華睿教育
返回課程列表

資訊安全

ISO/IEC 27035 — Information Security Incident Management

可報讀程度

課程類型、時長及學費

課程類型適合對象企業得益時長學費
Foundation希望學習管理系統及其流程實施基礎的人士透過理解 ISO 標準的核心要素,為機構建立以最佳實務為本的取向與文化2 HKD 4,400
Lead Manager相關領域的管理人員,希望掌握最佳實務所訂明的指引帶領機構依循 ISO 標準指引,提升員工技能並改善效率3 HKD 9,600

About the standard

The ISO/IEC 27035 series provides comprehensive guidelines for establishing, implementing, maintaining, and continually improving information security incident management within an organization. Part 1 outlines the principles of incident management — readiness, response strategy, and structured recovery — while Part 2 covers the specifics of how to detect, report, assess, and respond to incidents. Together, they build a framework that safeguards information assets and strengthens an organization's resilience against evolving cyber threats.

Levels available

  • Foundation — Introduces the core principles and concepts of information security incident management under ISO/IEC 27035.
  • Lead Incident Manager — For those responsible for leading incident response efforts, developing the skills to plan, assess, and manage an organization's incident management capability end to end.

Who should attend

This track is for information security officers, incident response team members, and IT security managers responsible for preparing for and handling security incidents. It's also useful for auditors and consultants who need to assess an organization's incident response readiness.

Learning objectives

  • Understand the principles and concepts of information security incident management
  • Learn to evaluate the effectiveness of an organization's incident response capability
  • Gain the competence to plan and establish incident response capabilities
  • Understand how to assess incident response processes and recommend improvements
  • Learn to guide the development of an incident management plan covering detection, assessment, response, and recovery

Why attend

As cybersecurity threats grow more sophisticated, organizations need people who can prepare for, respond to, and recover from incidents in a structured way. This training builds the proactive skills to minimize the impact of breaches, strengthen organizational resilience, and maintain business continuity and reputation in an environment where digital security is central to competitive success.

PECB link

https://pecb.com/en/education-and-certification-for-individuals/iso-iec-27035

PECB 官方頁面