Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of the ISO/IEC 27035 components and architecture
  • Interrelation with ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and foundational concepts

Principles of Incident Management

  • Analyzing threats, vulnerabilities, and associated risks
  • Categorizing and classifying security incidents
  • Stages of the incident lifecycle

Strategizing the Incident Management Program

  • Establishing scope and defining objectives
  • Assigning roles, responsibilities, and defining escalation protocols
  • Formulating incident response policies and procedural guidelines

Detection and Reporting of Incidents

  • Identifying indicators of compromise and early warning signals
  • Managing internal and external reporting channels
  • Maintaining comprehensive incident logs and records

Analyzing and Assessing Incidents

  • Collecting and preserving digital evidence
  • Applying root cause analysis methodologies
  • Conducting impact assessments and risk evaluations

Responding, Containing, and Recovering from Incidents

  • Implementing containment strategies and managing communications
  • Eliminating threats and addressing vulnerabilities
  • Restoring systems and validating integrity

Post-Incident Reviews and Continuous Improvement

  • Compiling incident reports and documentation
  • Extracting lessons learned and implementing corrective actions
  • Incorporating enhancements into the ISMS

Conclusion and Future Steps

Requirements

  • Foundational knowledge of information security management concepts
  • Acquaintance with ISO/IEC 27001 or pertinent standards
  • Practical experience in IT security or incident response functions

Target Audience

  • Information security officers and managers
  • Leaders of incident response teams
  • Risk management and compliance specialists

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories