ISO/IEC 27001:2022 Transition (Self-Study)

Is this a Certification Course? This is not a certification course but you can take the exam to obtain a course completion certificate. Examination fees are included in the price of the training course.

Delivery Model: Self-Study

Exam Duration: 1 hour

Retake Exam: You can retake the exam once within one year

This course is available as self-study.

Looking for an instructor-led online course?   Click here

Price: US$ 395 / CAD$ 545

Buy Now

 

The ISO/IEC 27001:2022 Transition training course enables participants to thoroughly understand the differences between ISO/IEC 27001:2013 and ISO/IEC 27001:2022. In addition, participants will acquire knowledge on the new concepts presented by ISO/IEC 27001:2022. 


Why should you yake this course?


The new version of ISO/IEC 27001 has been recently published and is now aligned with the new version of ISO/IEC 27002, which was published in February, 2022. The major changes between ISO/IEC 27001:2022 and ISO/IEC 27001:2013 are noticed in the information security controls of Annex A, whereas a few other minor changes are present in the clauses of the standard too. Furthermore, the title of ISO/IEC 27001:2022 differs from the title of ISO/IEC 27001:2013, as now the standard is titled Information security, cybersecurity and privacy protection — Information security management systems — Requirements.  


The “PECB ISO/IEC 27001 Transition” training course provides detailed information on the revised clauses, the new terminology, and the differences in the controls of Annex A. Additionally, this training course provides participants with the necessary knowledge to support organizations in planning and implementing the changes in their ISMS to ensure conformity with ISO/IEC 27001:2022. As such, you will be able to participate in projects to transition from an ISMS based on ISO/IEC 27001:2013 to an ISMS based on ISO/IEC 27001:2022. 


Once you become acquainted with the new concepts and requirements of ISO/IEC 27001:2022 by attending the training course, you can sit for the exam, and if you successfully pass it, you can apply for the “PECB Certified ISO/IEC 27001 Transition” credential. This certificate will prove that you have up-to-date knowledge and professional capabilities to successfully update an ISMS based on the requirements of ISO/IEC 27001:2022. 


Who should take this course?


This training course is intended for:


Individuals seeking to remain up-to-date with ISO/IEC 27001 requirements for an ISMS 

Individuals seeking to understand the differences between ISO/IEC 27001:2013 and ISO/IEC 27001:2022 requirements

Individuals responsible for transitioning an ISMS from ISO/IEC 27001:2013 to ISO/IEC 27001:2022 

Managers, trainers, and consultants involved in maintaining an ISMS

Professionals wishing to update their ISO/IEC 27001 certificates

Learning objectives

Upon successfully completing the training course, participants will be able to:


Explain the differences between ISO/IEC 27001:2013 and ISO/IEC 27001:2022

Interpret the new concepts and requirements of ISO/IEC 27001:2022

Plan and implement the necessary changes to an existing ISMS in accordance with ISO/IEC 27001:2022


Educational approach


This training course is based on theory, and best practices used in the process of transitioning an ISMS from ISO/IEC 27001:2013 to ISO/IEC 27001:2022

Lecture sessions are illustrated with quizzes

Quizzes have a similar structure to the certification exam


Prerequisites


Participants who attend this training course need to have a fundamental understanding of information security concepts and ISO/IEC 27001 requirements.




Course content


Day 1: Introduction to ISO/IEC 27001:2022 and comparison to ISO/IEC 27001:2013


Day 2: Comparison between Annex A controls of ISO/IEC 27001:2013 and ISO/IEC 27001:2022


Examination


The “PECB Certified ISO/IEC 27001 Transition” exam fully meets the requirements of the PECB Examination and Certification Program (ECP). It covers the following competency domains:


Domain 1: Differences between main clauses of ISO/IEC 27001:2013 and ISO/IEC 27001:2022


Domain 2: Differences between Annex A controls of ISO/IEC 27001:2013 and ISO/IEC 27001:2022


For specific information about exam type, languages available, and other details, please visit the List of PECB Exams and the Examination Rules and Policies.


Certification


After successfully completing the exam, you can apply for the credential. You will receive a certificate once you fulfill all the requirements of the credential.


For more information about ISO/IEC 27001 certifications and the PECB Certification process, please refer to Certification Rules and Policies.


General information


Certification and examination fees are included in the price of the training course.

Participants will be provided with training course materials containing over 120 pages of information, practical examples, and quizzes.

Candidates who have completed the training course but failed the exam are eligible to retake the exam once for free within a 12-month period from the initial date of the exam. 

 


Price: US$ 395 / CAD$ 545

Download the Brochure
Buy Now

Our latest blog posts

alt=
September 2, 2026
In this video, we walk through a practical beginner roadmap for getting into AI GRC in 2026: what AI GRC means, why it matters, and what beginners should learn.
alt=
September 2, 2026
In this video, we look at some of the biggest mistakes organizations are making with ISO/IEC 42001 in 2026.
alt=
September 2, 2026
This free downloadable checklist will help you assess your organisation's position and readiness to begin the formal implementation of an AIMS.
alt=
September 1, 2026
If your organisation only uses third-party AI models, are you still responsible for the governance and oversight of that tool? Safeshield breaks down the answer.
September 1, 2026
A large part of AI governance involves systems the organisation didn’t build. Businesses increasingly rely on AI provided through external software, which creates a different governance challenge from working with technology developed entirely in-house. The organisation may have limited visibility into the underlying model, and some information may simply be unavailable. That doesn’t make effective governance impossible. It changes what the organisation can control and, as a result, the questions an AI GRC professional needs to ask. Understanding that distinction is useful for anyone learning how AI governance works in practice.
alt=
August 17, 2026
What is an impact assessment, what does it cover, and how does it help with ISO/IEC 42001? The Safeshield team answers all these questions. Includes downloadable checklist
alt=
August 6, 2026
If you’re looking at professional training in ISO/IEC 42001, Lead Implementer and Lead Auditor are two main options, but how do they compare, and which one is right for you?
August 4, 2026
If you’re researching AI GRC, ISO/IEC 42001 is one of the standards you’re going to need to understand. For individuals, it’s becoming an important reference point for AI GRC career development. For organisations, it offers a structured way to move from informal AI use or broad responsible AI principles toward a more formal AI management system. ISO/IEC 42001 is an international standard for Artificial Intelligence Management Systems. In simple terms, it gives organisations a framework for managing AI governance, risk, accountability and continual improvement. This guide looks at how an AI Management System works, where ISO/IEC 42001 fits into modern AI governance, and how the right training can prepare professionals to support its implementation or audit.
alt=
August 4, 2026
An evidence-led look at the growing demand for applied AI capability and the challenge candidates face when choosing between skills, frameworks and credentials.
alt=
June 23, 2026
AI is outgrowing traditional GRC frameworks. How can you keep up? Safeshield discusses the current industry and next steps for AI GRC.
Show More