Course Code: CSS225

Synopsis

CSS225 introduces students to essential concepts of information systems security. It covers key principles and approaches to secure systems design, cryptography, authentication, access and operations management. In addition, it emphasises the softer, human aspects of cybersecurity such as ethics, privacy and psychology. By integrating both technical and human-centric perspectives, this unique module provides a balanced understanding of how to protect information and systems from threats. Prior knowledge of cybersecurity is not essential.
Level: 2
Credit Units: 5
Presentation Pattern: EVERY JAN

Topics

  • Security 101
  • Understanding security models, design, and capabilities
  • Cryptography I: Fundamentals and symmetric key algorithms
  • Cryptography II: PKI and cryptographic applications
  • Toolbox I: Authentication
  • Toolbox II: Access control
  • Understanding legal issues and ethics
  • Understanding privacy
  • Implementing cybersecurity I: Physical security
  • Implementing cybersecurity II: Managing a security operations centre
  • Human aspects of cybersecurity I: Decision models and biases
  • Human aspects of cybersecurity II: Human factors and culture

Learning Outcome

  • Apply core security concepts and control frameworks.
  • Analyse and apply relevant laws, ethics, and privacy policies.
  • Explain human factors and behavioural issues in cybersecurity.
  • Employ security operations, resource protection, and change management.
  • Develop and implement threat modelling and secure design principles.
  • Implement identity management and access provisioning.