Module Details

The information contained in this module specification was correct at the time of publication but may be subject to change, either during the session because of unforeseen circumstances, or following review of the module at the end of the session. Queries about the module should be directed to the member of staff with responsibility for the module.
Title SECURITY RISK MANAGEMENT
Code CKIT531
Coordinator Mr K Dures
Computer Science
K.Dures@liverpool.ac.uk
Year CATS Level Semester CATS Value
Session 2018-19 Level 7 FHEQ Whole Session 15

Aims

  • To provide students with theoretical and practical knowledge of the domain of (Cyber) Security Risk Management, along with an insight into the formal and systematic approaches core to Security Risk Management.
  • To provide students with a substantial technical awareness, and managerial competence, concerning information security policy and management.
  • To provide students with advanced knowledge of the security issues that can affect information and computer systems.
  • To provide students with practical ability in the application of the concepts, techniques, methods and approaches of Security Risk Management in the context of enterprises of all kinds.

Learning Outcomes

An ability to analyse and assess (Cyber) Risk Management scenarios by utilising systemic analysis processes.

A systematic ability develop and deploy a program of Cyber Security using the tools and techniques of security risk management.

An in-depth and critical understanding of the professional codes of practice, and legal, social, cultural and ethical issues, related to security risk management.

A comprehensive awareness of the social and environmental context in which security risk management operates.

The practical ability to apply the tools and techniques of security risk management, in a manner that is both practical and pragmatic, and in the context of enterprises of all kinds.


Syllabus

Week 1
The principles of (Cyber) Security Risk Management.
 
Week 2
Security Risk management management models, roles, and functions.
 
Week 3
Strategic management planning and strategies, the security management life cycle. 
 
Week 4
Laws and regulatory requirements concerning cyber security, and security standards and controls.< /span>
 
Week 5
Security metrics and Key Performance Indicators (KPIs).
 
Week 6
Physical security and environmental threats, contingency planning.
 
Week 7
Security training and awareness, the creation of a security staff training plan.
 
Week 8
The future of Cyber Security Risk Management; the potential impacts of evo lving technologies.
 

Teaching and Learning Strategies

Online Learning - Weekly seminar supported by asynchronous discussion in a virtual classroom environment facilitated by an online instructor.

Number of hours per week that students are expected to attend the virtual classroom so as to participate in discussion, dedicated to group work and individual assessment is 7.5.


Teaching Schedule

  Lectures Seminars Tutorials Lab Practicals Fieldwork Placement Other TOTAL
Study Hours           60
Weekly seminar supported by asynchronous discussion in a virtual classroom environment facilitated by an online instructor.
60
Timetable (if known)           Number of hours per week that students are expected to attend the virtual classroom so as to participate in discussion, dedicated to group work and individual assessment is 7.5.
 
 
Private Study 90
TOTAL HOURS 150

Assessment

EXAM Duration Timing
(Semester)
% of
final
mark
Resit/resubmission
opportunity
Penalty for late
submission
Notes
             
CONTINUOUS Duration Timing
(Semester)
% of
final
mark
Resit/resubmission
opportunity
Penalty for late
submission
Notes
Coursework  Weekly Discussion Qu  whole session  40  No reassessment opportunity  Standard UoL penalty applies  Eight discussion questions There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Coursework  One Week/ 500-750  Week 1  No reassessment opportunity  Standard UoL penalty applies  Essay: Security Risk Managment (SRM) methods and tools. There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Practical Assessment  One Week/ 500 words  Week 2  No reassessment opportunity  Standard UoL penalty applies  Essay: Defining SRM models, roles, and functions There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Coursework  One Week/ 750–1,00  Week 3  No reassessment opportunity  Standard UoL penalty applies  Essay: The SRM life cycle There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Coursework  One Week/ 500–750   Week 4  No reassessment opportunity  Standard UoL penalty applies  Essay: Laws and regulatory requirements There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Coursework  One Week/ 500–750   Week 5  No reassessment opportunity  Standard UoL penalty applies  Essay: Measuring Security with Key Performance Indicators There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Coursework  One Week/ 500–750   Week 6  No reassessment opportunity  Standard UoL penalty applies  Essay: Security threats and contingency planning There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Coursework  One Week/ 750–1,00  Week 7  No reassessment opportunity  Standard UoL penalty applies  Essay: Creating a security staff training and awareness plan There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. 
Coursework  One week/500 words  Week 8  No reassessment opportunity  Standard UoL penalty applies  Essay: Predicting the future of Cyber Security Risk Management There is no reassessment opportunity, The nature of the adopted online learning paradigm is such that no reassessment opportunity is available; instead students failing the module will be offered the opportunity to retake the entire module. Notes (applying to all assessments) (1) Due to nature of the on­line mode of instruction work is not marked anonymously. (2) Students who fail the module have the opportunity to repeat the entire module. (3) The "Standard UoL Penalty" for late submission that applies is the "Standard UoL Penalty" agreed with respect to online programmes offered in collaboration with Laureate Online Education. (4) For group work assessments groups typically comprise 3 to 4 students. Both group and individual contributions are assessed and integrated to produce a final mark for each student. 

Recommended Texts

Reading lists are managed at readinglists.liverpool.ac.uk. Click here to access the reading lists for this module.
Explanation of Reading List:

The online programmes offered by the department of Computer Science in Collaboration with Laureate Online Education use online materials wherever possible including the online resources available within the University of Liverpool’s libraries. This module does not require a specific text book.