Course Outline
Introduction to ISO/IEC 27035
- Overview of ISO/IEC 27035 parts and structure
- Relationship with ISO/IEC 27001 and other standards
- Key terms, definitions, and concepts
Incident Management Principles
- Understanding threats, vulnerabilities, and risks
- Incident categories and classification
- Incident lifecycle stages
Planning an Incident Management Program
- Defining scope and objectives
- Roles, responsibilities, and escalation paths
- Incident response policy and procedures
Incident Detection and Reporting
- Indicators of compromise and early warning signs
- Internal and external reporting channels
- Maintaining incident logs and records
Incident Analysis and Evaluation
- Gathering and preserving evidence
- Root cause analysis techniques
- Impact assessment and risk evaluation
Incident Response, Containment, and Recovery
- Containment strategies and communication
- Eradication of threats and vulnerabilities
- System recovery and validation
Post-Incident Activities and Continual Improvement
- Incident reporting and documentation
- Lessons learned and corrective actions
- Integrating improvements into the ISMS
Summary and Next Steps
Requirements
- Knowledge of information security management concepts
- Familiarity with ISO/IEC 27001 or related standards
- Experience in IT security or incident response roles
Audience
- Information security officers and managers
- Incident response team leaders
- Risk and compliance professionals
Testimonials (4)
The focus on the objective, always asking for doubts and open to help .
VICTOR ALEJANDRO RUBIO PADILLA - GDL Circuits
Course - ISO 26262 Automotive Functional Safety
The quizzes to reinforce the reading and the ability to ask questions at any time
Jonathan
Course - ISO 9001 Lead Auditor
Speed of response and communication
Bader Bin rubayan - Lean Business Services
Course - ISO/IEC 27001 Lead Implementer
Dereck's overall preparedness . Dereck has great communications' skills !!