Pearson Education Ltd · RQF Level 4

Pearson BTEC Level 4 Diploma in Information Security Professional Competence

You don’t just earn this. You learn to use it, one-to-one, on your own real work.

  • LevelRQF Level 4
  • Total credits78
  • Guided learning325 hours
  • Units in this qualification27

Awarded by Pearson Education Ltd · on the Ofqual register

Start here

See how this course maps onto your role

Ten quick questions, one per Future Fluency, asked against this qualification rather than a generic one.

Check my fluency, free

About 5 minutes · No card · Nothing to commit to

What you’ll learn

What each unit actually teaches you to do

The Pearson BTEC Level 4 Diploma is an occupational qualification for information security professionals. It develops competence in areas such as security testing, risk assessment, security audits, system management, and incident investigation. It is relevant for those working in digital technology.

These are the units Pearson Education Ltd registers against this qualification. It is a catalogue, not a syllabus. Which of them you take depends on the combination the qualification requires, and that is set by the awarding body rather than by us. Every unit here is regulated, and every one you earn is yours to keep.

Carrying out Information Security auditsReal unit · Pearson Education Ltd
It teaches you to plan, conduct, and report on information security audits. You'll define audit scope and objectives, gather evidence to assess compliance with policies and procedures, and document findings including non-conformities and recommendations for corrective actions.

What you'll be able to do

  • Carry out Information Security audit activities, including planning, conducting, and reporting on the audit findings
Carrying out Information Security forensic examinationsReal unit · Pearson Education Ltd
You'll be introduced to legal and ethical considerations in information security forensic examinations. The unit develops skills to collect, preserve, and analyse digital evidence using appropriate tools and techniques while maintaining evidential integrity.

What you'll be able to do

  • Carry out information security forensic examinations in accordance with established procedures and legal requirements.
Carrying out Information Security forensic examinationsReal unit · Pearson Education Ltd
You'll gain knowledge of legal and ethical guidelines relevant to information security forensic examinations. The unit develops practical skills to conduct forensic examinations in compliance with these guidelines, ensuring responsible practice.

What you'll be able to do

  • Carry out Information Security forensic examinations in accordance with relevant legal and ethical guidelines
Carrying out Information Security Incident Management activitiesReal unit · Pearson Education Ltd
This unit equips learners with knowledge and skills to manage information security incidents effectively. You'll understand organisational policies, gather relevant information, and perform incident management activities to mitigate impact.

What you'll be able to do

  • Gather information effectively to manage Information Security incidents in line with organisational policies and procedures.
  • Carry out Information Security Incident Management activities in a timely and efficient manner.
Carrying out Information Security Risk AssessmentReal unit · Pearson Education Ltd
You'll learn to prepare for and carry out information security risk assessments. The unit covers identifying assets, threats, and vulnerabilities, analysing potential impacts, and recommending mitigation strategies to manage and reduce information security risks.

What you'll be able to do

  • Prepare for Information Security Risk Assessments by identifying assets, threats, and vulnerabilities
  • Carry out Information Security Risk Assessments, analysing potential impacts and recommending appropriate mitigation strategies
Carrying out Information Security Risk AssessmentReal unit · Pearson Education Ltd
It teaches you to gather information on potential information security risks, assess their likelihood and impact, and report findings. You'll understand confidentiality requirements and provide prioritised recommendations for risk mitigation.

What you'll be able to do

  • Gather information on potential information security risks within an organisation.
  • Assess and report on identified information security risks, providing recommendations for mitigation.
Carrying out Information Security Risk ManagementReal unit · Pearson Education Ltd
You'll develop the ability to create and manage information security risk contingency plans. The unit covers responding to security breaches and incidents, implementing controls to mitigate risks, and monitoring the effectiveness of these controls to manage information security risks effectively.

What you'll be able to do

  • Develop Information Security risk contingency plans, outlining procedures for responding to security breaches and other incidents
  • Manage information security risks, implementing controls and monitoring their effectiveness
Carrying out Information Security auditsReal unit · Pearson Education Ltd
You'll learn to prepare for and carry out information security audits. The unit includes defining audit scope and objectives, assessing compliance with security policies and procedures, conducting audit activities, and reporting findings to support organisational security governance.

What you'll be able to do

  • Prepare for information security audit activities, defining the scope and objectives of the audit
  • Carry out information security audit activities, assessing compliance with policies and procedures
Creating a procedural computer programReal unit · Pearson Education Ltd
You'll learn to create, refine, test, and document procedural computer programs. The unit focuses on procedural programming techniques, including functions, loops, and control structures, to develop effective software solutions.

What you'll be able to do

  • Implement a software design by writing code using procedural programming techniques
  • Refine a procedural program to improve its quality, efficiency and maintainability
  • Test the operation of a procedural program to ensure it functions correctly and meets requirements
  • Document a computer program to provide clear and concise information for users and developers
Creating an event driven computer programReal unit · Pearson Education Ltd
You'll learn to create event-driven computer programs by implementing software designs using event-driven programming techniques. The unit includes refining program quality, testing functionality, and documenting the program’s design, operation, and implementation.

What you'll be able to do

  • Implement a software design using event driven programming techniques, adhering to coding standards and best practises
  • Refine an event driven program to improve quality, addressing issues related to performance, usability, and maintainability
  • Test the operation of an event driven program, verifying that it meets the specified requirements and handles various scenarios correctly
  • Document an event driven program, providing clear and concise explanations of its functionality, design, and implementation
Creating an object oriented computer programReal unit · Pearson Education Ltd
This unit develops learners' ability to implement, refine, test, and document object-oriented computer programs. You'll apply principles such as encapsulation, inheritance, and polymorphism to produce quality software aligned with design specifications.

What you'll be able to do

  • Implement a software design by writing code using object oriented programming principles
  • Refine an object oriented program to improve its quality, efficiency and maintainability
  • Test the operation of an object oriented driven program to ensure it functions correctly and meets requirements
  • Document an object oriented driven program to provide clear and concise information for users and developers
Designing and developing event-driven computer programsReal unit · Pearson Education Ltd
This unit equips learners to design, develop, and test event-driven computer programs addressing loosely-defined problems. You'll analyse user requirements, consider system constraints, produce functional programs adhering to programming standards, and apply test strategies to ensure quality.

What you'll be able to do

  • Design event-driven programs to address loosely-defined problems, taking into account user requirements and system constraints
  • Produce a working event-driven program which meets the design specification, demonstrating functionality and usability
  • Develop event-driven programs that reflect established programming and software engineering practice, including coding standards and documentation
  • Develop test strategies and apply these to event-driven programs, ensuring robustness and reliability
  • Develop design documentation for use in program maintenance and end-user documentation, providing clear and concise information
Designing and developing object-oriented computer programsReal unit · Pearson Education Ltd
You'll learn to design, develop, and test object-oriented computer programs that meet user needs and system requirements. The unit emphasises established programming practices, including coding standards and design documentation.

What you'll be able to do

  • Design object-oriented programs to address loosely-defined problems, taking into account user needs and system requirements.
  • Produce a working object-oriented program which meets the design specification and functions as intended.
  • Develop object-oriented programs that reflect established programming and software engineering practice, including coding standards and design patterns.
  • Develop test strategies and apply these to object-oriented programs to ensure quality and reliability.
  • Develop design documentation for use in program maintenance and end-user documentation, ensuring clarity and accuracy.
Designing and developing procedural computer programsReal unit · Pearson Education Ltd
It teaches you to design, develop, and test procedural computer programs addressing loosely-defined problems. You'll produce working programs that meet specifications and adhere to programming and software engineering best practices.

What you'll be able to do

  • Design procedural programs to address loosely-defined problems, considering user needs and system requirements
  • Produce a working procedural program which meets the design specification, demonstrating functionality and performance
  • Develop procedural programs that reflect established programming and software engineering practice, adhering to coding standards and best practices
  • Develop test strategies and apply these to procedural programs to ensure quality and reliability
  • Develop design documentation for use in program maintenance and end-user documentation, providing clear and concise information
Develop own effectiveness and professionalismReal unit · Pearson Education Ltd
You'll develop personal and professional skills to enhance workplace effectiveness and professionalism within an IT context. The unit covers teamwork, ethical and legislative considerations, and strategies for continuous personal development.

What you'll be able to do

  • Develop own personal skills to enhance performance in the workplace
  • Develop own professional skills to enhance career prospects
  • Work effectively as a member of a team to achieve defined goals
  • Implement agreed plans collaboratively within a team environment
  • Understand the meaning of professional practice in an IT context
  • Understand the ethical considerations relevant to IT activities
  • Understand the legislative environment relating to IT activities
  • Improve organisational effectiveness through the application of IT skills and knowledge
Health and Safety in ICTReal unit · Pearson Education Ltd
It teaches you to understand and comply with Health and Safety procedures within an ICT environment. You'll identify relevant procedures, demonstrate compliance, and explain the importance of maintaining health and safety standards in ICT workplaces.

What you'll be able to do

  • Comply with relevant Health & Safety procedures in an ICT environment.
IT & Telecoms System ManagementReal unit · Pearson Education Ltd
You'll explore the principles and components of IT and telecoms system management. The unit develops skills to review system functionality, evaluate performance, and manage systems according to organisational policies and roles.

What you'll be able to do

  • Understand how to manage IT and telecoms systems effectively.
  • Review the functionality and management of IT and telecoms systems to ensure optimal performance.
  • Manage IT and telecoms systems according to best practice and organisational policies.
IT & Telecoms System OperationReal unit · Pearson Education Ltd
You'll gain knowledge of IT and Telecoms system technical architecture, including hardware, software, and network components. The unit covers specifying system operation parametres, controlling system operation and maintenance, and monitoring performance to ensure effective system management.

What you'll be able to do

  • Understand the technical architecture of IT or Telecom systems, including hardware, software, and network components
  • Understand how to specify system operation parameters, considering performance, security, and availability requirements
  • Control the operation of systems, monitoring performance and responding to alerts
  • Control system maintenance, scheduling tasks and managing resources
Investigating Information Security incidentsReal unit · Pearson Education Ltd
It teaches you to investigate information security incidents effectively. You'll gather and preserve evidence, analyse incident causes, interview relevant personnel, and recommend corrective actions to prevent recurrence and support organisational security objectives.

What you'll be able to do

  • Gather information to investigate Information Security Incidents, including collecting evidence and interviewing relevant personnel
  • Investigate Information Security incidents, analysing the root cause and recommending appropriate corrective actions
Investigating Information Security incidentsReal unit · Pearson Education Ltd
It teaches you to prepare for and conduct investigations into information security incidents. You'll gather and preserve evidence, establish investigation procedures, identify causes and impacts of incidents, and support organisational responses to security breaches.

What you'll be able to do

  • Prepare for Information Security incident investigations, gathering evidence and establishing procedures
  • Investigate Information Security incidents, identifying the cause and impact of the incident
Investigating and Defining Customer Requirements for ICT SystemsReal unit · Pearson Education Ltd
This unit equips learners to investigate and define customer requirements for ICT systems. You'll control investigations of existing and proposed systems, analyse gathered information to identify needs and constraints, and prioritise requirements based on business impact and feasibility.

What you'll be able to do

  • Control the investigation of existing ICT systems and proposed ICT systems and processes.
  • Analyse information gathered from investigations to identify customer needs and constraints for ICT systems.
Investigating and defining customer requirements for ICT systemsReal unit · Pearson Education Ltd
This unit covers investigating existing ICT systems and processes to identify customer requirements. You'll analyse information to determine needs and constraints, forming comprehensive specifications for new ICT systems.

What you'll be able to do

  • Investigate existing systems and processes to understand their functionality and limitations.
  • Analyse information gathered to identify needs and constraints for ICT systems, considering both technical and business factors.
System ManagementReal unit · Pearson Education Ltd
You'll understand system administration principles including user management, access control, security threats, and resource allocation. They will develop skills to administer systems, manage user accounts and groups, change configurations, and monitor system performance in accordance with organisational policies.

What you'll be able to do

  • Understand how to administer a system, including user management, security settings, and resource allocation.
  • Administer a system and change system configurations according to organisational policies and procedures.
System OperationReal unit · Pearson Education Ltd
This unit covers the operation of systems, including understanding their purpose, key components, and established operating procedures. You'll learn to operate systems effectively, monitor performance, and respond to issues in line with organisational procedures.

What you'll be able to do

  • Operate the system according to established procedures
  • Operate systems effectively and efficiently
  • Maintain and implement system operating procedures to ensure consistent and reliable system performance
Testing the security of Information SystemsReal unit · Pearson Education Ltd
This unit provides learners with the skills to conduct security testing on information systems, identify vulnerabilities, and document test results. You'll recommend remediation strategies and communicate findings to relevant stakeholders.

What you'll be able to do

  • Conduct security testing of information systems to identify vulnerabilities.
  • Report on test results, detailing identified vulnerabilities and recommending remediation strategies.
Testing the security of Information SystemsReal unit · Pearson Education Ltd
This unit equips learners with the ability to plan and conduct security testing of information systems. You'll define testing scope and objectives, use appropriate tools and techniques to identify vulnerabilities, and document and report findings in line with organisational security policies.

What you'll be able to do

  • Plan security testing activities, including defining the scope, objectives, and resources required
  • Carry out security testing in accordance with the plan, documenting findings and reporting on vulnerabilities
User Profile AdministrationReal unit · Pearson Education Ltd
You'll understand organisational policies and procedures related to user profile administration, including data security and privacy considerations. They will develop skills to create, modify, and troubleshoot user profiles accurately in accordance with specified requirements.

What you'll be able to do

  • Administer user profiles in accordance with organisational policies and procedures
  • Administer user profiles effectively and efficiently

The honest bit

You’ve started things before

Most courses were built for a room full of people who aren’t you. A cohort moves on whether or not your week allowed it, and by the third week the thing you’re behind on becomes the reason you stop opening it.

There’s no cohort here, and no timetable to fall behind. Before anything starts, Zavmo asks when you’re sharpest and how long you can realistically sit down for, then builds the sessions around those answers. A bad fortnight changes your pace. It doesn’t put you behind.

And you only pay once you start learning. Searching and planning are free, and you can cancel any time — so the cost of finding out is an afternoon, not a year.

Your passport

Every credit is a stamp you keep

Level 4 credits are regulated. They don’t vanish when a subscription ends or a website closes. They travel to any employer, and Zavmo keeps the map of what you’ve earned and what’s next.

Carrying out Information Security auditsCarrying out Information Security forensic examinationsCarrying out Information Security forensic examinationsCarrying out Information Security Incident Management activitiesCarrying out Information Security Risk AssessmentCarrying out Information Security Risk AssessmentCarrying out Information Security Risk ManagementCarrying out Information Security audits

Each stamp is a real unit registered against this qualification.

Who’d teach you this

The Evidence Evaluator

Assessor

Helps you show what you can actually do, gathering the evidence that proves it as you learn.

Meet all twelve tutors

Where this connects

Where these credits take you

A qualification is never a dead end here. See the jobs its credits open, the national occupational standards its units map to, and the future skills they quietly build.

See Your Progress GrowIllustration
Pearson BTEC Level 4 Diploma in Information Security Professional Competence
  • Assist in Implementing Vulnerability Assessment Processes
  • Carry out information security audit, compliance and assurance activities
  • Carry out information security governance activities
  • Carry out information security identity and access management activities
  • Carry out information security incident investigation and management activities
  • Carry out information security risk assessment and management activities
  • Carry out information security vulnerability assessments
  • Conduct Information Security Audit Activities Under Supervision
This is your Mind Palace on learn.zavmo.ai. Every skill above comes from this role's own record, not an example borrowed from another job. A node lights up when you evidence it, and what you build stays yours between jobs. That is the part a course cannot do.

Where this can lead

Information Security Compliance Analyst

Your journey starts here, learning the fundamental building blocks of information security compliance. With dedication, curiosity, and a commitment to continuous learning, you can build a hugely rewarding career that takes you to the very top of the security and compliance world. We're excited to see where you'll go!

See the whole journey →

Skills it covers

What the job actually needs. These are the standards the units are built against, in the words employers and awarding bodies already use for the work itself.

Assist in Implementing Vulnerability Assessment ProcessesCarry out information security audit, compliance and assurance activitiesCarry out information security governance activitiesCarry out information security identity and access management activitiesCarry out information security incident investigation and management activitiesCarry out information security risk assessment and management activitiesCarry out information security vulnerability assessmentsConduct Information Security Audit Activities Under SupervisionContribute to information security identity and access management activitiesContribute to information security risk assessment and management activitiesDirect and Be Fully Accountable for Information Security AuditLead Information Risk Assessment ActivitiesManage information security audit, compliance and assurance activitiesManage information security incident investigation and management activitiesPerform Incident Management Activities Under Supervision[Not specified in the document]

How you’ll actually learn this

One-to-one, on your own real work

A qualification is usually something done to you: sit the class, sit the exam, hope it sticks. Here it’s the opposite. You learn it one-to-one with a companion, on your own real work, and you keep going until you can use it, not just recall it.

One-to-one, on your real workNo lectures, no past-papers. Every unit is practised on the actual tasks your job throws at you, a tutor beside you, not a video in front of you.
Taught to the top, not the testMost courses stop at remembering. Your companion keeps climbing: analysing, judging, creating. That’s the part a machine can’t do for you.
Credits you keep, a map that continuesEvery unit is regulated and yours for good. The day you finish, Zavmo already knows the next role your new credits open.
Carrying out Information Security auditsLevel 4

Applied to your work in any of these jobs

This unit enables learners to plan, conduct, and report on information security audits. Learners will define audit scope and objectives, gather evidence to assess compliance with policies and procedures, and document findings including non-conformities and recommendations for corrective actions.

How the thinking builds
  1. Remember
  2. Understand
  3. Apply
  4. Analyse
  5. Evaluate
  6. Create
An illustration of a Zavmo lesson, built from this role’s own route. The unit, its objective and every criterion above are the awarding body’s own words, not an example.
Your PlanIllustration

Built for Pearson BTEC Level 4 Diploma in Information Security Professional Competence

24 units in this credential, in the order it lists them, awarded by Pearson Education Ltd.

  1. Carrying out Information Security audits
  2. Carrying out Information Security forensic examinations
  3. Carrying out Information Security Incident Management activities
  4. Carrying out Information Security Risk Assessment
  5. Carrying out Information Security Risk Management
  6. Carrying out Information Security audits

and 18 more in the full unit list below.

These are the real units of this credential, in its own order. Nothing here is marked done, because this plan has not been started by anyone yet. Yours would fill in as you go.

One to one, not one to many

No two people run this the same way

A course is written once and handed to everyone. This is assembled around you, and keeps changing as it learns you. Five things it reads, and what each one changes.

  1. Your actual work Every unit is taught against a live piece of your own work, not a worked example from a textbook.
  2. What you already know The first conversation finds your starting point, so you skip what you can already do and spend the time on what you cannot.
  3. The conditions you learn under Not a learning-styles quiz. The evidence does not support those. The dimensions the research does back, read once and used to shape the plan.
  4. How far you got last time It picks up mid-thought. The tutor knows what you said, what you struggled with, and what it asked you to try.
  5. Which tutor suits the moment Twelve of them, each for a different kind of thinking. The one who walks you through a first idea is not the one who stress-tests it.

See how you learn, free. Eight questions, no sign-up. A directional taster; the diagnostic inside Zavmo goes deeper and keeps adapting.

Why it sticks

Most courses stop at remembering

There’s a well-known ladder of how deeply you learn something, called Bloom’s Taxonomy. Most courses get you up the first two rungs: you remember some facts, you pass a test, you forget it. Real skill lives at the top. Judging, deciding, creating. And this isn’t a generic ladder: every rung has a named Zavmo tutor who walks you up it.

  1. 6CreateThe Creative Catalyst
  2. 5EvaluateThe Evidence Evaluator
  3. 4AnalyseThe Analyst
  4. 3ApplyThe Coach
  5. 2UnderstandThe Connector
  6. 1RememberThe Builder

Where most courses leave you Where Zavmo takes you

Why this matters: AI can already remember and understand for you. What it can’t do is take your real problem and judge the right call. So the only learning worth paying for is the learning that takes you to the top. That’s exactly what a tutor doing it with you, on your real work, is for.

The value

Why the companion is worth £70 a month

You’re not paying for the units. They’re regulated, and the same wherever you earn them. You’re paying for the one thing that decides whether you actually get there: a companion that makes them stick, on your real work.

That is one-to-one on this qualification, every day, on the work you already do, for £70 a month. Your first module is free, so you can see the teaching before you pay for any of it. Billed monthly, cancel any time and billing stops.

Earned on your own work, taught to the top.

Everything you just read, learned one-to-one on the job you already do. Your first module is free, so you can see the teaching before you pay for any of it.

Build my plan, free

No card. See how this qualification maps onto your role and meet the tutors who’d teach it, free. The learning begins when you subscribe. It’s £70 a month, billed monthly. Cancel any time and billing stops.