ISO/IEC 27701:2019 Requirements and Implementation Training Course

Course Aim: To provide a typical framework for extending your ISO/IEC 27001 information security management system (ISMS) including the more specific requirements and guidance for protecting your organization’s personally identifiable information (PII), together constituting a personal information management system (PIMS). 

Course Description: Managing personal information in compliance with the evolving regulatory landscape is complex but cannot be ignored. The protection of an individual’s personal information is one of their fundamental human rights. Laws exist around the world to protect these rights in an environment where business and data related to personal lives are becoming increasingly globalized. Implementing the privacy controls should enable an organization to document evidence on of how it handles the processing of personal information. 

ISO/IEC 27701:2019 specifies the requirements and provides guidance for implementing a personal information management system (PIMS) in the form of an extension to ISO/IEC 27001 and ISO/IEC 27002 for privacy management, within the context of your organization.
By attending our three-day course, you will understand how to implement the principles of ISO/IEC 27701:2019 and the required changes to extend your ISMS. It will help you understand how the requirements of ISO/IEC 27701 provide the basis of an effective PIMS and provides guidance for personally identifiable information (PII) controllers and/or processors, processing PII.
With the full support of a world-class BSI tutor, you’ll learn about ISO/IEC 27701:2019 common terms and definitions, as well as the how to implement the key concepts and requirements.

How will I benefit?

This course will help you to:

  • Understand the content of ISO/IEC 27701, both requirements and guidance and how it will improve your processing of PII
  • Inform your organization’s senior management of the requirements of ISO/IEC 27701 to help them decide the next steps to take
  • Recognize how to extend an ISO/IEC 27001 ISMS to include specific requirements for protecting your PII and implementing a PIMS (addressing both information security and personal information protection)
  • Identify where changes might need to be made to your ISMS to accommodate your situation and progress made to date, in respect of protecting privacy
  • Increase your knowledge of the requirements and guidance contained within ISO 27701, from an implementation perspective

Your learning will be through an activity-based, delegate-centred approach. This will help you share experiences and knowledge with other attendees; bringing alive the information presented and resulting in enhanced retention and application to your own workplace.