Course Outline
Introduction to ISO/IEC 27035
- Overview of ISO/IEC 27035 parts and structure
- Relationship with ISO/IEC 27001 and other standards
- Key terms, definitions, and concepts
Incident Management Principles
- Understanding threats, vulnerabilities, and risks
- Incident categories and classification
- Incident lifecycle stages
Planning an Incident Management Program
- Defining scope and objectives
- Roles, responsibilities, and escalation paths
- Incident response policy and procedures
Incident Detection and Reporting
- Indicators of compromise and early warning signs
- Internal and external reporting channels
- Maintaining incident logs and records
Incident Analysis and Evaluation
- Gathering and preserving evidence
- Root cause analysis techniques
- Impact assessment and risk evaluation
Incident Response, Containment, and Recovery
- Containment strategies and communication
- Eradication of threats and vulnerabilities
- System recovery and validation
Post-Incident Activities and Continual Improvement
- Incident reporting and documentation
- Lessons learned and corrective actions
- Integrating improvements into the ISMS
Summary and Next Steps
Requirements
- Knowledge of information security management concepts
- Familiarity with ISO/IEC 27001 or related standards
- Experience in IT security or incident response roles
Audience
- Information security officers and managers
- Incident response team leaders
- Risk and compliance professionals
Testimonials (5)
The fact that all the standard was reviewed and discussed with some examples, when needed and required.
Ioana
Course - ISO/IEC 27005 Information Security Risk Management
The training was well put together & very informative.
Siobhan Kavanagh - SEEC MM Ltd.,
Course - ISO 9001 Lead Implementer
trainer competence, knowledge conveyed in an accessible way understandable, pleasant appearance and a contact-friendly trainer, reinforcing the belief that everything is clear
Jolanta - Kyndryl
Course - ISO/IEC 27001 Lead Auditor
Machine Translated
The quizzes to reinforce the reading and the ability to ask questions at any time
Jonathan
Course - ISO 9001 Lead Auditor
Professional and substantive explanation of issues.
Arkadiusz Tarabasz - MAN BUS Sp. z o.o.
Course - ISO 26262 Automotive Functional Safety
Machine Translated