plugin Module

Course: ISO/IEC 27701 Privacy Information Management Lead Auditor

Extend an ISMS into a defensible PIMS aligned with GDPR and global privacy regimes.

2 Days Accelerated
ISO Aligned
A$1,850

Program Overview

ISO/IEC 27701 layers privacy controls on top of an existing ISO/IEC 27001 ISMS. Learn to audit PII processing as Controller and Processor, map controls to GDPR, the Australian Privacy Act, CCPA and PIPEDA, and assess data subject rights operations end-to-end.

Syllabus

D1

Day 1 Schedule

09:00 - 10:30
lecture

PIMS Foundations: Layering Privacy on ISO 27001

Why ISO 27701 cannot exist without 27001 and how the certification scope is written.

Clauses:
Annex SL 4 Context
Annex SL 5 Leadership
10:45 - 12:30
lecture

Annex A (Controllers) & Annex B (Processors)

Walk through every PIMS-specific control: consent, purpose limitation, retention, subcontractor management.

13:30 - 15:30
lab

DSAR & Data Subject Rights Operations

Live workshop tracing access, rectification, erasure and portability requests across systems.

D2

Day 2 Schedule

09:00 - 11:00
lecture

Cross-Border Transfers, DPIAs & Regulator Engagement

Audit SCCs, adequacy decisions, transfer impact assessments and the DPIA lifecycle.

11:15 - 13:00
lecture

Mapping PIMS to GDPR, APP, CCPA & PIPEDA

Bridge ISO 27701 controls to specific legal articles so a single audit can support multiple regulator narratives.

15:00 - 16:00
exam
Closeout — Enrolment Required

Final Knowledge Assessment

Multiple-choice assessment covering every clause area introduced in Plug-In: ISO/IEC 27701 Privacy Information Management Lead Auditor. Pass mark 70%.

This terminal assessment unlocks after you enrol. The exam grades clause-level recall; the simulation requires a passing score before drafting the closing NCR.

16:00 - 18:00
simulation
Closeout — Enrolment Required

Closeout: Live Audit & NCR Drafting

Live War Room simulation tied to Plug-In: ISO/IEC 27701 Privacy Information Management Lead Auditor. Conduct an AI-driven interview, evidence-gather, then draft a defensible NCR.

This terminal assessment unlocks after you enrol. The exam grades clause-level recall; the simulation requires a passing score before drafting the closing NCR.

Learning Outcomes

  • Audit a PIMS as an extension to an existing 27001 ISMS
  • Distinguish Controller-side (Annex A) and Processor-side (Annex B) obligations
  • Map PIMS controls to GDPR articles, Australian Privacy Principles, CCPA and PIPEDA
  • Sample data subject rights (DSAR) workflows for completeness and timeliness
  • Evaluate cross-border transfer mechanisms and DPIAs

Brochure

Download the full executive briefing for internal approval.

Modular Audit Engine

The precision training instrument for boardroom-grade assurance professionals. ISO compliance accelerated through AI simulation.

Pathways

  • Exemplar Global Aligned
  • CQI/IRCA Compatible
  • Positive Duty (AU) Ready
  • GDPR (EU) Aware

Stay informed

Weekly digest: global auditor news, firm moves and new Auditor Training courses.
English · Español · Deutsch · 中文 · العربية · 日本語

© 2026 Modular Audit Engine. All rights reserved.

Operated by Auditor Training — ISO International Services. Aligned to IAF MLA, CQI/IRCA, Exemplar Global recognition pathways.

Regulatory Disclaimer: This platform provides simulated training environments.PrivacyTerms