Learning Objectives
5 objectives- Understand fundamental concepts and importance of computer security.
- Identify different types of cyber attacks and their mechanisms.
- Apply principles of secure system design to protect computing environments.
- Explain cryptography techniques and their role in securing data.
- Evaluate network security measures and policies to mitigate risks.
Content Outline
PreviewUnit 625: Comprehensive Computer Security
1. Introduction to Computer Security
- Definition and scope of computer security
- Importance of protecting data and systems
- Common security threats and vulnerabilities
- Goals of computer security: Confidentiality, Integrity, Availability (CIA triad)
2. Types of Cyber Attacks
- Overview of cyber attacks
- Malware: viruses, worms, trojans, spyware, adware
- Phishing attacks: techniques and detection
- Ransomware: impact and mitigation
- Distributed Denial of Service (DDoS) attacks
- Social Engineering: methods and prevention
3. Principles of Secure System Design
- Least Privilege Principle
- Defense-in-Depth strategy
- Security by Design approach
- Secure coding practices and common pitfalls
- Threat modeling and risk assessment
4. Cryptography and Encryption
- Introduction to cryptography: history and purpose
- Symmetric vs asymmetric encryption algorithms
- Key management best practices
- Digital signatures and certificates
- Use cases: securing data storage and communications
5. Network Security
- Network security protocols (SSL/TLS, IPSec)
- Secure communication channels: VPNs
- Firewalls: types and configurations
- Intrusion Detection Systems (IDS) and Intrusion Prevention Systems (IPS)
- Network segmentation and access control
6. Security Policies and Procedures
- Importance of security policies
- Access control mechanisms: authentication and authorization
- Incident response plans and management
- Security audits and compliance requirements (e.g. GDPR, HIPAA)
- User awareness and training programs
7. Secure Web Applications
- Common web application vulnerabilities (OWASP Top 10)
- Secure web development best practices
- Use of Web Application Firewalls (WAF)
- Prevention techniques for SQL injection, cross-site scripting (XSS), and other attacks
- Secure session management and data validation
8. Physical Security Measures
- Role of physical security in overall security posture
- Access control systems: locks, badges, biometrics
- Surveillance cameras and monitoring
- Securing hardware and devices from theft or damage
- Designing secure facilities and data centers
9. Mobile Security
- Security challenges unique to mobile devices
- Mobile app security best practices
- Secure mobile communication protocols
- Strategies for protecting mobile data and devices
- Mobile device management (MDM) solutions
10. Emerging Trends in Computer Security
- Artificial intelligence and machine learning for threat detection
- Blockchain technology for secure transactions
- Security challenges in Internet of Things (IoT)
- Impact of cloud computing on security practices
- Future outlook and evolving threats
Unlock the full outline
Get the complete content outline, learning outcomes and assessment methods for Computer Security.
KSh 20 one-off, or included with a plan
Learning Outcomes
Unlock the outline above to see learning outcomes.
Assessment Methods
Unlock the outline above to see assessment methods.