ISO 27001 Training
Sign Up Now!
Hands-on ISO 27001 Training
The ISO 27001 is an international standard that helps companies protect their most valuable assets: customer data, trade secrets, contracts, emails, passwords, financial reports… everything.
Instead of reacting to an attack, this standard teaches you to:
- Prevent security breaches.
- Reduce the risk of cyberattacks.
- Better control access to information.
- Meet legal requirements (such as the GDPR).
- Build trust with clients and partners.
So why take an ISO 27001 training course?
Because reading the standard isn’t enough! It’s dense, technical, and doesn’t tell you the most important part — how to actually do it.
This training is designed to:
-
Translate the standard into your company’s language.
-
Teach how to implement its practice effectively
-
Prepare for real audits and help avoid common mistakes
-
Empower your team to make risk-based decisions, not "gut feelings."
Who is this ISO 27001 training for?
Perfect for professionals who:
-
Manage or implement information security
-
Prepare for ISO audits or certifications
-
Work in compliance, risk, or data protection
-
Are looking to transition into a cybersecurity career
Additional Information
The next ISO 27001 Training session starts soon. Register now and secure your spot!
Next Cohort: 23 e 24 de Abril
Time:: 9:30 – 13:00 (Mainland Portugal time)
Duration:: 2 mornings
Format: Online
Investment:: €200 + VAT per person
1.Introduction to ISO/IEC 27001:2022
Understand what has changed in the new version of the standard, why it matters, and how it fits into today’s organisational context.
2.Interpretation of the Standard’s Requirements
Detailed analysis of the pillars that support an Information Security Management System (ISMS):
Requirement 4 – Organisational Context
How to align the ISMS with the organisation’s strategic objectives.Requirement 5 – Leadership
The role of top management and its impact on the security culture.Requirement 6 – Planning
Identification of risks, objectives, and strategic actions for information security.Requirement 7 – Support
Resources, competencies, communication, and documentation essential to support the ISMS.Requirement 8 – Operation
How to implement, control, and maintain security processes in day-to-day operations.Requirement 9 – Performance Evaluation
Monitoring, analysis, and internal audits to ensure effectiveness.Requirement 10 – Improvement
How to correct, adapt, and continuously improve the system.
3.Interpretation of Annex A Controls
Practical exploration of the standard’s four control groups:
Organisational controls (5)
Policies, roles, and processes that structure security at a strategic level.People controls (6)
Access management, training, and human responsibilities in protecting information.Physical controls (7)
Measures to protect the physical environment, devices, and physical access to information.Technological controls (8)
Technologies and practices that support digital security (firewalls, backups, encryption, etc.).
Carina Barbacena is
a Consultant and Trainer at Strongstep, with expertise in implementing, auditing, and improving Integrated Management Systems, focusing on ISO 9001, ISO 14001, ISO 45001, and ISO 27001 standards.
With over a decade of professional experience, she has collaborated with organisations across various sectors to optimise processes, ensure regulatory compliance, and enhance organisational performance, developing approaches that combine operational efficiency with sustainability and continuous improvement.
She supports the structuring, monitoring, and auditing of Quality, Environment, Safety, and Information Security management systems, with a proven track record in:
- Conducting internal audits and preparing for certifications
- Implementing performance indicators (KPIs) and analysing operational data
- Drafting and reviewing normative procedures and organisational policies
- Monitoring legal requirements and compliance with international frameworks
Carina promotes practices aligned with principles of quality, operational excellence, regulatory compliance, good practice adoption, and continuous improvement.
Holding a degree in Sociology from ISCSP – University of Lisbon, she combines technical knowledge with organisational sensitivity, contributing to the strategic and sustainable development of companies in meeting international standards and market demands.
As 5 verdades que ninguém lhe diz sobre a formação ISO 27001
Antes de investir numa formação ISO 27001, veja este vídeo.
Revelamos os erros mais comuns cometidos pelas empresas e o que pode fazer para os evitar. Com uma formação prática, eficaz e alinhada com a versão atualizada da norma.
FAQs – Frequently Asked Questions About the Training
Participants will receive a certificate of participation.
Yes, the training is available for individual professionals and corporate teams.
A nossa equipa irá entrar em contacto consigo, para que proceda de maneira acompanhada.
*Deverá ser por Transferência Bancária.
Other Trainings
ISO 27001 Foundation
Duration: 16h
NIS2 Training
Duration: 8h
Accelerate RGPD with ISO 27001
Duration: 8h
GDPR
Duration: 4 hours