Two day ISO27001:2022 masterclass and advanced course

Unlock the full potential of ISO27001 with our exclusive 2-day masterclass in London, happening on the 18th and 19th November 2025. Clair Phelps seasoned CISO and Chris Hall, ISO27001 expert and thought leader, together have joined forces to pass on their combined 30 years of ISO27001 experience. We're thrilled to offer this unique opportunity, tailored specifically for professionals who are familiar with ISO27001 but eager to dive deeper into its latest updates and unravel common misconceptions.

Ever wanted to really understand ISO27001 and how to get the best out of it? If so, this is the course for you.

This isn't just another training course. It's a chance to gain insider insights and practical guidance on maximizing ISO27001's benefits while ensuring compliance. Whether you're looking to enhance your expertise or elevate your organization's standards, this masterclass is designed to propel you to the forefront of ISO27001 knowledge.

Previous attendee feedback includes:

“These two days helped me to gain a much deeper understanding of what the ISO 27001 standard means both at a high level and down to the nitty gritty of implementing it specific clauses.”, and

“Great course, highly recommend it. Chris and Clair have a wealth of knowledge and experience and really brought the course to life using real examples”

"The Master Class exceeded my expectations and objectives. The depth of ISO/IEC 27001 experience and knowledge of the facilitators Clair and Chris, plus their "anecdotal" delivery assured the emphasis was always on the practical aspects of ISO/IEC 27001 implementation, operation, maintenance and improvement. I highly recommend this Master Class and will certainly attend similar ones on different ISO/IEC 27001 topics in the future."

This is not an introductory course. A prerequisite is a reasonable understanding of ISO 27001.

Learning objectives:

This course has the objective of helping you to understand ISO27001 in a way that helps you improve your approach to your ISMS, ISO27001 and your certification audits. The course also looks at some of the more common misunderstandings of ISO27001.

Who should attend?

This could be ISMS managers, information security managers, practitioners, consultants and internal or certification auditors.

The course is run by Chris Hall and Clair Phelps.

Chris is a qualified ISO27001 Lead Auditor and has conducted many formal ISO27001 certification audits all over the world.

Clair has considerable experience in all aspects of an ISO27001 compliant information security management systems. She is also a qualified ISO 27001 Lead Auditor.

Together Chris and Clair have over 30 years experience in implementing, maintaining and auditing information security systems.

Course content.

The course content typically covers the content below but is flexible depending on the attendees interest. If there is any other topic you would like to be covered please let us know:

   • The two tribes of ISO27001.

   • The many myths of ISO27001.

   • What you can ignore in ISO27001.

   • How to do a scope that it not the whole company.

   • What controls do not have to be implemented.

   • How perfect does your ISMS have to be?

   • How to prepare for a certification audit.

   • What auditors are looking for.

   • Risk management in ISO27001.

   • Dora, NIS2 and ISO27001.

   • The many different versions of ISO27001 used by auditors.

   • How to maintain your ISMS.

   • Approaches to undertaking risk assessments.

   • How to use NIST, CSA, etc.

   • The relationship of ISO27001 to DORA and NIS2.

   • How to do SOC 2 with ISO27001.

   • The comparison with Annex A.

   • What to do when an auditor raises a finding.

   • The use of the Statement of Applicability

   • Legal, Regulatory and contractual requirements.

This course is a minimum of 10 CPE (Continuous Professional Education) credits.

The emphasis is on pragmatic approaches that will help with both managing information security as well as keeping the auditors happy.

Course information

Location: London, 18th and 19th November, 2025

Language: The course language will be English

Price: £1,200 + VAT where applicable. This price excludes accommodation and meals.

Registration: Please register your interest by emailing Clair – clair@btrp.co.uk.

- Why BTRP?

  • We have a proven and extensive track record in short timescales ISO27001 implementations leading to successful certification.
  • We have consultants specialising in Information Security and ISO27001.
  • All of our ISO27001 consultants have at least 25 years in Industry, typically in IT related activities.
  • All of our ISO27001 consultants have at least 10 years’ experience of ISO27001.
  • We have consultants that are ISO27001 Lead Auditors and Trainers.
  • Chris Hall, our lead ISO27001 consultant is a recognised world expert on ISO27001 with a blog, numerous linkedin articles, etc.
  • Chris also previously managed a global UKAS accredited certification business with clients all across the world.
  • Chris has trained hundreds of ISO27001 Lead auditors around the world.
  • Chris is also a committee member on the UK and international ISO committees that helps manage and develop the ISO27K series of standards.
  • Chris is also an invited conference speaker on the topic at national and international conferences.