Develop the knowledge and skills needed to plan, conduct and manage audits of a Privacy Information Management System (PIMS) based on ISO/IEC 27701:2025. The course focuses on recognised audit principles, procedures and techniques and prepares you to assess whether an organisation’s privacy management system meets the requirements of the standard.
The course provides a comprehensive understanding of how to audit a PIMS, including both internal and external audits. You will learn how to apply ISO 19011, ISO/IEC 17021-1 and ISO/IEC 27706 when planning, conducting and following up on audits.
You will also develop skills in evidence-based and risk-based auditing, information collection and analysis, communication during audits, reporting nonconformities and evaluating corrective action plans. Particular attention is given to auditing the requirements of ISO/IEC 27701:2025 and the privacy controls applicable to PII controllers and processors.
The training is delivered through the myPECB platform and combines video-based learning with course materials, exercises and quizzes.
What will you get out of the course?After completing the course, you will be able to:
Who is this course for?The course is suitable for:
PrerequisitesThere are no formal prerequisites for this course.
Course contentThe course covers:

Exam and certificationAfter completing the course, you can take the PECB ISO/IEC 27701 Lead Auditor exam.
The exam covers seven competency domains, including PIMS principles and requirements, audit concepts, preparation and conduct of ISO/IEC 27701 audits, closing an audit and management of an audit programme.
After successfully passing the exam, you can apply for the credential shown on the table below. You will receive the certificate once you comply with all the requirements related to the selected credential. Certification fees are included on the exam price.
For more information about the PECB certification process, please refer to the Certification Rules and Policies.
