ISO/IEC 27035 Lead Incident Manager

Formations ISO/IEC 27035 Lead Incident Manager

OBJECTIF

The ISO / IEC 27035 Lead Incident Manager training will enable you to acquire the necessary expertise to support an organization when implementing an information security incident management plan according to the ISO / IEC 27035 standard. During this training, you will gain in-depth knowledge of the process model for designing and developing an organization's incident management plan. The compatibility of this training with ISO / IEC 27035 also supports ISO / IEC 27001 by providing guidelines for the management of information security incidents.

In particular, the objectives of the training are:

  • Master the concepts, approaches, methods, tools and techniques that enable the effective management of information security incidents in accordance with ISO / IEC 27035.
  • Know the correlation between ISO / IEC 27035 and other standards and regulatory frameworks.

PREREQUISITES

• Basic understanding of ISO / IEC 27035 and in-depth knowledge of information security

INFORMATION GENERALES

• Code: ISO / IEC 27035
 • Duration: 5 days
 • Hours: 8.30am - 5.30pm
• Location: Training Center, North Urban Center

TARGETED AUDIENCE

• Information Security Incident Managers
• IT managers
• IT Auditors

RESOURCES

• Course Support
 • 40% demonstration
• 40% of theory
• 20% of practical exercises

PROGRAM OF TRAINING

  • Days 1
  • Introduction to concepts related to the management of information security incidents, as defined by ISO / IEC 27035
  • • Objectives and structure of the training
    • Normative and regulatory frameworks
    • Information Security Incident Management
    • Basic Process of ISO / IEC 27035
    • Fundamental principles of information security
    • Correlation with Business Continuity
    • Legal and ethical issues

  • Days 2
  • Design and preparation of an information security incident management plan
  • • Launch of an information security incident management process
    • Understanding the organization and clarifying the objectives of information security incident management
    • Plan and prepare
    • Roles and functions
    • Policies and procedures

  • Days 3
  • Launch of an incident management process and treatment of information security incidents
  • • Communication planning
    • First steps of implementation
    • Setting up support elements
    • Detection and report
    • Evaluation and decisions
    • Answers
    • Lessons learned
    • Transition to operations

  • Days 4
  • Monitoring and continuous improvement of the information security incident management plan
  • • Additional analysis
    • Analysis of lessons learned
    • Corrective measures
    • Competence and Assessment of Incident Managers
    • Closing the training

  • Days 5
  • Passing the exam
  • Download the document

Do not hesitate to contact our experts for any additional information, study and free calculation of an audit service.