Skip to main content
Cybersecurity ops

ISO 27033 Lead Network Security Manager

ISO 27033 Lead Network Security Manager. Review available formats, prerequisites, current inclusions and certification terms before booking.

PECBLead5 daysLiveSelf-pacedIn-house
  • Practitioner-led, taught by a working CISO
Christophe Mazzola

Taught by

Christophe Mazzola

Practicing CISO · Founder of Cyber Academy

See full profile →

Right fit if you are.

  • Network security and information security professionals seeking to manage network security programmes
  • Managers and consultants aiming to develop mastery of network security best practices
  • Individuals involved in planning and implementing the architectural aspects of network security
  • Technical experts looking to broaden and formalise their network security knowledge within a standards framework
  • Network security expert advisers who need to provide structured guidance to client organisations

NOT for. When to skip it.

We'd rather you keep your money than buy the wrong path.

  • Individuals with no prior network security experience who are seeking an introductory course on networking fundamentals
  • Professionals whose primary focus is information security risk management rather than network security governance and architecture
  • Those seeking a purely hands-on configuration or penetration testing course rather than a management and standards-based programme
  • Learners interested in application security auditing rather than network-level security management

What you'll be able to do

  • 1Explain the concepts, approaches, methods, and techniques involved in implementing and managing network security based on the ISO/IEC 27033 series
  • 2Describe the relationship between the ISO/IEC 27033 standards and other relevant security standards and regulatory frameworks
  • 3Interpret ISO/IEC 27033 guidelines and apply them to the specific operational context of an organisation
  • 4Support an organisation in planning, implementing, managing, monitoring, and maintaining network security controls
  • 5Advise an organisation on network security best practices drawing on the ISO/IEC 27033 series
  • 6Manage network security policies, documentation, and team competence in line with standards guidance
  • 7Apply controls for securing internet access, network segmentation, VPNs, security gateways, and wireless networks
  • 8Establish network security testing, incident management, and continual improvement processes

Day by day

Day 1Introduction to ISO/IEC 27033 series and initiation of network security implementation
  • Overview of the ISO/IEC 27033 series of standards

    This module introduces the structure and scope of the multi-part ISO/IEC 27033 series and explains how each part contributes to a comprehensive network security framework.

  • Relationship with other standards and regulatory frameworks

    Participants explore how ISO/IEC 27033 aligns with and complements other security standards and applicable regulatory requirements.

  • Initiating network security implementation

    This module covers the initial steps required to plan and launch a network security implementation programme within an organisational context.

By end of day

  • Describe the scope and structure of the ISO/IEC 27033 series and its relationship with related standards
  • Identify the key activities required to initiate a network security implementation programme
Day 2Network security team, policy, risk management, and documentation management
  • Building and managing a network security team

    This module examines the roles, competencies, and training requirements needed to establish an effective network security team.

  • Network security policy development

    Participants learn how to develop, structure, and maintain network security policies that reflect ISO/IEC 27033 guidelines and organisational risk appetite.

  • Risk management and documentation in network security

    This module covers how to integrate risk management into network security planning and how to manage the documentation that supports governance and audit readiness.

By end of day

  • Define the competencies and structure of a network security team aligned with ISO/IEC 27033 guidance
  • Draft a network security policy that addresses organisational risks and documentation requirements
Day 3Internet access services, network segmentation, security gateways, VPNs, and wireless IP network access
  • Securing internet access services

    This module addresses the controls and architectural measures used to secure organisational internet access points based on ISO/IEC 27033 guidelines.

  • Network segmentation and security gateways

    Participants examine strategies for segmenting networks and deploying security gateways to reduce attack surfaces and contain potential incidents.

  • VPNs and wireless IP network security

    This module covers the controls required to secure virtual private network communications and wireless IP network access in accordance with standards guidance.

By end of day

  • Apply ISO/IEC 27033 controls to secure internet access, segmentation boundaries, and gateway configurations
  • Select appropriate VPN and wireless security measures suited to organisational requirements
Day 4Network security testing, incident management, monitoring, and continual improvement
  • Network security testing

    This module introduces structured approaches to testing network security controls to verify their effectiveness and identify gaps before incidents occur.

  • Incident management for network security events

    Participants learn how to establish and operate an incident management process that addresses network security events in line with ISO/IEC 27033 and related best practices.

  • Monitoring and continual improvement

    This module covers how to monitor network security controls over time and feed findings into a continual improvement cycle that keeps defences current.

By end of day

  • Design a network security testing plan that validates control effectiveness across key risk areas
  • Establish monitoring and incident management processes that support timely detection and response
  • Build a continual improvement mechanism into the network security management programme
Day 5Consolidation and exam preparation
  • Review of competency domains

    This session revisits all seven PECB exam competency domains covered during the course to consolidate knowledge and address any remaining questions.

  • Guided practice and Q&A

    Participants work through practice scenarios and questions with trainer guidance to strengthen readiness for the PECB certification exam.

By end of day

  • Identify and address personal knowledge gaps across all seven competency domains
  • Approach the PECB ISO/IEC 27033 Lead Network Security Manager exam with a structured revision strategy

Upcoming public sessions

Open-enrolment cohorts. Pick a date and book your seat. Want a private cohort for your team instead? Request an in-house quote.

No confirmed live cohort right now. You can still:

Everything inside this certification

The detail behind the headline. Read at your own pace. Each section answers a buyer question we get on discovery calls.

  • Domain 1: Fundamental principles and concepts of network security
  • Domain 2: Network security planning
  • Domain 3: Network security policy and documentation management
  • Domain 4: Securing network communications based on ISO/IEC 27033 series of standards and best practices
  • Domain 5: Network security competence, training, awareness, and team
  • Domain 6: Network security incident management and business continuity
  • Domain 7: Network security testing, monitoring, and continual improvement

Certification Rules and Policies

The requirements for PECB ISO/IEC 27033 Lead Network Security Manager certifications are as follows:

  1. Implementing network security
  2. Managing network security implementation
  3. Managing documented information
  4. Monitoring the network security performance
  5. Managing a network security team
  • Certification and examination fees are included in the price of the training course
  • Participants will be provided with the training course material containing over 450 pages of explanatory information, examples, best practices, exercises, and quizzes.
  • An attestation of course completion worth 31 CPD (Continuing Professional Development) credits will be issued to the participants who have attended the training course.
  • In case candidates fail the exam, they can retake it within 12 months following the initial attempt for free.

Educational approach

  • The training course includes essay-type exercises, multiple-choice quizzes, scenario-based quizzes, and examples of network security best practices.
  • Participants are encouraged to communicate with each other and engage in discussions when completing quizzes and exercises.
  • The exercises are based on a case study.
  • The structure of the quizzes is similar to that of the certification exam.

Buyers always ask

Is the certification exam included with this course?+

Exam inclusion depends on the delivery format and commercial option selected. Check the booking summary or ask Cyber Academy for written confirmation before registering.

Completing the training, passing the applicable exam, and meeting the PECB credential requirements are separate steps.

What level of prior knowledge is expected before attending this course?+

PECB recommends that participants have a fundamental understanding of the ISO/IEC 27033 series and general knowledge of network security concepts before attending. Arriving without this background may make some sections more challenging to follow.

If you have solid hands-on network security experience but limited familiarity with ISO/IEC 27033 itself, reviewing the standard's scope and key terms before the course starts would be a practical way to prepare.

Which parts of the ISO/IEC 27033 series does this course address?+

The course draws on the ISO/IEC 27033 series as a whole, covering topics that span network security concepts, design, implementation, policy, risk management, specific security controls, and monitoring.

The agenda addresses internet access, segmentation, security gateways, VPNs, and wireless networks, which correspond to the technical guidance found across the multi-part series. Participants are encouraged to review the series structure before attending to maximise the benefit of each session.

How is completing this training different from being certified as an ISO/IEC 27033 Lead Network Security Manager?+

Completing the training confirms your participation in the Cyber Academy programme and indicates that you have been exposed to the full curriculum. Certification is a separate outcome that requires passing the PECB exam and meeting any professional experience requirements set by PECB.

You will receive a Cyber Academy training completion record at the end of the course. For certification, you must engage separately with the PECB examination and certification process.

Is this course relevant to professionals who work mainly with cloud network environments?+

The course content is grounded in the ISO/IEC 27033 series, which covers foundational network security concepts including segmentation, VPNs, wireless access, and security gateways. Many of these principles apply in hybrid and cloud network contexts.

However, the course does not focus specifically on cloud-native security architectures or cloud service provider controls. Professionals whose work is exclusively cloud-focused should consider whether supplementary cloud security training would complement this programme.

Ready to get certified?

Taught by a practicing CISO. Prices and exam terms shown up front.