Course Outline

Introduction to ISO/IEC 27035

  • Overview of ISO/IEC 27035 parts and structure
  • Relationship with ISO/IEC 27001 and other standards
  • Key terms, definitions, and concepts

Incident Management Principles

  • Understanding threats, vulnerabilities, and risks
  • Incident categories and classification
  • Incident lifecycle stages

Planning an Incident Management Program

  • Defining scope and objectives
  • Roles, responsibilities, and escalation paths
  • Incident response policy and procedures

Incident Detection and Reporting

  • Indicators of compromise and early warning signs
  • Internal and external reporting channels
  • Maintaining incident logs and records

Incident Analysis and Evaluation

  • Gathering and preserving evidence
  • Root cause analysis techniques
  • Impact assessment and risk evaluation

Incident Response, Containment, and Recovery

  • Containment strategies and communication
  • Eradication of threats and vulnerabilities
  • System recovery and validation

Post-Incident Activities and Continual Improvement

  • Incident reporting and documentation
  • Lessons learned and corrective actions
  • Integrating improvements into the ISMS

Summary and Next Steps

Requirements

  • Knowledge of information security management concepts
  • Familiarity with ISO/IEC 27001 or related standards
  • Experience in IT security or incident response roles

Audience

  • Information security officers and managers
  • Incident response team leaders
  • Risk and compliance professionals
 35 Hours

Number of participants


Price per participant

Upcoming Courses

Related Categories