Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 35 hours
Course Outline
Introduction to ISO/IEC 27035
- Overview of the ISO/IEC 27035 components and architecture
- Interrelation with ISO/IEC 27001 and other relevant standards
- Essential terminology, definitions, and foundational concepts
Principles of Incident Management
- Analyzing threats, vulnerabilities, and associated risks
- Categorizing and classifying security incidents
- Stages of the incident lifecycle
Strategizing the Incident Management Program
- Establishing scope and defining objectives
- Assigning roles, responsibilities, and defining escalation protocols
- Formulating incident response policies and procedural guidelines
Detection and Reporting of Incidents
- Identifying indicators of compromise and early warning signals
- Managing internal and external reporting channels
- Maintaining comprehensive incident logs and records
Analyzing and Assessing Incidents
- Collecting and preserving digital evidence
- Applying root cause analysis methodologies
- Conducting impact assessments and risk evaluations
Responding, Containing, and Recovering from Incidents
- Implementing containment strategies and managing communications
- Eliminating threats and addressing vulnerabilities
- Restoring systems and validating integrity
Post-Incident Reviews and Continuous Improvement
- Compiling incident reports and documentation
- Extracting lessons learned and implementing corrective actions
- Incorporating enhancements into the ISMS
Conclusion and Future Steps
Requirements
- Foundational knowledge of information security management concepts
- Acquaintance with ISO/IEC 27001 or pertinent standards
- Practical experience in IT security or incident response functions
Target Audience
- Information security officers and managers
- Leaders of incident response teams
- Risk management and compliance specialists
Testimonials (2)
the expertise & knowledge of the trainer
Erica DeRosa DeRosa - Aecon Group INc.
Course - ISO 37001 Anti-Bribery Management System
The attention to cover all doubts