SEDS 517

Information Security

The security of information and communication technologies, fundamental security functions and related cryptographic tools, network security and related problems, protection mechanisms and tools will be evaluated. Then current hot topic security problems will be analyzed  for  “cloud computing”, “web applications and services”, “wireless networks”, etc. and at last security management of information systems will be discussed.

Reference book(s):

  • Principles of Information Security. Michael E. Whitman, Herbert J. Mattord, 5th 2014.
  • John R. Vacca, Computer and Information Security Handbook, Second Edition,Elsevier, 2013.
  • Gutman, ‘Cryptographic Security Architecture’, Springer, 2004
  • R. Stinson, ‘Cryptography, Theory and Practice’, Chapman & Hall/CRC Press, 2002
  • Schneider, ‘Applied Cryptography, Protocols, Algorithms, and Source Code in C’, John Wiley & Sons, 1996

Course Objectives: To teach the open security problems of information technologies, their risks and related solution tools. Teaching the designing, building and managing of a secure information system.

Week Topics
1 Introduction to Information and Communication Security
2-4 Main Security Functions and Cryptographic Tools
5-7 Network Security – Detection, Prevention and Protection
8 Security for Cloud Computing
9 Software Development Security
10 Operating Systems Security
11 Internet Security
12-13 Security of Wireless Networks
14 Management of Information Security

Grading:

  • Final Exam %40
  • Practice Assignments %30
  • Reading Assignments + participation %10

Course Learning Outcomes:

CO1      To have the capability to analyze vulnerabilities, threats and security risks.

CO2      Selection, implementation and testing of cryptographic tools for essential security functions.

CO3      To have needed background information and methodology to design and manage the secure information system.

Contribution of Program Learning Outcomes:

              P01      P02       P03       P04      P05       P06       P07

C01            x                                  x

C02                        x                      x

C03                                                           x

Justification of the course: It is an elective course of the Software Engineering and Data Science Master of Science Program. The course introduces the fundamentals of secure information system design, development and implementations.