Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 35 hours
Course Outline
Introduction to ISO/IEC 27035
- Overview of the ISO/IEC 27035 parts and organizational structure
- Interconnection with ISO/IEC 27001 and other relevant standards
- Essential terminology, definitions, and core concepts
Incident Management Principles
- Analyzing threats, vulnerabilities, and associated risks
- Classification of incident categories
- Stages of the incident lifecycle
Planning an Incident Management Program
- Establishing scope and strategic objectives
- Defining roles, responsibilities, and escalation pathways
- Developing incident response policies and procedures
Incident Detection and Reporting
- Identifying indicators of compromise and early warning signals
- Utilizing internal and external reporting channels
- Maintaining accurate incident logs and records
Incident Analysis and Evaluation
- Collection and preservation of evidence
- Techniques for root cause analysis
- Conducting impact assessments and risk evaluations
Incident Response, Containment, and Recovery
- Implementing containment strategies and managing communications
- Eradicating threats and addressing vulnerabilities
- Restoring systems and verifying integrity
Post-Incident Activities and Continual Improvement
- Documenting and reporting incident outcomes
- Extracting lessons learned and defining corrective actions
- Incorporating improvements into the ISMS
Summary and Future Steps
Requirements
- Understanding of information security management concepts
- Familiarity with ISO/IEC 27001 or equivalent standards
- Professional experience in IT security or incident response roles
Target Audience
- Information security officers and managers
- Incident response team leaders
- Risk and compliance specialists
Testimonials (1)
Speed of response and communication