Skip to content

Information Security syllabus

IT 2449 units · 33 topicsAcademic year 2083/84
Browse the units

Information Security

9 units

1. Introduction (5 LHs)

  1. Security concepts, threats, attacks and assets
  2. Security requirements, principles, attack surfaces and trees
  3. Discretionary, role-based and attribute-based access
  4. Identity and credential management
  5. Bell-LaPadula and Biba models

2. Symmetric and Asymmetric Cryptographic Algorithms (13 LHs)

  1. Substitution/transposition, block and stream ciphers
  2. Feistel, DES and AES
  3. Modular arithmetic and Galois fields
  4. Prime numbers, primality and Euclidean algorithms
  5. Diffie-Hellman and RSA

3. Message Authentication and Hash Functions (6 LHs)

  1. Message authentication and digests
  2. MD4, MD5, SHA-1 and SHA-2
  3. HMAC and digital signatures

4. User Authentication (5 LHs)

  1. Password, token, biometric and two-factor authentication
  2. Kerberos and Kerberos 5
  3. Authentication security issues

5. Intrusion Detection and Prevention (5 LHs)

  1. Intruders and detection approaches
  2. Host-, network- and hybrid-based detection
  3. Honeypots and prevention systems

6. Malicious Software (4 LHs)

  1. Viruses, worms, Trojans, spyware and rootkits
  2. APT, bots, phishing, spam and keyloggers
  3. Malware countermeasures

7. Network Security (5 LHs)

  1. Certificates, X.509 and PKI/PKIX
  2. SSL, TLS and IP security
  3. Email security and PGP
  4. Firewalls and VPNs

8. IT Security Management, Risk Assessment and Security Auditing (5 LHs)

  1. Security policy and organizational context
  2. Risk assessment and analysis
  3. Audit architecture, trails, logging and analysis

9. Laboratory work

  1. Classical ciphers, DES and AES
  2. Primality, Euclidean algorithms, Diffie-Hellman and RSA
  3. MD5, SHA-1 and SHA-2
  4. Password, token and two-factor authentication