Professional Track

ISO/IEC 27701 Auditor Track

Develop the skills to plan, conduct and evaluate audits against ISO/IEC 27701 in real organisational contexts

Professional Track

ISO/IEC 27701 Auditor Track

Develop the skills to plan, conduct and evaluate audits against ISO/IEC 27701 in real organisational contexts

Professional Track

ISO/IEC 27701 Auditor Track

Develop the skills to plan, conduct and evaluate audits against ISO/IEC 27701 in real organisational contexts

ISO/IEC 27701 auditor reviewing privacy management practices with an employee in a professional office setting.

Auditing privacy management beyond legal documentation

By focusing on governance, risk treatment and operational evidence, this track builds the capability to assess whether a Privacy Information Management System is effective, consistent and sustainable.

ISO/IEC 27701 auditor reviewing privacy management practices with an employee in a professional office setting.

Auditing privacy management beyond legal documentation

By focusing on governance, risk treatment and operational evidence, this track builds the capability to assess whether a Privacy Information Management System is effective, consistent and sustainable.

ISO/IEC 27701 auditor reviewing privacy management practices with an employee in a professional office setting.

Auditing privacy management beyond legal documentation

By focusing on governance, risk treatment and operational evidence, this track builds the capability to assess whether a Privacy Information Management System is effective, consistent and sustainable.

Overview

Overview

Overview

The ISO/IEC 27701 Auditor Track is designed for professionals who audit Privacy Information Management Systems (PIMS) of organisations acting as controllers and/or processors. Rather than treating privacy audits as a review of policies or legal documentation, the programme focuses on evaluating how privacy requirements are governed, implemented and monitored in practice.

The track covers the full audit life cycle and enables effective PIMS audits in internal auditing, supplier auditing as well as third-party auditing contexts.

The ISO/IEC 27701 Auditor Track is designed for professionals who audit Privacy Information Management Systems (PIMS) of organisations acting as controllers and/or processors. Rather than treating privacy audits as a review of policies or legal documentation, the programme focuses on evaluating how privacy requirements are governed, implemented and monitored in practice.

The track covers the full audit life cycle and enables effective PIMS audits in internal auditing, supplier auditing as well as third-party auditing contexts.

Target audience

Target audience

Target audience

  • Auditors with existing ISO/IEC 27001 experience who want to extend their competence to privacy information management systems

  • Internal or external auditors involved in audits covering data protection and privacy controls

  • Information security or data protection professionals seeking to develop formal PIMS auditing capability

  • Practising ISO/IEC 27701 auditors who want to strengthen their understanding of audit boundaries, scope definition, and evidence evaluation in privacy-related audits

  • Auditors with existing ISO/IEC 27001 experience who want to extend their competence to privacy information management systems

  • Internal or external auditors involved in audits covering data protection and privacy controls

  • Information security or data protection professionals seeking to develop formal PIMS auditing capability

  • Practising ISO/IEC 27701 auditors who want to strengthen their understanding of audit boundaries, scope definition, and evidence evaluation in privacy-related audits

Learning outcomes

In this track, you will acquire the following capabilities.

Learning outcomes

In this track, you will acquire the following capabilities.

Learning outcomes

In this track, you will acquire the following capabilities.

Understand and interpret ISO/IEC 27701 requirements reliably

  • Interpret ISO/IEC 27701 requirements consistently across different organisational contexts

  • Understand the structure and practical application of PIMS

Plan and conduct audits in a structured manner

  • Plan and perform internal, supplier and third-party PIMS audits in accordance with ISO 19011

  • Apply appropriate audit techniques to obtain objective and verifiable audit evidence

Evaluate conformity and audit findings professionally

  • Evaluate conformity of a PIMS against ISO/IEC 27701 requirements and defined audit criteria

  • Formulate clear, well-founded audit findings and nonconformities

Communicate audit results and support improvement

  • Communicate audit results professionally to auditees and management

  • Support improvement of privacy governance and controls through clear, actionable audit feedback

Understand and interpret ISO/IEC 27701 requirements reliably

  • Interpret ISO/IEC 27701 requirements consistently across different organisational contexts

  • Understand the structure and practical application of PIMS

Plan and conduct audits in a structured manner

  • Plan and perform internal, supplier and third-party PIMS audits in accordance with ISO 19011

  • Apply appropriate audit techniques to obtain objective and verifiable audit evidence

Evaluate conformity and audit findings professionally

  • Evaluate conformity of a PIMS against ISO/IEC 27701 requirements and defined audit criteria

  • Formulate clear, well-founded audit findings and nonconformities

Communicate audit results and support improvement

  • Communicate audit results professionally to auditees and management

  • Support improvement of privacy governance and controls through clear, actionable audit feedback

Professional positioning

  • Build a recognised competence profile as an auditor for ISO/IEC 27701 across different organisational contexts

  • Assess privacy information management systems in a structured, independent and standard-compliant manner, and substantiate audit findings professionally

  • Act as a competent professional counterpart to organisations, management, certification bodies and other auditors

Track ID

HAT-DP-A

Duration

~18 days

Language

English

List price

CHF 8,000

Excl. VAT. VAT may apply depending on customer location and status.

Programmes tailored to your organizational needs

Programmes tailored to your organizational needs

Modular system

Reuse of modules across tracks

Modular system

Reuse of modules across tracks

Modular system

Reuse of modules across tracks

Previously completed modules are recognized, avoiding duplication when pursuing additional Halderstone tracks.

If you later decide to extend your auditing competence to additional areas and ISO standards, you can earn additional auditor credentials without repeating the common core. This allows you to build an integrated competence profile step by step with limited additional effort.

Scalable credential model

Two credentials with one track

Scalable credential model

Two credentials with one track

Scalable credential model

Two credentials with one track

Core credential — shared foundation

Halderstone Diploma in Management System Auditing

  • Cross-domain auditing foundation

  • Applicable across multiple ISO standards

  • Reusable foundation for other auditor tracks

Core credential — shared foundation

Halderstone Diploma in Management System Auditing

  • Cross-domain auditing foundation

  • Applicable across multiple ISO standards

  • Reusable foundation for other auditor tracks

Core credential — shared foundation

Halderstone Diploma in Management System Auditing

  • Cross-domain auditing foundation

  • Applicable across multiple ISO standards

  • Reusable foundation for other auditor tracks

Specialisation credential — domain focus

Halderstone Certified ISO/IEC 27701 Auditor

  • Fundamentals of data protection management

  • Ability to audit ISO/IEC 27701-specific requirements

Specialisation credential — domain focus

Halderstone Certified ISO/IEC 27701 Auditor

  • Fundamentals of data protection management

  • Ability to audit ISO/IEC 27701-specific requirements

Specialisation credential — domain focus

Halderstone Certified ISO/IEC 27701 Auditor

  • Fundamentals of data protection management

  • Ability to audit ISO/IEC 27701-specific requirements

Overview

Full curriculum

The curriculum below shows all modules included in this learning path. Core modules are shared across tracks and are recognised if already completed.

Overview

Full curriculum

The curriculum below shows all modules included in this learning path. Core modules are shared across tracks and are recognised if already completed.

Overview

Full curriculum

The curriculum below shows all modules included in this learning path. Core modules are shared across tracks and are recognised if already completed.

Core modules

Shared foundations common to all Auditor tracks

Management system core

Expand...

Management system core

Expand...

Management system core

Expand...

Auditing core

Expand...

Auditing core

Expand...

Auditing core

Expand...

Auditing domain-agnostic ISO standard clauses

Expand...

Auditing domain-agnostic ISO standard clauses

Expand...

Auditing domain-agnostic ISO standard clauses

Expand...

Specialization modules

Role-specific modules that deepen your expertise in ISO/IEC 27701 Auditing

Domain competence in Data Protection Management and ISO/IEC 27701

Expand...

Domain competence in Data Protection Management and ISO/IEC 27701

Expand...

Domain competence in Data Protection Management and ISO/IEC 27701

Expand...

Auditing ISO/IEC 27701-specific clauses

Expand...

Auditing ISO/IEC 27701-specific clauses

Expand...

Auditing ISO/IEC 27701-specific clauses

Expand...

Final assessment

Practical and theoretical demonstration of your acquired competence as ISO/IEC 27701 Auditor

Capstone project

Expand...

Capstone project

Expand...

Capstone project

Expand...

Final exam

Expand...

Final exam

Expand...

Final exam

Expand...

Good to know

Answers to common questions

Good to know

Answers to common questions

Good to know

Answers to common questions

What is included in a Halderstone professional track?

What is included in a Halderstone professional track?

What is included in a Halderstone professional track?

Are the tracks aligned with recognised standards such as ISO?

Are the tracks aligned with recognised standards such as ISO?

Are the tracks aligned with recognised standards such as ISO?

Do I need to complete all modules in the track?

Do I need to complete all modules in the track?

Do I need to complete all modules in the track?

Can I attend individual modules without enrolling in the full track?

Can I attend individual modules without enrolling in the full track?

Can I attend individual modules without enrolling in the full track?

Are modules recognised across different Halderstone tracks?

Are modules recognised across different Halderstone tracks?

Are modules recognised across different Halderstone tracks?

Is this track suitable if I am new to the topic?

Is this track suitable if I am new to the topic?

Is this track suitable if I am new to the topic?

How long does it take to complete the track?

How long does it take to complete the track?

How long does it take to complete the track?

What if I am unsure whether this track is right for me?

What if I am unsure whether this track is right for me?

What if I am unsure whether this track is right for me?

Office scene with people standing, walking and sitting

Ready to improve your management systems?

We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.

Office scene with people standing, walking and sitting

Ready to improve your management systems?

We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.

Office scene with people standing, walking and sitting

Ready to improve your management systems?

We support continuous improvement by embedding ISO requirements into everyday practice and daily operations.