Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of the components and structure of ISO/IEC 27035 parts
  • Correlation with ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and foundational concepts

Principles of Incident Management

  • Comprehending threats, vulnerabilities, and associated risks
  • Categorizing and classifying incidents
  • Stages of the incident lifecycle

Planning an Incident Management Program

  • Establishing scope and strategic objectives
  • Defining roles, responsibilities, and escalation procedures
  • Formulating incident response policies and procedural guidelines

Detection and Reporting of Incidents

  • Identifying indicators of compromise and early warning signals
  • Utilizing internal and external reporting channels
  • Maintaining accurate incident logs and records

Analysis and Evaluation of Incidents

  • Collection and preservation of digital evidence
  • Techniques for conducting root cause analysis
  • Assessing impact and evaluating associated risks

Response, Containment, and Recovery

  • Strategies for containment and effective communication
  • Eradication of threats and remediation of vulnerabilities
  • Restoring systems and validating integrity

Post-Incident Activities and Continual Improvement

  • Comprehensive incident reporting and documentation
  • Extracting lessons learned and implementing corrective actions
  • Integrating enhancements into the ISMS framework

Summary and Next Steps

Requirements

  • Working knowledge of information security management concepts
  • Familiarity with ISO/IEC 27001 or equivalent standards
  • Practical experience in IT security or incident response positions

Target Audience

  • Information security officers and management staff
  • Leaders of incident response teams
  • Professionals specializing in risk management and compliance

Number of participants


Price per participant

Testimonials (4)

Upcoming Courses

Related Categories