Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction to ISO/IEC 27035
- Overview of ISO/IEC 27035 parts and structure
- Relationship with ISO/IEC 27001 and other standards
- Key terms, definitions, and concepts
Incident Management Principles
- Understanding threats, vulnerabilities, and risks
- Incident categories and classification
- Incident lifecycle stages
Planning an Incident Management Program
- Defining scope and objectives
- Roles, responsibilities, and escalation paths
- Incident response policy and procedures
Incident Detection and Reporting
- Indicators of compromise and early warning signs
- Internal and external reporting channels
- Maintaining incident logs and records
Incident Analysis and Evaluation
- Gathering and preserving evidence
- Root cause analysis techniques
- Impact assessment and risk evaluation
Incident Response, Containment, and Recovery
- Containment strategies and communication
- Eradication of threats and vulnerabilities
- System recovery and validation
Post-Incident Activities and Continual Improvement
- Incident reporting and documentation
- Lessons learned and corrective actions
- Integrating improvements into the ISMS
Summary and Next Steps
Requirements
- Knowledge of information security management concepts
- Familiarity with ISO/IEC 27001 or related standards
- Experience in IT security or incident response roles
Audience
- Information security officers and managers
- Incident response team leaders
- Risk and compliance professionals
35 Hours