years One year of Information Technology Security Techniques work experience Audit activities totaling 200 hours None Signing the PECB code of ethics ISO 27034 Lead Auditor ISO 27034 Lead Auditor Exam Five years Two years of Information Technology Security Techniques work experience Audit activities totaling 300 hours None Signing the PECB code of ethics GENERAL INFORMATION ▶▶ ▶▶ ▶▶ ▶▶ Certification fees are included in the exam price Participant manual contains over 450 pages of information and practical examples A participation certificate of 31 CPD (Continuing Professional Development) credits will be issued to the participants In case of failure of the exam, participants are allowed to retake it for free under certain conditions For additional information, please contact us at info@pecb.org www.pecb.org PECB Certified ISO 27034 Lead Auditor