Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of the parts and structure of ISO/IEC 27035
  • Interplay with ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and core concepts

Principles of Incident Management

  • An understanding of threats, vulnerabilities, and risks
  • Categorization and classification of incidents
  • Stages of the incident lifecycle

Planning an Incident Management Program

  • Establishing scope and defining objectives
  • Defining roles, responsibilities, and escalation paths
  • Formulating incident response policies and procedures

Detection and Reporting of Incidents

  • Identifying indicators of compromise and early warning signs
  • Utilizing internal and external reporting channels
  • Maintaining accurate incident logs and records

Analysis and Evaluation of Incidents

  • Evidence collection and preservation methods
  • Techniques for root cause analysis
  • Conducting impact assessments and risk evaluations

Response, Containment, and Recovery

  • Strategies for containment and communication
  • Eradicating threats and mitigating vulnerabilities
  • System restoration and validation processes

Post-Incident Activities and Continuous Improvement

  • Reporting and documenting incident outcomes
  • Extracting lessons learned and implementing corrective actions
  • Incorporating improvements into the ISMS

Conclusion and Future Directions

Requirements

  • Foundational knowledge of information security management concepts
  • Familiarity with ISO/IEC 27001 or equivalent standards
  • Practical experience in IT security or incident response roles

Target Audience

  • Information security officers and managers
  • Leaders of incident response teams
  • Risk and compliance specialists

Number of participants


Price per participant

Testimonials (5)

Upcoming Courses

Related Categories