Cyber Security Implementation in Practice (10op)
Opintojakson tunnus: YTCP0200
Opintojakson perustiedot
- Laajuus
- 10 op
- Opetuskieli
- englanti
Osaamistavoitteet
The course concentrates on hardening a technical environment before a cyber incident has happened. Students focus on these technical controls how they actively prevent a cyber incident with group work and personal assignments. If the prevention isn’t sufficient the incident handling is also investigated and reported by Indicators of Compromise. 
 Main topics are updated each year, but mainly they correlate and draw inspiration from e.g. SANS Critical security controls and other related public recommendations. The students learn to implement these technical controls and test/audit them on the next course "Auditing and Testing Technical Security".
                    
Sisältö
The key topics of the course are:
 - Cyber Threats 
 - Malware Defences 
 - Asset Inventory and Management 
 - Hardening Operating System and Network Devices 
 - Situational Awareness 
 - User authentication & authorization 
 - Boundary Defence 
 - Maintenance, monitoring and analysis of security audit logs 
 - Defence Strategies & Tactics 
 - Red Teaming 
 - Cyber Security Incident Handling 
 - Conducting personal hands-on implementation and research of security controls 
 - Conducting group implementations of security controls to an enterprise
                    
Esitietovaatimukset
No prerequisites.
                    
Arviointikriteerit, tyydyttävä (1)
Excellent 5: The student demonstrates excellent mastery of the practical implementations of cyber security and is able to analyze an enterprises existing state of implementations concerning cyber security. The student understands excellently enterprises technical cyber threats and risks that are formulated related to context. The student is able to design an excellent technical implementation to control cyber security based on given requirement definition. The student reflects on his (her) own learning commendably.
 Very Good 4: The student demonstrates very good mastery of the practical implementations of cyber security and is able to analyze an enterprises existing state of implementations concerning cyber security. The student understands very well an enterprises technical cyber threats and risks that are formulated related to context. The student is able to design a good technical implementation to control cyber security based on given requirement definition. The student reflects on his (her) own learning very well.
 Good 3: The student demonstrates good mastery of the practical implementations of cyber security and is able to analyze an enterprises existing state of implementations concerning cyber security. The student understands well an enterprises the technical cyber threats and risks that are formulated related to context. The student is able to design a technical implementation to control cyber security based on given requirement definition. The student reflects on his (her) own learning well.
 
 Satisfactory 2: The student demonstrates satisfactory mastery of the practical implementations of cyber security and is able to analyze an enterprises existing state of implementations concerning cyber security. The student understands an enterprises technical cyber threats and risks that are formulated related to context. The student is able to design a satisfactory technical implementation to control cyber security based on given requirement definition. The student reflects on his (her) own learning.
 Sufficient 1: The student demonstrates sufficient mastery of the practical implementations of cyber security and is able to analyze an enterprises existing state of implementations concerning cyber security. The student has satisfactory understanding of an enterprises technical cyber threats and risks that are formulated related to context. The student is able to design a satisfactory technical implementation to control cyber security based on given requirement definition. The student reflects on his (her) own learning sufficiently.
 Fail 0: The student does not meet the minimum criteria set for the course.
                    
