Skip to content
Amrani Academy

40 minutes · free · certificate valid 1 year

ISO 27001 Staff Awareness

Understand what ISO 27001 is, how an Information Security Management System works, and the part you play in it: the policies you're expected to follow, the everyday controls that protect information, and how incidents, audits, and continual improvement keep certification alive. Finish the final assessment with a score of 75% or higher to earn a certificate, valid for one year.

Done this course before, or already know the material? You can go straight to the final assessment and renew your certificate without re-reading the lessons.

Who it's for: All staff, contractors, and managers working in or with an organisation that holds, or is working towards, ISO 27001 certification.

What you'll learn

What you'll cover

  1. 1

    What ISO 27001 is

    The international standard for information security management, the CIA triad, the risk-based approach, and why certification matters.

  2. 2

    Policies and your responsibilities

    The ISMS policy set, why following it is audit-relevant, asset ownership, and who is responsible for what.

  3. 3

    Everyday controls

    The controls you touch daily: access and authentication, classification and disposal, physical security and media, backups, change, and suppliers.

  4. 4

    Incidents, audits and improvement

    Recognising and reporting security events, how audits work and how to behave in one, and how the ISMS improves over time.

  5. 5

    Putting it into practice

    Short workplace scenarios that test how you would apply this course in real situations.

  6. 6

    Final assessment

    20 questions drawn at random from the full question bank. Score 75% or higher to earn your certificate.

Questions rotate on every attempt, so retaking a section or the final assessment gives you a different set of questions in a different order, not the same fixed quiz.