Hello, you are using an old browser that's unsafe and no longer supported. Please consider updating your browser to a newer version, or downloading a modern browser.

ISC2's #1 Training Partner

PECB Certified ISO/IEC 27005 Lead Risk Manager

Establish and manage ISO/IEC 27005 information security risk programs. 4-day boot camp with exam included.

Verified for 2026 ISO-27005-RM Exam
Student
Student
Student
Join 250,000+ certified alumni.
CISSP Professional

96% Pass Rate

Exam Guarantee

$175k+ Avg.

Salary Unlock

PECB Official Training. Exam Included.

Start Monday. Certified Thursday. Exam Included.
Onsite Testing Center Onsite Testing Center - Take your exam at our Pearson VUE facility immediately after class.
No Risk.

4 intensive days for risk managers building ISO/IEC 27005 frameworks

Program Abstract

REF: ISO-27005-RM 6
Curriculum aligned to the latest Exam Outline.
Format Live, Instructor-Led
Duration 4

Risk Management. Framework First.

Focuses on establishing, implementing, and maintaining an ISO/IEC 27005 based risk management framework. Develop the expertise to lead risk assessments, treatment planning, and ongoing risk monitoring programs.

Official PECB Training.

Delivered by PECB-certified instructors using the official courseware. Every module maps directly to the certification exam objectives.

System Integrity Check
Content Source PECB Official
Curriculum Ver. v2025.1
Instructor Auth. Verified
Exam Alignment 100% MATCH

Exam Fee Included.

Your certification exam is included with official PECB training. No surprise fees. Take the exam on the final day of your course.

Mobile Learning

Start Right Away

Unlock iOS/Android app immediately upon enrollment.

Authorized Material

Course from the Source

The only curriculum 100% aligned to the 2025 exam.

All-Inclusive

Exam Fee Included

We cover your $500 exam fee. No hidden costs.

Sim Engine

Exam Deja Vu

Practice with CAT-style questions. No surprises.

Insurance Policy

Pass Guarantee

Unlimited class returns if you need a second shot.

Flexible Schedule

Training Fits Your Life

Day, evening, online or in-person—your choice.

Test Center

Test While It's Fresh

Take your exam on-site within 7 days of class.

Expert Support

Never On Your Own

180 days of unlimited 1-on-1 coaching after class.

Certify Thursday. No Waiting.

Complete your training and take the certification exam in the same week. No scheduling delays, no separate exam appointments.

Thursday 5PM
Bootcamp Concludes - You leave with a personalized attack plan.
Class Ends
Unlimited 1-on-1
AI Gap Analysis - We identify your weak domains using our simulation engine.
Gap Analysis
Exam Day
Pass Guarantee Active - If you don't pass, your next seat is free.
Certified
·
Training materials including official courseware and study guides
Practitioner Led
Instructors are working security professionals, not just trainers.

"I don't teach from a textbook. I teach what happens in the SOC when the alert fires."

Jeff Porch

VP Ed. Services • CISSP, CISM CISSP: Certified Information Systems Security Professional. CISM: Certified Information Security Manager.

Choose Your Delivery Mode.

Same Curriculum
In-person classroom training session
A

In-Person

Immersive classroom experience with direct instructor access and peer collaboration.

  • Face-to-face instruction
  • On-site exam option
Student attending live online training
B

Live Online

Same instructors, same curriculum - learn from anywhere using our award-winning virtual learning platform.

  • Zero travel required
  • Interactive breakout rooms
COURSE STRUCTURE

ISO 27005 Risk Manager
Boot Camp Syllabus

A structured path designed for working professionals.
Each day builds on the last—momentum is everything.

MODULE_ID: PECB-27005RM-01

WEIGHT: 20% QS: ~5
DAY 1
Critical Path

Risk Management Fundamentals and Context

Introduction to ISO/IEC 27005 and information security risk management
L.01.1
Relationship with ISO 31000 and ISO/IEC 27001
L.01.2
Risk management terminology and key concepts
L.01.3
Establishing context: organizational and risk criteria
L.01.4
Scope and boundaries of the risk management program
L.01.5
Risk management framework design and governance
L.01.6

MODULE_ID: PECB-27005RM-02

WEIGHT: 20% QS: ~5
DAY 2
Critical Path

Risk Assessment — Identification, Analysis, Evaluation

Risk identification: assets, threats, vulnerabilities, controls
L.02.1
Qualitative risk analysis: likelihood and impact matrices
L.02.2
Quantitative risk analysis: ALE, SLE, ARO calculations
L.02.3
Risk evaluation: prioritization and acceptance criteria
L.02.4
Risk treatment options: modify, retain, avoid, share
L.02.5
Risk treatment plan development and SoA considerations
L.02.6

MODULE_ID: PECB-27005RM-03

WEIGHT: 40% QS: ~6
DAY 3
Critical Path

Communication, Monitoring, and Improvement

Risk communication and stakeholder engagement
L.03.1
Risk reporting formats and dashboards
L.03.2
Recording and documentation requirements
L.03.3
Trigger-based and schedule-based risk reviews
L.03.4
Key Risk Indicators (KRIs) and integration with incident management
L.03.5
Continual improvement of the risk management process
L.03.6

MODULE_ID: PECB-27005RM-04

WEIGHT: 40% QS: ~6
DAY 4
Critical Path

Risk Assessment Methodologies and Exam

OCTAVE (Operationally Critical Threat, Asset, and Vulnerability Evaluation)
L.04.1
EBIOS (Expression des Besoins et Identification des Objectifs de Securite)
L.04.2
MEHARI (Method for Harmonized Analysis of Risk)
L.04.3
NIST RMF (Risk Management Framework)
L.04.4
Selecting the right methodology for organizational context
L.04.5
PECB Certification Exam (3 hours)
L.04.6
COURSE PROGRESS Day 1 of 4
Articles and Certification Resources

PECB-27005RM Study Tools
& Resources

Expert insights to guide your certification journey.
Real strategies from professionals who passed.

Featured on