PECB CERTIFIED ISO/IEC 27035 Lead Incident Manager


The target audience for training
- Information security incident managers
- ICT managers
- Information technology auditors
- Managers wishing to set up an incident response team
- Managers wishing to learn more about the effective operation of an incident response team
- Information security risk managers
- Professional IT systems administrators
- Professional computer network administrators
- Members of the incident response team
- People responsible for information security within an organisation
What you will learn
The ISO/IEC 27035 Lead Incident Manager course will give you the expertise you need to help an organization implement an information security incident management plan in accordance with the ISO/IEC 27035 standard. During this course, you will acquire in-depth knowledge of the process model used to design and develop an organisation's incident management plan. The compatibility of this course with ISO/IEC 27035 also supports ISO/IEC 27001 by providing guidelines for information security incident management.
Once you have mastered all the concepts relating to information security incident management, you can sit the exam and apply for the title of "PECB Certified ISO/IEC 27035 Lead Incident Manager". By holding a PECB Lead Incident Manager certification, you will demonstrate that you have the practical knowledge and professional skills needed to support and lead a team in the management of information security incidents.
Training programme
- Duration: 5 days
Day 1: Introduction to information security incident management concepts, as defined by ISO/IEC 27035
- Objectives and structure of the course
- Standards and regulatory frameworks
- Information security incident management
- ISO/IEC 27035 core processes
- Fundamental principles of information security
- Correlation with business continuity
- Legal and ethical issues
Day 2: Designing and preparing an information security incident management plan
- Launch of an information security incident management process
- Understanding the organisation and clarifying the objectives of information security incident management
- Planning and preparation
- Roles and functions
- Policies and procedures
Day 3: Launching an incident management process and handling information security incidents
- Communication planning
- First stages of implementation
- Fitting the support elements
- Detection and reporting
- Assessment and decisions
- Answers
- Lessons learned
- Transition to operations
Day 4: Monitoring and continuous improvement of the information security incident management plan
- Additional analysis
- Analysis of lessons learned
- Corrective measures
- Competence and assessment of incident managers
- Closing the course
Day 5: Certification exam
Examination "PECB Certified ISO/IEC 27035 Lead Incident Manager meets the requirements of the PECB examination and certification programme. The examination covers the following areas of competence: Duration: 3 hours
- Area 1: Fundamental principles and concepts relating to information security incident management
- Area 2: Best practice in information security incident management in accordance with ISO/IEC 27035
- Area 3: Design and development of an organisational incident management process in accordance with ISO/IEC 27035
- Area 4: Preparing for information security incidents and implementing an incident management plan
- Area 5: Launch of the incident management process and handling of information security incidents
- Area 6: Monitoring and measuring performance
- Area 7: Improve incident management processes and activities
- Review of the main concepts and stages in the incident management cycle.
- Reminder of the objectives of the exam: structure, duration, format of questions.
- Presentation of the PECB certification process.
- Mock exam and revision quiz to put participants in a real-life situation.
- Advice on how to pass the exam.
- Passage de l’examen de certification.
- Attendance certificates are handed out and participants evaluate the course.
- Interactive quiz (30 min) on LMS with group correction to validate and consolidate the knowledge acquired.
acquired.
- Interactive quiz (30 min) on LMS with group correction to validate and consolidate the knowledge acquired.
Trainer profile
An expert consultant-trainer in cybersecurity, combining technical expertise, field experience and teaching know-how, whose technical, professional and teaching skills have been rigorously assessed and validated as part of our internal selection procedures.
Teaching methods and resources
The course is based on a balanced combination of theoretical and practical approaches, guaranteeing both the acquisition of knowledge and its operational application:
- Structured theoretical input, illustrated by practical examples tailored to the participants' professional context.
- Practical exercises at each stage to help you assimilate the knowledge you have acquired.
- A case study linking the different skill blocks.
- Strong interaction between trainers and trainees, making exchanges more concrete and in correlation with trainees' expectations.
- Full educational documentation, supplied in digital format.
- Course evaluation questionnaire at the end of the course, analysed by our teaching team.
- Certificate of acquired skills sent to the trainee at the end of the course.
- End-of-training certificate sent at the same time as the invoice to the company or funding organisation, confirming that the trainee has fully attended the session.
Training objectives
- Master the concepts, approaches, methods, tools and techniques that enable effective management of information security incidents in accordance with ISO/IEC 27035.
- Understanding the correlation between ISO/IEC 27035 and other standards and regulatory frameworks
- Acquire the expertise needed to support an organisation during the implementation, management and updating of an information security incident response plan
- Acquire the skills to advise organisations effectively on best practice in information security management
- Understand the importance of adopting well-structured procedures and policies for incident management processes
- Develop the expertise needed to manage an effective incident response team
Assessment method
- Practical exercises at every stage of the course.
- A case study linking the different skill blocks.
- Quiz at the end of each day's training.
- Self-assessment of knowledge acquired by the trainee via a questionnaire.
Training prerequisites
Avoir une bonne connaissance des processus de gestion des incidents, des principes de sécurité de l’information et de la famille de normes ISO/IEC 27000.
Examination guide
Download the exam guide
Tarif
- 3700 €
- Language : French
- Level : Fundamental
- Certification body : 0
- Certification: Yes
- Accessibility : Yes
- Duration: 5 days
Important information:
Our courses are not registered with the Répertoire National des Certifications Professionnelles (RNCP), but they do comply with the requirements of the Répertoire Spécifique (RS).