Hanligent Education
Back to courses

Privacy & Data Protection

ISO/IEC 27701 — Privacy Information Management System

Course types, duration & fees

Course typeWho should attendWhat your company benefitsDurationFee
FoundationThose who wish to learn the basis of implementing the management system and its processesProvide the organization with best-practice based orientation and mindset culture by understanding the main important elements of ISO standards2 daysHKD 4,400
Lead ImplementerResponsible persons for implementing and managing the management system in their companyImprove overall processes by implementing best practices led by competent staff that can lead to compliance with ISO standards5 daysHKD 11,200
Lead AuditorResponsible persons for auditing and monitoring management systems in their companyEnsure your management systems are implemented properly by having competent staff audit the processes that can lead to a successful compliance and certification5 daysHKD 11,200

About the standard

ISO/IEC 27701 is the international standard for a Privacy Information Management System (PIMS), applicable to any organization that acts as a PII controller or processor. The 2025 edition makes the PIMS a stand-alone system rather than an extension of ISO/IEC 27001, giving organizations more flexibility to implement privacy management on its own while staying aligned with ISO's broader management-system structure. It helps organizations demonstrate compliance with privacy practices, build trust, and map their controls against key privacy laws and frameworks.

Levels available

  • Foundation — Introduces the basics of a PIMS and the key requirements of ISO/IEC 27701, giving learners a working grasp of privacy information management.
  • Lead Implementer — For those responsible for building and managing a PIMS, covering the skills to implement and maintain compliance with the standard.
  • Lead Auditor — For those responsible for auditing a PIMS, developing the competence to assess conformity and support certification.
  • Transition — For professionals already familiar with an earlier edition of the standard who need to update their knowledge to the current one.

Who should attend

This track suits privacy officers, data protection professionals, compliance managers, and information security practitioners who handle personal data or oversee privacy programs. It's also relevant to auditors and consultants who assess organizations' privacy management practices against regulatory and contractual obligations.

Learning objectives

  • Gain the expertise to implement a PIMS that complies with ISO/IEC 27701
  • Learn how to guide an organization through achieving and maintaining PIMS compliance
  • Develop skills to contribute to the continuous improvement of privacy practices
  • Build a deeper understanding of privacy regulations and how they map to organizational controls
  • Learn how to demonstrate proficiency in privacy management to build trust with clients and stakeholders

Why attend

As personal data becomes central to nearly every business process, the risks of unauthorized access, misuse, and regulatory non-compliance keep growing. This training equips professionals with a structured way to manage personal data responsibly, strengthens career opportunities in privacy and data protection, and builds the credibility needed to lead or audit privacy programs with confidence.

PECB link

https://pecb.com/en/education-and-certification-for-individuals/iso-iec-27701

Official PECB page