Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of the components and structure of ISO/IEC 27035 parts
  • Interconnection with ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and core concepts

Principles of Incident Management

  • Analyzing threats, vulnerabilities, and associated risks
  • Categorizing and classifying security incidents
  • Understanding the various stages of the incident lifecycle

Planning an Incident Management Program

  • Establishing clear scope and objectives
  • Defining roles, responsibilities, and escalation protocols
  • Drafting incident response policies and standard operating procedures

Incident Detection and Reporting

  • Identifying indicators of compromise and early warning signals
  • Managing internal and external reporting channels
  • Maintaining accurate incident logs and documentation

Incident Analysis and Evaluation

  • Techniques for gathering and preserving digital evidence
  • Applying root cause analysis methodologies
  • Conducting impact assessments and risk evaluations

Incident Response, Containment, and Recovery

  • Strategies for containment and effective communication
  • Eradicating threats and addressing underlying vulnerabilities
  • System restoration and validation processes

Post-Incident Activities and Continual Improvement

  • Compiling incident reports and final documentation
  • Extracting lessons learned and defining corrective actions
  • Incorporating enhancements into the ISMS

Summary and Next Steps

Requirements

  • Solid grasp of information security management concepts
  • Working knowledge of ISO/IEC 27001 or comparable standards
  • Professional experience in IT security or incident response functions

Intended Audience

  • Information security officers and management
  • Incident response team leaders
  • Risk and compliance specialists

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories