Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 35 hours
Course Outline
Introduction to ISO/IEC 27035
- Overview of the components and structure of ISO/IEC 27035.
- Interconnections with ISO/IEC 27001 and other relevant standards.
- Essential terminology, definitions, and foundational concepts.
Incident Management Principles
- Analyzing threats, vulnerabilities, and associated risks.
- Categorizing and classifying security incidents.
- Understanding the stages of the incident lifecycle.
Planning an Incident Management Program
- Establishing clear scope and objectives.
- Defining roles, responsibilities, and escalation workflows.
- Developing incident response policies and standard procedures.
Incident Detection and Reporting
- Identifying indicators of compromise and early warning signals.
- Utilizing internal and external reporting channels effectively.
- Maintaining accurate incident logs and records.
Incident Analysis and Evaluation
- Techniques for gathering and preserving digital evidence.
- Applying root cause analysis methods.
- Conducting impact assessments and risk evaluations.
Incident Response, Containment, and Recovery
- Implementing containment strategies and effective communication.
- Eliminating threats and remediating vulnerabilities.
- Executing system recovery and validation procedures.
Post-Incident Activities and Continual Improvement
- Compiling incident reports and comprehensive documentation.
- Extracting lessons learned and implementing corrective actions.
- Integrating enhancements into the existing ISMS.
Summary and Next Steps
Requirements
- Foundational understanding of information security management concepts.
- Acquaintance with ISO/IEC 27001 or similar standards.
- Professional experience in IT security or incident response roles.
Target Audience
- Information security officers and managers.
- Leaders of incident response teams.
- Specialists in risk management and compliance.
Testimonials (3)
Theory followed by practical examples and exercices. Job well done!
Vincenzo Delle Donne - Department of National Defence
Course - ISO 37301 Compliance Management System
the expertise & knowledge of the trainer
Erica DeRosa DeRosa - Aecon Group INc.
Course - ISO 37001 Anti-Bribery Management System
The attention to cover all doubts