Standard

Posted: 09/05/07

CIS 1115 – Information Security Fundamentals

Course Description:

This course provides a broad overview of information security. It covers terminology, history, security systems development and implementation. Student will also cover the legal, ethical, and professional issues in information security.  Topics include: define key terms in Information Security terminology, state the reasons for Information Security, identify the legal, ethical, and professional issues in Information Security, identify the steps in risk identification, assessment and control, state the justification of having a security policy and security procedures,  state major components in  the design of information security, and identify positions and credentials available to individuals entering the information security profession.

 

Competency Areas:

Hours

 

 

 

Define key terms in Information Security terminology

Class

5

State the reasons for Information Security

D. Lab

0

Identify the legal, ethical, and professional issues in Information Security

P. Lab/O.B.I.

0

Identify the steps in risk identification, assessment and control

Credit

5

State the justification of having a security policy and security procedures

 

 

State major components in  the design of information security

 

 

Identify positions and credentials available to individuals entering the information security profession

 

 

 

Prerequisite:

[(CIS 1140 or CIS 2321) and an operating system class} or advisor approval

Corequisite:

 

 

Course Guide

 

Competency

After completing this section, the student will:

Hours

Class

D. Lab

P. Lab/

O.B.I.

DEFINE KEY TERMS IN INFORMATION SECURITY TERMINOLOGY

6

0

0

 

Define key terms in Information Security terminology

 

 

 

STATE THE REASONS FOR INFORMATION SECURITY

8

0

0

 

State the components and characteristics of an information system

 

 

 

 

Identify threats to an information system

 

 

 

 

Identify types of attacks to an information system

 

 

 

IDENTIFY THE LEGAL, ETHICAL, AND PROFESSIONAL ISSUES IN INFORMATION SECURITY

6

0

0

 

List laws relevant to information security

 

 

 

 

List ethical and professional issues relevant to information security

 

 

 

 

Identify international laws and legal  bodies

 

 

 

STATE THE JUSTIFICATION OF HAVING A SECURITY POLICY AND SECURITY PROCEDURES

6

0

0

 

Implementing security in systems’ project management

 

 

 

 

Discuss technical and non-technical topics of implementation

 

 

 

 

Discuss the maintenance of the security policy

 

 

 

STATE MAJOR COMPONENTS IN  THE DESIGN OF INFORMATION SECURITY

10

0

0

 

Identify key physical threats to the information facility

 

 

 

 

Identify and state the purpose of firewalls, intrusion detection systems and other security devices

 

 

 

 

Identify cryptography and encryption-based solutions

 

 

 

 

Identify access control devices

 

 

 

 

Discuss securing mobile and portable systems

 

 

 

IDENTIFY THE STEPS IN RISK IDENTIFICATION, ASSESSMENT AND CONTROL

7

0

0

 

State the steps in risk identification and assessment.

 

 

 

 

Identify risk control strategies

 

 

 

 

Identify major security models

 

 

 

IDENTIFY POSITIONS AND CREDENTIALS AVAILABLE TO INDIVIDUALS ENTERING THE INFORMATION SECURITY PROFESSION

7

0

0

 

Discuss staffing the security function

 

 

 

 

List the various credentials of Information Security Professionals

 

 

 

 

Discuss security issues in employment policies and practices

 

 

 

 

Suggested Resources

 

Books:

 

Principles of Information Security, ISBN: 0-619-21625-5, Whitman, Mattford, Course Technology