Publication date : 03/21/2025

Course : Certified ISO/IEC 27005 Risk Manager, PECB certification

Practical course - 3d - 21h00 - Ref. RMP
Price : 2890 CHF E.T.

Certified ISO/IEC 27005 Risk Manager, PECB certification



New course

This course will give you the knowledge and skills you need to identify, assess, analyze, treat and communicate information security risks in accordance with ISO/IEC 27005.


INTER
IN-HOUSE
CUSTOM

Practical course in person or remote class
Disponible en anglais, à la demande

Ref. RMP
  3d - 21h00
2890 CHF E.T.




This course will give you the knowledge and skills you need to identify, assess, analyze, treat and communicate information security risks in accordance with ISO/IEC 27005.


Teaching objectives
At the end of the training, the participant will be able to:
Explain the concepts and principles of risk management as defined by ISO/IEC 27005 and ISO 31000
Establish, maintain and improve an information security risk management framework
Apply information security risk management processes
Plan and implement risk communication and consultation activities

Intended audience
Information security managers, people responsible for maintaining compliance with information security requirements, project managers, expert consultants...

Prerequisites
Be familiar with a best practice guide (ANSSI hygiene, ISO 27002 or equivalent), have completed the introductory cybersecurity course or have equivalent knowledge.

Course schedule

1
Introduction to ISO/IEC 27005 and risk management

  • Training objectives and structure.
  • Normative and regulatory frameworks.
  • Fundamental principles and concepts of information security risk management.
  • Risk management program.
  • Setting the context.

2
Risk assessment, risk treatment, risk communication and consultation according to ISO/IEC 27005

  • Risk identification.
  • Risk analysis.
  • Risk assessment.
  • Risk management.
  • Information security risk assessment.
  • Communication and consultation on information security risks.

3
Risk recording and reporting, monitoring and review, and risk assessment methods

  • Monitoring and review of information security risks.
  • OCTAVE and MÉHARI methodologies.
  • EBIOS method.
  • NIST frame.
  • CRAMM and EMR methods.

4
Areas of expertise covered by the exam :

  • Area 1: Fundamental principles and concepts of an information security risk management system.
  • Area 2: Implementation of an information security risk management program.
  • Area 3: Information security risk management framework and ISO/IEC 27005 processes.
  • Area 4: Other methods for assessing information security risks


Dates and locations

Dernières places
Date garantie en présentiel ou à distance
Session garantie
From 18 to 20 March 2026
FR
Remote class
Registration
From 24 to 26 June 2026
FR
Remote class
Registration
From 28 to 30 September 2026
FR
Remote class
Registration
From 30 November to 2 December 2026
FR
Remote class
Registration

REMOTE CLASS
2026 : 18 Mar., 24 June, 28 Sep., 30 Nov.