ITC 2800 - Cybersecurity Foundations
3 Credits Learn and practice foundational cybersecurity concepts and topics including security principles, network security and endpoint security concepts, vulnerability assessment and risk management, and incident handling. Explore the tools and techniques used to protect a network and endpoints including access control, firewalls, cloud security, cryptography, patch management, anti-malware, and policies. Gain the skills for managing threats, complying with ethical, legal, and regulatory frameworks, and respond to security incidents. This course helps prepare students for the CCST Cybersecurity professional certification exam.?
Pre-Requisites ITC 2520 , ITC 2516
Major Content Areas Essential Cybersecurity Principles 10%
Basic Network Security Concepts 35%
Endpoint Security Concepts 35%
Vulnerability Assessment and Risk Management 10%
Security Incident Handling 10%
Learning Outcomes Explain essential cybersecurity principles and define appropriate cybersecurity terms
Explain common cybersecurity threats and vulnerabilities
Explain access management principles including AAA, RADIUS, MFA, and password policies
Explain and demonstrate encryption methods and applications including symmetric algorithms, asymmetric algorithms, hashing, PKI, and digital signatures
Describe TCP/IP protocol vulnerabilities such as those in TCP, UDP, HTTP, ARP, ICMP, DHCP, and DNS
Explain how network addresses and network design impact network security such as segmentation, layer 2 and layer 3 addressing, NAT, public and private addressing
Describe network infrastructure and technologies such as network security architecture, DMZ, virtualization, cloud, honeypot, proxy server, IDS, and IPS
Describe secure access technologies such as ACLs, firewalls, VPNs, and network access control
Describe operating system security concepts and features such as host-based firewalls command line interfaces, permissions, least privilege, and privilege escalation
Demonstrate familiarity with appropriate endpoint tools that gather security assessment information such as netstat, nslookup, dig, tcpdump, and Wireshark
Verify that endpoint systems meet security policies and standards
Implement software and hardware updates and patch management
Interpret system logs
Demonstrate familiarity with malware removal
Explain vulnerability management
Use threat intelligence techniques to identify potential network vulnerabilities
Explain risk management as related to cybersecurity
Explain the importance of disaster recovery and business continuity planning
Monitor security events and know when escalation is required
Explain digital forensics and attack attribution processes
Explain the impact of compliance frameworks on security incident handling
Describe the elements of cybersecurity incident response
|