"The structure, the practice exams, the instructor — all top tier. Passed first try."
Course Outline
What the programme covers, module by module.
Module 1: Introduction to ISO 27701
- ISO 27701 overview
- Purpose and scope
- Privacy information management
- PIMS concepts
- Personally identifiable information
- Key terminology
Module 2: Understanding Privacy Information Management Systems
- PIMS framework
- Privacy management principles
- Organisational context
- PIMS boundaries
- Process approach
- Privacy management lifecycle
Module 3: Privacy Roles & Responsibilities
- PII principals
- PII controllers
- PII processors
- Organisational responsibilities
- Accountability
- Responsibility allocation
Module 4: Organisational Context & Privacy Governance
- Internal and external context
- Interested parties
- Privacy requirements
- Governance responsibilities
- Leadership involvement
- Privacy policies
Module 5: Privacy Risk Management
- Privacy risk concepts
- Risk identification
- Privacy threats
- Impact assessment concepts
- Risk analysis
- Risk treatment
Module 6: PII Collection & Processing
- PII collection
- Processing purposes
- Processing instructions
- Data minimisation
- Accuracy
- Responsible processing
Module 7: PII Lifecycle Management
- Data creation and collection
- Storage
- Use
- Sharing
- Retention
- Secure deletion
Module 8: Privacy Information Security Controls
- Information protection
- Access control
- Authentication
- Authorisation
- Privileged access
- Secure processing
Module 9: Privacy by Design & Default
- Privacy by design concepts
- Privacy by default
- Data minimisation
- Purpose limitation
- System design considerations
- Privacy controls integration
Module 10: PII Controller Responsibilities
- Processing purposes
- Privacy information
- PII principal requests
- Consent considerations
- Processing records
- Controller accountability
Module 11: PII Processor Responsibilities
- Processing instructions
- Processor obligations
- Customer information
- Data return
- Data deletion
- Processor accountability
Module 12: Third Parties & Data Sharing
- Third-party processing
- Supplier relationships
- Data sharing
- Subprocessors
- Responsibility allocation
- Third-party privacy risks
Module 13: Data Transfers & Disclosure
- PII transfers
- Transfer considerations
- Data location
- Disclosure requests
- Disclosure records
- Transparency
Module 14: Privacy Incident Management
- Privacy incidents
- Incident identification
- Incident reporting
- Escalation
- Response activities
- Incident documentation
Module 15: Monitoring & Performance Evaluation
- Privacy monitoring
- Performance indicators
- Control effectiveness
- Internal review concepts
- Management review
- Improvement opportunities
Module 16: Maintaining & Improving the PIMS
- Corrective actions
- Updating privacy practices
- Documentation maintenance
- Organisational awareness
- PIMS effectiveness
- Continual improvement
Who it's for & what's included
Pick a delivery method to see exactly who it suits and everything you receive.
Classroom
Best for learners who want face-to-face tuition and to network with peers in person.
Everything you get
- ✓ Live instructor on-site
- ✓ Printed workbook & materials
- ✓ Group exercises & case studies
Online Instructor-Led
Best for learners who want a live instructor and a fixed schedule, without the travel.
Everything you get
- ✓ Live instructor via video call
- ✓ Digital workbook & resources
- ✓ Session recordings
Self-Paced
Best for self-motivated learners who need maximum flexibility around work and life.
Everything you get
- ✓ On-demand video lessons
- ✓ Interactive quizzes
- ✓ 24/7 access on any device
Course Overview
The ISO 27701 Privacy Information Management Foundation course provides working professionals with foundational knowledge of privacy information management. Learners explore PIMS principles, PII controller and processor responsibilities, privacy risks, information lifecycle management, privacy controls, access management, third-party processing, incident management, monitoring, documentation, and continual improvement.