Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of the various parts and structure of ISO/IEC 27035
  • Connection to ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and core concepts

Incident Management Principles

  • Understanding threats, vulnerabilities, and associated risks
  • Categorization and classification of incidents
  • Stages of the incident lifecycle

Planning an Incident Management Program

  • Defining the scope and strategic objectives
  • Assigning roles, responsibilities, and establishing escalation paths
  • Formulating incident response policies and procedures

Incident Detection and Reporting

  • Identifying indicators of compromise and early warning signs
  • Utilizing internal and external reporting channels
  • Maintaining accurate incident logs and records

Incident Analysis and Evaluation

  • Methods for gathering and preserving evidence
  • Techniques for conducting root cause analysis
  • Assessing impact and evaluating risk

Incident Response, Containment, and Recovery

  • Strategies for containment and effective communication
  • Eradicating threats and resolving vulnerabilities
  • System recovery processes and validation

Post-Incident Activities and Continual Improvement

  • Documenting incidents and producing final reports
  • Extracting lessons learned and implementing corrective actions
  • Integrating improvements into the broader ISMS

Summary and Next Steps

Requirements

  • Working knowledge of information security management concepts
  • Familiarity with ISO/IEC 27001 or related standards
  • Practical experience in IT security or incident response roles

Target Audience

  • Information security officers and managers
  • Incident response team leaders
  • Risk and compliance professionals

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories