Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of the ISO/IEC 27035 components and architecture
  • Interconnection with ISO/IEC 27001 and other standards
  • Essential terminology, definitions, and foundational concepts

Incident Management Principles

  • Analyzing threats, vulnerabilities, and associated risks
  • Categorization and classification of incidents
  • Understanding the stages of the incident lifecycle

Strategizing an Incident Management Program

  • Establishing scope and key objectives
  • Defining roles, responsibilities, and escalation protocols
  • Drafting incident response policies and procedures

Detection and Reporting of Incidents

  • Identifying indicators of compromise and early warning signals
  • Utilizing internal and external reporting channels
  • Maintaining accurate incident logs and records

Analyzing and Evaluating Incidents

  • Collecting and preserving digital evidence
  • Applying root cause analysis methodologies
  • Conducting impact assessments and risk evaluations

Responding to, Containing, and Recovering from Incidents

  • Executing containment strategies and effective communication
  • Eradicating threats and mitigating vulnerabilities
  • Restoring systems and validating recovery efforts

Post-Incident Actions and Continuous Improvement

  • Documenting incident reports and final records
  • Extracting lessons learned and implementing corrective measures
  • Integrating enhancements into the ISMS

Conclusion and Future Directions

Requirements

  • Proficiency in information security management concepts
  • Acquaintance with ISO/IEC 27001 or comparable standards
  • Professional experience in IT security or incident response roles

Target Audience

  • Information security officers and managers
  • Incident response team leaders
  • Risk and compliance specialists

Number of participants


Price per participant

Testimonials (1)

Upcoming Courses

Related Categories