PECB Certified ISO/IEC 27034 Lead Application Security Auditor
Develop the skills needed to audit application security processes according to the standards series ISO/IEC 27034, applying recognized audit principles.
Certification PECB ISO/IEC 27034 Lead Application Security Auditor
Training overview
The ISO/IEC 27034 standard defines a framework for integrating security throughout the application life cycle, through key concepts such as the Organizational Normative Framework (ONF), the Application Normative Framework (ANF), and Application Security Controls (ASC).
This training course PECB Certified ISO/IEC 27034 Lead Application Security Auditor prepares you to assess the governance, implementation, and maintenance of application security, based on the audit principles of ISO 19011 and ISO/IEC 17021-1.
Learning objectives
ONF, ANF & ASC concepts
Understand the key concepts of ISO/IEC 27034: Organizational Normative Framework, Application Normative Framework, and Application Security Controls.
Audit principles
Apply the audit principles of ISO 19011 and ISO/IEC 17021-1 to application security.
Audit execution
Assess how application security is governed, implemented, and maintained within an organization.
Practical scenario
Build, through practical exercises and scenarios, the competence needed to audit application security in different contexts.
Audience & prerequisites
Target audience: internal or external auditors, application security managers, and professionals involved in the audit or governance of application security.
Prerequisites: a good understanding of application security concepts and principles is required to take this training course.
Practical information & terms ℹ
Objectives & targeted skills: audit application security processes according to the series ISO/IEC 27034, applying the audit principles of ISO 19011 and ISO/IEC 17021-1.
Target audience: internal or external auditors, application security managers, and professionals involved in the audit or governance of application security.
Prerequisites: a good understanding of application security concepts and principles is required to take this training course.
Duration: 35 hours (5 days), certification exam included.
Delivery format: in-person or remote ; inter-company or intra-company sessions.
Price: upon quotation. Student rate: -50 % upon presentation of proof. Prices net of VAT (VAT-exempt training, article 261-4-4°a of the CGI).
Funding: OPCO, France Travail, self-funding.
Payment terms: 30 % deposit upon registration, balance due before the start of the training course.
Access times: vary depending on the training course; contact us (registration possible all year round).
Teaching methods: theoretical input, case studies, practical exercises, and scenario-based practice.
Assessment methods: multiple-choice questions, case studies, and scenario-based exercises during the training course; certification exam PECB at the end of the course.
Certificate of completion & certification: a certificate of completion is issued to each learner; certification PECB Certified ISO/IEC 27034 Lead Application Security Auditor upon passing the exam.
Accessibility for people with disabilities: premises and arrangements can be adapted. Contact us. Disability contact person : Corentin BARDIN, contact@bcit.fr / +33 6 46 80 05 85.
Results indicators: overall satisfaction rate of 100 %. Detailed satisfaction by training course is updated every 6 months and available in the training program (PDF).
Withdrawal period: 14 days for individuals (excluding immediate access), not applicable to professionals (see CGV).
Program
Days 1-2: ONF, ANF & ASC concepts
ISO/IEC 27034 framework, organizational and application normative frameworks, application security controls.
Days 3-4: Audit principles & execution
Audit principles of ISO 19011 and ISO/IEC 17021-1 applied to application security, audit preparation and execution.
Day 5: Practical scenario & exam
Practical application security audit exercises, followed by taking the certification exam .
Exam & certification
PECB exam
The exam PECB Certified ISO/IEC 27034 Lead Application Security Auditor takes place at the end of the training course and assesses your mastery of the concepts and requirements covered throughout the course.
Lead Application Security Auditor certification
Passing the exam allows you to obtain the certification PECB Certified ISO/IEC 27034 Lead Application Security Auditor, internationally recognized.
The BCIT advantage
Partner PECB, BCIT Formation offers you pragmatic, results-oriented support from field experts.
Ready to audit the security of your applications?
View our upcoming sessions or let's discuss your needs. We will suggest the format best suited to your context and objectives.
PECB Certified ISO/IEC 27034 Lead Application Security Auditor
Develop the skills needed to audit application security processes according to the standards series ISO/IEC 27034, applying recognized audit principles.
Certification PECB ISO/IEC 27034 Lead Application Security Auditor
Training overview
The ISO/IEC 27034 standard defines a framework for integrating security throughout the application life cycle, through key concepts such as the Organizational Normative Framework (ONF), the Application Normative Framework (ANF), and Application Security Controls (ASC).
This training course PECB Certified ISO/IEC 27034 Lead Application Security Auditor prepares you to assess the governance, implementation, and maintenance of application security, based on the audit principles of ISO 19011 and ISO/IEC 17021-1.
Learning objectives
ONF, ANF & ASC concepts
Understand the key concepts of ISO/IEC 27034: Organizational Normative Framework, Application Normative Framework, and Application Security Controls.
Audit principles
Apply the audit principles of ISO 19011 and ISO/IEC 17021-1 to application security.
Audit execution
Assess how application security is governed, implemented, and maintained within an organization.
Practical scenario
Build, through practical exercises and scenarios, the competence needed to audit application security in different contexts.
Audience & prerequisites
Target audience: internal or external auditors, application security managers, and professionals involved in the audit or governance of application security.
Prerequisites: a good understanding of application security concepts and principles is required to take this training course.
Practical information & terms ℹ
Objectives & targeted skills: audit application security processes according to the series ISO/IEC 27034, applying the audit principles of ISO 19011 and ISO/IEC 17021-1.
Target audience: internal or external auditors, application security managers, and professionals involved in the audit or governance of application security.
Prerequisites: a good understanding of application security concepts and principles is required to take this training course.
Duration: 35 hours (5 days), certification exam included.
Delivery format: in-person or remote ; inter-company or intra-company sessions.
Price: upon quotation. Student rate: -50 % upon presentation of proof. Prices net of VAT (VAT-exempt training, article 261-4-4°a of the CGI).
Funding: OPCO, France Travail, self-funding.
Payment terms: 30 % deposit upon registration, balance due before the start of the training course.
Access times: vary depending on the training course; contact us (registration possible all year round).
Teaching methods: theoretical input, case studies, practical exercises, and scenario-based practice.
Assessment methods: multiple-choice questions, case studies, and scenario-based exercises during the training course; certification exam PECB at the end of the course.
Certificate of completion & certification: a certificate of completion is issued to each learner; certification PECB Certified ISO/IEC 27034 Lead Application Security Auditor upon passing the exam.
Accessibility for people with disabilities: premises and arrangements can be adapted. Contact us. Disability contact person : Corentin BARDIN, contact@bcit.fr / +33 6 46 80 05 85.
Results indicators: overall satisfaction rate of 100 %. Detailed satisfaction by training course is updated every 6 months and available in the training program (PDF).
Withdrawal period: 14 days for individuals (excluding immediate access), not applicable to professionals (see CGV).
Program
Days 1-2: ONF, ANF & ASC concepts
ISO/IEC 27034 framework, organizational and application normative frameworks, application security controls.
Days 3-4: Audit principles & execution
Audit principles of ISO 19011 and ISO/IEC 17021-1 applied to application security, audit preparation and execution.
Day 5: Practical scenario & exam
Practical application security audit exercises, followed by taking the certification exam .
Exam & certification
PECB exam
The exam PECB Certified ISO/IEC 27034 Lead Application Security Auditor takes place at the end of the training course and assesses your mastery of the concepts and requirements covered throughout the course.
Lead Application Security Auditor certification
Passing the exam allows you to obtain the certification PECB Certified ISO/IEC 27034 Lead Application Security Auditor, internationally recognized.
The BCIT advantage
Partner PECB, BCIT Formation offers you pragmatic, results-oriented support from field experts.
Ready to audit the security of your applications?
View our upcoming sessions or let's discuss your needs. We will suggest the format best suited to your context and objectives.