Information Security
ISO/IEC 27035 — Information Security Incident Management
Levels available
Course types, duration & fees
| Course type | Who should attend | What your company benefits | Duration | Fee |
|---|---|---|---|---|
| Foundation | Those who wish to learn the basis of implementing the management system and its processes | Provide the organization with best-practice based orientation and mindset culture by understanding the main important elements of ISO standards | 2 days | HKD 4,400 |
| Lead Manager | Managers in the relevant field who wish to master the guidelines specified by best practices | Lead your organization to follow the guidelines specified by ISO standards that can help you increase the skills of your staff and improve efficiency | 3 days | HKD 9,600 |
About the standard
The ISO/IEC 27035 series provides comprehensive guidelines for establishing, implementing, maintaining, and continually improving information security incident management within an organization. Part 1 outlines the principles of incident management — readiness, response strategy, and structured recovery — while Part 2 covers the specifics of how to detect, report, assess, and respond to incidents. Together, they build a framework that safeguards information assets and strengthens an organization's resilience against evolving cyber threats.
Levels available
- Foundation — Introduces the core principles and concepts of information security incident management under ISO/IEC 27035.
- Lead Incident Manager — For those responsible for leading incident response efforts, developing the skills to plan, assess, and manage an organization's incident management capability end to end.
Who should attend
This track is for information security officers, incident response team members, and IT security managers responsible for preparing for and handling security incidents. It's also useful for auditors and consultants who need to assess an organization's incident response readiness.
Learning objectives
- Understand the principles and concepts of information security incident management
- Learn to evaluate the effectiveness of an organization's incident response capability
- Gain the competence to plan and establish incident response capabilities
- Understand how to assess incident response processes and recommend improvements
- Learn to guide the development of an incident management plan covering detection, assessment, response, and recovery
Why attend
As cybersecurity threats grow more sophisticated, organizations need people who can prepare for, respond to, and recover from incidents in a structured way. This training builds the proactive skills to minimize the impact of breaches, strengthen organizational resilience, and maintain business continuity and reputation in an environment where digital security is central to competitive success.
PECB link
https://pecb.com/en/education-and-certification-for-individuals/iso-iec-27035
