ISMS-F
ISO/IEC 27001 Foundation - AI
A complete ISO/IEC 27001 Foundation, rebuilt for an era in which AI is in the estate. Covers Clauses 4 to 10, Annex A as a structure, and the certification process - and asks at every domain what has changed now that models, agents and prompts are part of the environment being protected.
Exam Composition
D1Information security fundamentals and the AI-era threat landscape15%›
The vocabulary floor and the threat picture. Asset, threat, vulnerability, risk and control, and the AI-specific threat surface as a catalogued thing rather than a vague anxiety.
D2The ISMS: context, leadership, scope and policy with AI in the estate17.5%›
Clauses 4 and 5 and the management-system model. The signature AI content is scope: browser-accessible AI tooling reaches systems the scope statement never anticipated.
D3Risk assessment and treatment22.5%›
Clauses 6 and 8, the engine of the standard. The Statement of Applicability as a justification record, and why a conventional assessment can return a clean result for an exposed estate.
D4Annex A controls and the AI weave27.5%›
The four themes and the reasoning that selects among them, not a survey of 93 controls. Carries the signature AI content and the explicit null result on physical controls.
D5Performance evaluation, improvement and certification17.5%›
Clauses 9 and 10, and what certification actually is. The AI weave is detection: an AI-related incident frequently leaves no conventional log entry.
The first lesson is free.
No card. See whether Certidemy fits how you learn.
Start free