Certification
The “PECB Certified ISO/IEC 27002 Lead Manager” exam meets all the requirements of the PECB Examination and Certification Program (ECP). It covers the following competency domains:
Domain 1: Fundamental principles and concepts of information security, cybersecurity, and privacy
Domain 2: Information security management system (ISMS) and initiation of ISO/IEC 27002 information security controls implementation
Domain 3: Implementation and management of organizational and people controls based on ISO/IEC 27002
Domain 4: Implementation and management of physical and technological controls based on ISO/IEC 27002
Domain 5: Performance measurement, testing, and monitoring of ISO/IEC 27002 information security controls
After successfully completing the exam, you can apply for one of the credentials shown on the table below. You will receive a certificate once you fulfill all the requirements of the selected credential.
Credential |
Exam |
Professional experience |
ISCMS project experience |
Other requirements |
PECB Certified ISO/IEC 27002 Provisional Manager |
PECB Certified ISO/IEC 27002 Lead Manager Exam, or equivalent |
None |
None |
Signing the PECB Code of Ethics |
PECB Certified ISO/IEC 27002 Manager |
PECB Certified ISO/IEC 27002 Lead Manager Exam, or equivalent |
Two years, of which at least one in information security management |
At least 200 hours of information security management activities |
Signing the PECB Code of Ethics |
PECB Certified ISO/IEC 27002 Lead Manager |
PECB Certified ISO/IEC 27002 Lead Manager exam or equivalent |
Five years: Two years of work experience in Information Security Management |
Information Security Management activities: a total of 300 hours |
Signing of the PECB Code of Ethics |
PECB Certified ISO/IEC 27002 Senior Lead Manager |
PECB Certified ISO/IEC 27002 Lead Manager Exam or equivalent |
Ten years: Seven years of work experience in Information Security Management |
Information Security Management activities: a total of 1,000 hours |
Signing of the PECB Code of Ethics |
The information security activities should follow best implementation and management practices and include the following:
- Drafting an ISMS implementation plan
- Managing an information security implementation project
- Implementing information security processes
- Selecting information security processes
- Implementing information security controls
For more information about ISO/IEC 27002 certifications and the PECB certification process, refer to the Certification Rules and Policies.
General Information
- Certification and examination fees are included in the price of the training course
- Participants will be provided with training course materials containing over 450 pages of information, practical examples, exercises, and quizzes.
- An attestation of course completion worth 31 CPD (Continuing Professional Development) credits will be issued to the participants who have attended the training course.
- Candidates who have completed the training course but failed the exam are eligible to retake it once for free within a 12-month period from the initial date of the exam.