資訊安全
ISO/IEC 27035 — Information Security Incident Management
課程類型、時長及學費
| 課程類型 | 適合對象 | 企業得益 | 時長 | 學費 |
|---|---|---|---|---|
| Foundation | 希望學習管理系統及其流程實施基礎的人士 | 透過理解 ISO 標準的核心要素,為機構建立以最佳實務為本的取向與文化 | 2 天 | HKD 4,400 |
| Lead Manager | 相關領域的管理人員,希望掌握最佳實務所訂明的指引 | 帶領機構依循 ISO 標準指引,提升員工技能並改善效率 | 3 天 | HKD 9,600 |
About the standard
The ISO/IEC 27035 series provides comprehensive guidelines for establishing, implementing, maintaining, and continually improving information security incident management within an organization. Part 1 outlines the principles of incident management — readiness, response strategy, and structured recovery — while Part 2 covers the specifics of how to detect, report, assess, and respond to incidents. Together, they build a framework that safeguards information assets and strengthens an organization's resilience against evolving cyber threats.
Levels available
- Foundation — Introduces the core principles and concepts of information security incident management under ISO/IEC 27035.
- Lead Incident Manager — For those responsible for leading incident response efforts, developing the skills to plan, assess, and manage an organization's incident management capability end to end.
Who should attend
This track is for information security officers, incident response team members, and IT security managers responsible for preparing for and handling security incidents. It's also useful for auditors and consultants who need to assess an organization's incident response readiness.
Learning objectives
- Understand the principles and concepts of information security incident management
- Learn to evaluate the effectiveness of an organization's incident response capability
- Gain the competence to plan and establish incident response capabilities
- Understand how to assess incident response processes and recommend improvements
- Learn to guide the development of an incident management plan covering detection, assessment, response, and recovery
Why attend
As cybersecurity threats grow more sophisticated, organizations need people who can prepare for, respond to, and recover from incidents in a structured way. This training builds the proactive skills to minimize the impact of breaches, strengthen organizational resilience, and maintain business continuity and reputation in an environment where digital security is central to competitive success.
PECB link
https://pecb.com/en/education-and-certification-for-individuals/iso-iec-27035
