Skip to main content
Contact Us

Privacy Management

PECB ISO 27701 Foundation

PECB ISO/IEC 27701 Foundation self-study for privacy professionals, compliance officers, and information security practitioners who need a foundational understanding of Privacy Information Management Systems — read at your own pace with two exam attempts included.

Enroll now

$399 AUD

🛡️ Secure checkout via Stripe · GST excluded · Includes two exam attempts

PECB Certified ISO/IEC 27701 Foundation badge
✓ PECB Accredited ✓ 100% Online, Self-Paced ✓ Exam Voucher Included ✓ 12 Months Access

$399 AUD · Self-study · PECB exam included

Learner feedback

"A clear, accessible introduction to ISO 27701 — exactly what I needed to understand how PIMS extends ISO 27001 for privacy compliance."

Lena Marsh, Privacy Officer

Credential

PECB Certified ISO/IEC 27701 Foundation

Format

Self-study via myPECB — read the course manual and complete exercises at your own pace

Typical effort

~14 hours (equivalent to a 2-day course)

Who should attend

Who should attend

  • Privacy professionals and Data Protection Officers seeking a recognised credential
  • Information security professionals extending their knowledge to privacy management
  • Compliance officers responsible for privacy governance and regulatory obligations
  • IT managers and project team members involved in PIMS implementation
  • Anyone seeking a foundational understanding of ISO/IEC 27701 and PIMS concepts

Key outcomes

Key outcomes

  • Describe the fundamental concepts and requirements of a Privacy Information Management System (PIMS).
  • Explain the relationship between ISO/IEC 27701, ISO/IEC 27001, ISO/IEC 27002, and privacy regulations.
  • Identify approaches, methods, and techniques for PIMS implementation and management.
  • Understand how ISO/IEC 27701 maps to GDPR, the Australian Privacy Act, and related frameworks.

Why this course

Build your privacy management foundation

ISO/IEC 27701 is the international extension to ISO 27001 for privacy information management. The Foundation certification establishes the baseline concepts, requirements, and relationships you need to contribute to PIMS implementation or audit projects.

  • Understand PIMS concepts, structure, and how ISO 27701 extends ISO 27001.
  • Learn the relationship between ISO 27701, GDPR, and the Australian Privacy Act.
  • Prepare for Lead-level ISO 27701 certification as a natural progression.

How self-study works

On-demand via myPECB

  1. Access the course manual (200+ pages) through myPECB — read at your own pace, around your schedule.
  2. Work through the practice exercises and self-assessment questions included in the materials.
  3. Sit the closed-book exam remotely at the date and time that suits you (two attempts included).

What to expect

Self-study benefits

  • 100% self-paced — no fixed schedule, no video sessions to keep pace with.
  • Full course manual and practice materials accessible through myPECB.
  • Official PECB exam voucher with remote proctoring included.
  • Free retake within 12 months if you do not pass on the first attempt.

Course structure

Two competency domains

  • Fundamental principles and concepts of a Privacy Information Management System (PIMS).
  • Privacy Information Management System (PIMS) requirements based on ISO/IEC 27701:2025.

Learning objectives

  • Describe the fundamental concepts and requirements of a Privacy Information Management System (PIMS).
  • Explain the relationship between ISO/IEC 27701, ISO/IEC 27001, ISO/IEC 27002, and privacy regulations.
  • Identify approaches, methods, and techniques for PIMS implementation and management.
  • Understand how ISO/IEC 27701 maps to GDPR, the Australian Privacy Act, and related frameworks.

Examination

PECB ISO/IEC 27701 Foundation exam

  • Domain 1: Fundamental principles and concepts of a Privacy Information Management System (PIMS).
  • Domain 2: Privacy Information Management System (PIMS) requirements.

Certification

PECB Certified ISO/IEC 27701 Foundation credential

  • Certification fees are included in the exam price.
  • Training material (200+ pages) with explanatory information, discussion topics, examples, and exercises.
  • Attendance worth 14 CPD credits.
  • If you do not pass the exam, you can retake it within 12 months for free.
  • No work experience prerequisites required for the Foundation credential.

Ready to start?

Download the brochure for full details

Includes curriculum, exam domains, and certification pathway.

Download brochure

What Is ISO/IEC 27701?

ISO/IEC 27701:2025 is the international standard for Privacy Information Management Systems (PIMS). It extends ISO/IEC 27001 by adding privacy-specific requirements and guidance, helping organisations demonstrate that personal data is handled securely, transparently, and in compliance with applicable privacy regulations.

The standard provides a structured framework for both data controllers (organisations that determine how personal data is used) and data processors (organisations that process data on behalf of controllers). It maps directly to major privacy regulations including GDPR and the Australian Privacy Act 1988.

ISO 27701 and the Australian Privacy Act

Australian organisations subject to the Privacy Act 1988 — including organisations with annual turnover above $3 million, health service providers, and government agencies — can use ISO 27701 as a structured framework to document and evidence their privacy practices.

The Privacy Act's 13 Australian Privacy Principles (APPs) align with many of the PIMS controls in ISO 27701, making the standard a practical implementation guide for Australian compliance. The Australian Information Commissioner has noted that international privacy standards like ISO 27701 can support compliance with the APPs.

Foundation vs Lead Implementer vs Lead Auditor

FoundationLead ImplementerLead Auditor
FocusPIMS concepts and requirementsBuilding and deploying a PIMSAuditing and evaluating a PIMS
Best forAnyone starting outPrivacy managers, DPOsInternal/external auditors
Exam40 MCQ, 1 hour, closed-book80 MCQ, 3 hours, open-book80 MCQ, 3 hours, open-book
CPD hours143131
Price$399 AUD$849 AUD$849 AUD

Ready to go further? Explore the ISO 27701 Lead Implementer or Lead Auditor courses.

How ISO 27701 Relates to ISO 27001

ISO 27701 is an extension to ISO 27001 that adds privacy-specific controls for managing personal information. If your organisation already has an ISO 27001-certified ISMS, ISO 27701 adds a Privacy Information Management System (PIMS) layer on top.

The 2025 revision of ISO 27701 aligns with the latest ISO 27001:2022 controls. Already ISO 27001 certified? This Foundation course gives you the baseline to understand what the privacy extension adds.

Your ISO 27701 Pathway

Related Certifications

Course FAQs

Answers to the most common questions about our PECB self-study courses.

What is ISO/IEC 27701?

ISO/IEC 27701:2025 is an international standard that specifies requirements and guidance for establishing, implementing, maintaining, and continually improving a Privacy Information Management System (PIMS). It is structured as an extension to ISO/IEC 27001 and ISO/IEC 27002, providing privacy-specific controls and guidance for organisations acting as both data controllers and data processors.

How does ISO 27701 relate to GDPR and the Australian Privacy Act?

ISO/IEC 27701 is designed to be mappable to major privacy regulations including the GDPR, the Australian Privacy Act 1988, and other national privacy frameworks. Implementing ISO 27701 provides documented evidence of privacy controls that can support regulatory compliance — though it does not replace direct legal obligations.

Do I need ISO 27001 before studying ISO 27701?

ISO 27001 knowledge is beneficial but not a formal prerequisite for the Foundation course. The Foundation covers PIMS fundamentals and the ISO 27701 extension structure from first principles. For the Lead Implementer and Lead Auditor courses, a foundational understanding of ISO 27001 is strongly recommended.

How do I access the course materials?

You will receive myPECB access instructions after purchase. Log in to download the full course manual and all study materials, and to schedule your remote-proctored exam.

Are exam attempts included?

Yes. Two remote-proctored exam attempts are included with your enrolment. If you do not pass on the first attempt, you can retake the exam within 12 months at no extra cost.

Is the training self-paced?

Yes. Self-study courses give you 24/7 access to the full course manual and materials via myPECB — read at your own pace, around your schedule. There are no video sessions or fixed lesson timings.

Do I receive a certificate?

After passing the exam, PECB issues your professional credential provided you meet the certification requirements.

Need a private training block?

We can tailor the curriculum to your systems, risk profile, and geography. Let us know what success looks like for your team.

Talk to an advisor