Get in Touch
 Duration 35 hours

Course Outline

Introduction to ISO/IEC 27035

  • Overview of ISO/IEC 27035 components and framework
  • Alignment with ISO/IEC 27001 and other relevant standards
  • Essential terminology, definitions, and concepts

Incident Management Principles

  • Identifying threats, vulnerabilities, and risks
  • Categorizing and classifying incidents
  • Stages of the incident lifecycle

Planning an Incident Management Program

  • Defining scope and strategic objectives
  • Establishing roles, responsibilities, and escalation procedures
  • Developing incident response policies and protocols

Incident Detection and Reporting

  • Recognizing indicators of compromise and early warning signs
  • Managing internal and external reporting channels
  • Keeping accurate incident logs and records

Incident Analysis and Evaluation

  • Collecting and preserving digital evidence
  • Applying root cause analysis methods
  • Conducting impact assessments and risk evaluations

Incident Response, Containment, and Recovery

  • Implementing containment strategies and communication plans
  • Eliminating threats and associated vulnerabilities
  • Restoring and validating systems

Post-Incident Activities and Continual Improvement

  • Documenting incident reports and findings
  • Extracting lessons learned and executing corrective actions
  • Incorporating improvements into the ISMS

Summary and Next Steps

Requirements

  • Understanding of information security management concepts
  • Familiarity with ISO/IEC 27001 or equivalent standards
  • Practical experience in IT security or incident response roles

Target Audience

  • Information security officers and managers
  • Incident response team leaders
  • Risk and compliance specialists

Number of participants


Price per participant

Testimonials (4)

Upcoming Courses

Related Categories