Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Duration 35 hours
Course Outline
Introduction to ISO/IEC 27035
- Comprehensive overview of ISO/IEC 27035 components and structure
- Interplay with ISO/IEC 27001 and other relevant standards
- Essential terminology, definitions, and core concepts
Principles of Incident Management
- Assessing threats, vulnerabilities, and associated risks
- Categorizing and classifying security incidents
- Understanding the various stages of the incident lifecycle
Strategic Planning for Incident Management
- Establishing clear scopes and objectives
- Defining roles, responsibilities, and escalation procedures
- Formulating incident response policies and operational procedures
Detection and Reporting Mechanisms
- Identifying indicators of compromise and early warning signals
- Utilizing internal and external reporting pathways
- Ensuring the maintenance of accurate incident logs and records
Analysis and Evaluation Techniques
- Collecting and preserving digital evidence
- Applying root cause analysis methodologies
- Conducting impact assessments and risk evaluations
Response, Containment, and Recovery Strategies
- Implementing containment strategies and managing communications
- Eradicating identified threats and vulnerabilities
- Restoring systems and validating security controls
Post-Incident Review and Continuous Improvement
- Compiling incident reports and comprehensive documentation
- Extracting lessons learned and defining corrective actions
- Integrating insights into the ISMS for ongoing enhancement
Conclusion and Future Directions
Requirements
- Foundational understanding of information security management concepts
- Acquaintance with ISO/IEC 27001 or comparable standards
- Professional experience in IT security or incident response functions
Target Audience
- Information security officers and managers
- Leaders of incident response teams
- Professionals focused on risk management and compliance
Testimonials (3)
Theory followed by practical examples and exercices. Job well done!
Vincenzo Delle Donne - Department of National Defence
Course - ISO 37301 Compliance Management System
the expertise & knowledge of the trainer
Erica DeRosa DeRosa - Aecon Group INc.
Course - ISO 37001 Anti-Bribery Management System
The attention to cover all doubts