- Domain 1: Fundamental principles and concepts of information security incident management
- Domain 2: Information security incident management process based on ISO/IEC 27035
- Domain 3: Designing and developing an organizational incident management process based on ISO/IEC 27035
- Domain 4: Preparing and executing the incident response plan for information security incidents
- Domain 5: Implementing incident management processes and managing information security incidents
- Domain 6: Improving the incident management processes and activities
- Defining an incident management approach
- Determining the incident management objectives and scope
- Performing risk assessment
- Developing an incident management program
- Defining risk evaluation and risk acceptance criteria
- Evaluating risk treatment options
- Monitoring and reviewing the incident management program
Certification Rules and Policies
- Certification and examination fees are included in the price of the training course
- Participants will be provided with the training course material containing over 450 pages of explanatory information, examples, best practices, exercises, and quizzes.
- An attestation of course completion worth 31 CPD (Continuing Professional Development) credits will be issued to the participants who have attended the training course.
- In case candidates fail the exam, they can retake it within 12 months following the initial attempt for free.
Educational Approach
- This training course combines theoretical concepts with best practices for implementing an information security incident management process.
- The training course contains essay-type exercises and multiple-choice quizzes, some of which are scenario-based.
- The participants are encouraged to collaborate and engage in meaningful discussions with fellow learners while tackling quizzes and exercises.
- The quiz format closely mirrors that of the certification exam, ensuring participants are well-prepared for their exam.
