Catalog

ISMS-F

ISO/IEC 27001 Foundation - AI

A complete ISO/IEC 27001 Foundation, rebuilt for an era in which AI is in the estate. Covers Clauses 4 to 10, Annex A as a structure, and the certification process - and asks at every domain what has changed now that models, agents and prompts are part of the environment being protected.

40Questions
80%To pass
60Minutes
5Domains

Exam Composition

D1Information security fundamentals and the AI-era threat landscape
15%

The vocabulary floor and the threat picture. Asset, threat, vulnerability, risk and control, and the AI-specific threat surface as a catalogued thing rather than a vague anxiety.

D2The ISMS: context, leadership, scope and policy with AI in the estate
17.5%

Clauses 4 and 5 and the management-system model. The signature AI content is scope: browser-accessible AI tooling reaches systems the scope statement never anticipated.

D3Risk assessment and treatment
22.5%

Clauses 6 and 8, the engine of the standard. The Statement of Applicability as a justification record, and why a conventional assessment can return a clean result for an exposed estate.

D4Annex A controls and the AI weave
27.5%

The four themes and the reasoning that selects among them, not a survey of 93 controls. Carries the signature AI content and the explicit null result on physical controls.

D5Performance evaluation, improvement and certification
17.5%

Clauses 9 and 10, and what certification actually is. The AI weave is detection: an AI-related incident frequently leaves no conventional log entry.

The first lesson is free.

No card. See whether Certidemy fits how you learn.

Start free