Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction to ISO/IEC 27035
- Overview of ISO/IEC 27035 parts and structure.
- Relationship with ISO/IEC 27001 and other standards.
- Key terms, definitions, and concepts.
Incident Management Principles
- Understanding threats, vulnerabilities, and risks.
- Incident categories and classification.
- Incident lifecycle stages.
Planning an Incident Management Program
- Defining scope and objectives.
- Roles, responsibilities, and escalation paths.
- Incident response policy and procedures.
Incident Detection and Reporting
- Indicators of compromise and early warning signs.
- Internal and external reporting channels.
- Maintaining incident logs and records.
Incident Analysis and Evaluation
- Gathering and preserving evidence.
- Root cause analysis techniques.
- Impact assessment and risk evaluation.
Incident Response, Containment, and Recovery
- Containment strategies and communication.
- Eradication of threats and vulnerabilities.
- System recovery and validation.
Post-Incident Activities and Continual Improvement
- Incident reporting and documentation.
- Lessons learned and corrective actions.
- Integrating improvements into the ISMS.
Summary and Next Steps
Requirements
- Understanding of information security management concepts.
- Familiarity with ISO/IEC 27001 or related standards.
- Experience in IT security or incident response roles.
Audience
- Information security officers and managers.
- Incident response team leaders.
- Risk and compliance professionals.
35 Hours
Testimonials (2)
Theory followed by practical examples and exercices. Job well done!
Vincenzo Delle Donne - Department of National Defence
Course - ISO 37301 Compliance Management System
the expertise & knowledge of the trainer