Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • An overview of the parts and structure of ISO/IEC 27035
  • Interconnections with ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and foundational concepts

Principles of Incident Management

  • Analyzing threats, vulnerabilities, and associated risks
  • Categorizing and classifying different types of incidents
  • Understanding the stages of the incident lifecycle

Planning an Incident Management Program

  • Establishing clear scope and strategic objectives
  • Defining roles, responsibilities, and escalation pathways
  • Developing incident response policies and standard procedures

Incident Detection and Reporting

  • Identifying indicators of compromise and early warning signals
  • Utilizing internal and external reporting channels
  • Maintaining accurate incident logs and records

Incident Analysis and Evaluation

  • Collecting and preserving digital evidence
  • Applying root cause analysis methodologies
  • Conducting impact assessments and risk evaluations

Incident Response, Containment, and Recovery

  • Implementing containment strategies and managing communications
  • Eradicating threats and mitigating vulnerabilities
  • Restoring systems and validating their integrity

Post-Incident Activities and Continual Improvement

  • Finalizing incident reports and documentation
  • Extracting lessons learned and implementing corrective actions
  • Incorporating improvements into the overall ISMS

Summary and Next Steps

Requirements

  • A solid understanding of information security management concepts
  • Familiarity with ISO/IEC 27001 or equivalent standards
  • Professional experience in IT security or incident response functions

Target Audience

  • Information security officers and managers
  • Incident response team leads
  • Professionals focused on risk and compliance

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories