GCSI — Global Cyber Standards Institute, official PECB Partner, Luxembourg.
Cybersecurity
Cybersecurity governance under ISO/IEC 27001, 27002 and 27032 is no longer a technical back-office concern — it is the framework regulators, insurers and business partners now expect an organization to demonstrate, not merely claim. An ISMS built on ISO/IEC 27001, supported by the ISO/IEC 27002 control catalog and coordinated at organizational level through ISO/IEC 27032, gives an organization a structure it can point to when asked “how do you manage this risk?” — rather than an improvised answer.
Why this matters for your organization
Board & executive leadership
Boards are increasingly expected to evidence oversight of cybersecurity risk, not delegate it silently. Understanding the ISMS your organization runs on is what allows a board to ask the right questions and sign off with genuine assurance.
Risk, compliance & data protection functions
For CISOs, DPOs and compliance officers, ISO/IEC 27001 certification is frequently the reference auditors, regulators and enterprise clients ask for by name. Holding the certification — and having staff who can operate it — closes that conversation before it becomes a blocker.
Operational & technical specialists
For the teams who configure controls and respond to incidents day to day, ISO/IEC 27002 provides the shared vocabulary and structure that turns scattered technical measures into a coherent, auditable system.
Certifications offered
ISO/IEC 27001 — Information Security Management
The international standard for building and operating an Information Security Management System (ISMS).
- ISO/IEC 27001 Foundation (2 days) — fundamental concepts and requirements of an ISMS, no prior experience required. Self-study option available →
- ISO/IEC 27001 Lead Implementer (5 days incl. exam) — plan, deploy, operate and continually improve an ISMS, using PECB’s IMS2 Methodology. Self-study option available →
- ISO/IEC 27001 Lead Auditor (5 days incl. exam) — plan, conduct and close an ISO/IEC 27001 compliance audit in accordance with ISO/IEC 17021-1. Self-study option available →
ISO/IEC 27032 — Cybersecurity Management
Organization-wide cybersecurity programs, governance and coordination across stakeholders.
- ISO/IEC 27032 Foundation (2 days) — fundamental cybersecurity principles and how a cybersecurity program is structured.
- Lead Cybersecurity Manager (5 days incl. exam) — design, implement and manage a cybersecurity program, including risk, controls and incident management.
ISO/IEC 27002 — Information Security Controls
The reference catalog of organizational, people, physical and technological controls that underpin ISO/IEC 27001.
- ISO/IEC 27002 Foundation (2 days) — fundamental concepts of information security controls.
- ISO/IEC 27002 Manager (3 days incl. exam) — select, implement and manage information security controls in context.
