Curriculum traceability
iso_27035
This matrix shows how each curriculum area maps to iso_27035requirements — the clause or control it supports, how it's taught, and the evidence the learner and organisation receive. It's a sample, illustrative mapping; your live records (completions, assessment scores, version history) form the per-organisation evidence pack.
What this supports — and what it doesn't
These programs support preparation for iso_27035 certification: they deliver the awareness and competence training the standard requires (notably Clause 7.2 Competence, 7.3 Awareness, and Annex A 6.3) and produce the documented completion and assessment records auditors look for. They do notby themselves certify your organisation or any individual, and they don't guarantee certification — your organisation still implements the management system and is audited by an accredited certification body. Training is the supporting evidence, not the certificate.
Information Security Risk & Incident Management (ISO 27005 + 27035)
| Curriculum area | iso_27035 clauses / controls | Method | Evidence produced |
|---|---|---|---|
| 27035 Foundations | 27035-1:202327035-2:2023 | Lesson + KC | Completion + score |
| 27035 Execution | 27035-1 cl. 5.3-5.627035-3:2020 | Lesson + KC | Completion + score |
Hover a clause code for its title. Clause references follow iso_27035. For a per-organisation, audit-ready evidence pack, get in touch.