Information Security (5 op)
Toteutuksen tunnus: 3011366-3005
Toteutuksen perustiedot
- Ilmoittautumisaika
-
01.06.2022 - 02.10.2022
Ilmoittautuminen toteutukselle on päättynyt.
- Ajoitus
-
29.08.2022 - 31.12.2022
Toteutus on päättynyt.
- Opintopistemäärä
- 5 op
- Lähiosuus
- 5 op
- Toteutustapa
- Lähiopetus
- Yksikkö
- Tekniikka ja liiketoiminta
- Toimipiste
- Kupittaan kampus
- Opetuskielet
- englanti
- Paikat
- 60 - 80
- Koulutus
- Tietojenkäsittelyn koulutus
- Opettajat
- Matti Kuikka
- Mika Koivunen
- Ryhmät
-
ICTMODictprojSemMOD ICT Projects & Cybersecurity (International Semester)
-
PTIETS21swisPTIETS21 Ohjelmistojen kehittäminen ja Tietojärjestelmät
-
PTIETS21sepmPTIETS21 Ohjelmistotekniikka ja Projektihallinta
-
PTIETS21dncsPTIETS21 Tietoverkot ja Kyberturva
- Opintojakso
- 3011366
Arviointiasteikko
H-5
Sisällön jaksotus
The importance of Information Security for different organizations (i.e. business, non-profit, societies)
Basic principles of Information Security
Players in the Information Security field (good guys, bad guys)
Information Security Standards and Best Practices
The basics of Information Security Risk Assessment and Risk Management
The subareas of Information Security (i.a. traditional, standard based, best practices)
Threats and attack methods facing different organizations, and protection against them
Basic principles of encryption and firewalls
Business Continuity and Disaster Recovery Planning
Laboratory work
Tavoitteet
After passing the course the student can
- name and explain the basic principles of Information Security
- classify information and information systems
- identify information security threats
- give examples of information security controls and their implementations
- identify and list information security requirements in different kind of organizations taking into account juridical and regulatory requirements
- assess whether there are shortages in security controls’ implementations and give justified recommendations for their improvements
- explain the basics of information security risk management
- create, assess and improve business continuity and disaster recovery plans
- apply information security penetration testing toolkits.
Sisältö
- The importance of Information Security for different organizations (i.e. business, non-profit, societies)
- Basic principles of Information Security
- Players in the Information Security field (good guys, bad guys)
- Information Security Standards and Best Practices
- The basics of Information Security Risk Assessment and Risk Management
- The subareas of Information Security (i.a. traditional, standard based, best practices)
- Threats and attack methods facing different organizations, and protection against them
- Basic principles of encryption and firewalls
- Business Continuity and Disaster Recovery Planning
- Laboratory work
Oppimateriaalit
Will be provided in ItsLearning during the course.
Tenttien ajankohdat ja uusintamahdollisuudet
There is no exam on this course.
Opiskelijan ajankäyttö ja kuormitus
Lectures 20h
Weekly homework 88h
Lab work 27h
Evaluation methods and criteria
Grading is based on weekly assignments and returned laboratory work. Laboratory work is mandatory.
Failed (0)
<50% assignment points.
Assessment criteria, satisfactory (1-2)
>=50% assignment points. Student understands the basic principles of information security as well as information classification and the most common security threats. Student is familiar with information security requirements and basic concepts of risk management. Student can perform basic security scanning against information systems.
Assessment criteria, good (3-4)
>=70% assignment points. Student understands and can apply the basic principles of information security as well as perform information classification and identify the most common security threats. Student is able to write basic information security requirements and utilize basic concepts of risk management. Student can perform basic security scanning against information systems.
Assessment criteria, excellent (5)
>=90% assignment points. Student understands and can apply the basic principles of information security as well as perform information classification and identify security threats independently. Student is able to write information security requirements and utilize basic concepts of risk management. Student understands the necessity of disaster recovery and business continuity planning. Student can independently perform basic security scanning against information systems.