Back to blog

Certifications

ISO/IEC 27001 Provisional Auditor

ISO/IEC 27001 Provisional Auditor
Jérémie Kassianoff
August 17, 2026
1 min read

ISO/IEC 27001 Provisional Auditor: PECB certification validating ISMS auditing skills, obtained as part of my professional watch in cybersecurity.

View badge on Credly

Real-world use case

I am certified ISO/IEC 27001 Provisional Auditor after passing the Lead Auditor exam. Over the past few years, I have had the opportunity to take part in various technical audits covering infrastructure, networks, backups, business continuity, and the security measures implemented within organizations.

This certification formalizes that technical audit practice with a recognized methodological framework, applied this time to an entire ISMS rather than an isolated technical scope. What remains is to gain hands-on field experience through full ISMS audits. If an opportunity arises within your organization or your network, I would be glad to contribute to that journey.

The "ISO/IEC 27001 Provisional Auditor" certification, issued by PECB, proves that its holder has gained the knowledge needed to audit an Information Security Management System (ISMS) by applying widely recognized audit principles, procedures and techniques. It also validates an understanding of how an ISMS and its processes operate with respect to the ISO/IEC 27001 standard.

The certification criteria are notably based on:

  • Passing the PECB Certified ISO/IEC 27001 Lead Auditor exam (or equivalent)
  • Abiding by PECB's certification rules and policies
  • Adhering to PECB's Code of Ethics

The skills covered include in particular:

  • ISMS audit principles and audit program
  • ISMS audit techniques
  • Identification of ISMS nonconformities
  • ISMS operations audit
  • Information security management, more broadly

PECB is a Personnel Certification Body, accredited to ISO/IEC 17024 by the IAS (International Accreditation Service), UKAS (United Kingdom Accreditation Service), and COFRAC (Comité français d'accréditation).

Conclusion

This ISO/IEC 27001 Provisional Auditor certification naturally builds on the technical audit experience I have accumulated over the past few years: it adds a formalized, recognized auditing skill applicable to an entire ISMS. The next step is now to turn this qualification into concrete field experience through full ISMS audits.