Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of ISO/IEC 27035 components and framework
  • Correlation with ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and core concepts

Incident Management Principles

  • Interpreting threats, vulnerabilities, and risks
  • Categorization and classification of incidents
  • Stages of the incident lifecycle

Planning an Incident Management Program

  • Establishing scope and goals
  • Defining roles, responsibilities, and escalation procedures
  • Developing incident response policies and procedures

Incident Detection and Reporting

  • Identifying indicators of compromise and early warning signs
  • Internal and external reporting mechanisms
  • Maintaining comprehensive incident logs and records

Incident Analysis and Evaluation

  • Collecting and securing evidence
  • Techniques for root cause analysis
  • Assessing impact and evaluating risks

Incident Response, Containment, and Recovery

  • Strategies for containment and communication
  • Eliminating threats and addressing vulnerabilities
  • System restoration and verification

Post-Incident Activities and Continual Improvement

  • Documentation and reporting of incidents
  • Extracting lessons learned and implementing corrective actions
  • Incorporating enhancements into the ISMS

Summary and Next Steps

Requirements

  • Understanding of information security management fundamentals
  • Acquaintance with ISO/IEC 27001 or comparable standards
  • Background in IT security or incident response functions

Target Audience

  • Information security officers and managers
  • Incident response team leaders
  • Risk and compliance specialists

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories