Course Title: Contribute to cyber security risk management

Part B: Course Detail

Teaching Period: Term1 2024

Course Code: COSC7397C

Course Title: Contribute to cyber security risk management

Important Information:

Please note that this course may have compulsory in-person attendance requirements for some teaching activities. 

To participate in any RMIT course in-person activities or assessment, you will need to comply with RMIT vaccination requirements which are applicable during the duration of the course. This RMIT requirement includes being vaccinated against COVID-19 or holding a valid medical exemption. 

Please read this RMIT Enrolment Procedure as it has important information regarding COVID vaccination and your study at RMIT: https://policies.rmit.edu.au/document/view.php?id=209

Please read the Student website for additional requirements of in-person attendance: https://www.rmit.edu.au/covid/coming-to-campus 

 

Please check your Canvas course shell closer to when the course starts to see if this course requires mandatory in-person attendance. The delivery method of the course might have to change quickly in response to changes in the local state/national directive regarding in-person course attendance. 

School: 520T Future Technologies

Campus: City Campus

Program: C4410 - Certificate IV in Information Technology

Course Contact: Ajay Shiv Sharma

Course Contact Phone: +61 3 9925 4381

Course Contact Email: ajay.shiv.sharma@rmit.edu.au


Name and Contact Details of All Other Relevant Staff

Nominal Hours: 30

Regardless of the mode of delivery, represent a guide to the relative teaching time and student effort required to successfully achieve a particular competency/module. This may include not only scheduled classes or workplace visits but also the amount of effort required to undertake, evaluate and complete all assessment requirements, including any non-classroom activities.

Pre-requisites and Co-requisites

None

Course Description

 In this course you will be learn the skills and knowledge required to contribute to cyber security risk management, which includes assisting in developing and managing associated risk management strategies.


National Codes, Titles, Elements and Performance Criteria

National Element Code & Title:

BSBXCS404 Contribute to cyber security risk management

Element:

1. Contribute to recommending risk management strategies that mitigate cyber security risk

Performance Criteria:

1.1 Consult with stakeholders to determine scope of risk management appropriate to organisation and industry

1.2 Review relevant critical cyber risk management strategies appropriate to level of risk

1.3 Assist in developing suitable cyber security response options according to organisational policies and procedures

1.4 Present options for risk management strategies for approval within scope of own role

1.5 Document approved risk management strategies

Element:

2. Support implementation of approved risk management strategies in response to risk

Performance Criteria:

2.1 Support communication of approved risk management strategies to required personnel

2.2 Contribute to monitoring cyber security risk according to selected risk management strategies

2.3 Assist in determining compliance with implemented cyber risk mitigation strategies

2.4 Address non-compliance within scope of own role and escalate where required according to organisational policies and procedures

2.5 Assist in establishing feedback processes that provide warning of potential new risks according to organisational requirements

Element:

3. Review and revise implemented risk management strategies

Performance Criteria:

3.1 Identify benchmarks to track effectiveness of risk management strategies

3.2 Support evaluation of effectiveness of implemented strategies

3.3 Update risk management strategies with new information as required


Learning Outcomes


 On successful completion of this course you will have developed and applied the skills and knowledge required to demonstrate competency in the above elements.


Details of Learning Activities

This unit describes the skills and knowledge required to contribute to cyber security risk management, which includes assisting in developing and managing associated risk management strategies.

It applies to those working in a broad range of industries and job roles who work alongside technical experts to develop cyber security risk-management strategies.


Teaching Schedule

1

Introduction to Cyber Security  

2

Guide to screening personal information

 

3

Security privacy policies and procedures

 

4

Risk Mitigation strategies and controls

 

5

Incident Report disaster recovery and continuity of operation

 

6

Cyber Monitoring

 

7

Risk management and prioritisation

Knowledge Test - Released

MID – SEMESTER BREAK

29 March - 7 April

 

8

Cyber Training

Knowledge Test - Task 1 - Due on  12 April 2024

Assessment 2 - Released

9

Building an incident response

 

10

NIST Framework

 

11

Introduction to GDPR

Assessment 2 - Part 1 Due on 4 May 2024

12

Introduction to data breaches

 

13

Cybersecurity Maturity

 

14

Metrics to determine success of strategy

 

15

Assessment 

Assessment 2 - Part 2 Due on 31 May 2024

16

Assessment

Re-submissions as required

17

 

Re-submissions as required

18

 

Re-submissions as required


Learning Resources

Prescribed Texts


References


Other Resources

Not Applicable


Overview of Assessment

Assessment for this course is ongoing throughout the semester. Your knowledge and understanding of course content is assessed through participation in class exercises, oral presentations and through the application of learned skills and insights to your written tasks. Full assessment briefs will be provided and can be found on CANVAS.


Assessment Tasks

Assessment Task 1 - Knowledge Task
Assignment 2 - Project


Assessment Matrix

Element

Performance criteria

 

 

 

 

Assessment

Task 1: Knowledge Assessment

 

Assessment

Task 2: Project

 

1. Contribute to recommending risk management strategies that mitigate cyber security risk

1.1 Consult with stakeholders to determine scope of risk management appropriate to organisation and industry

 

X

1.2 Review relevant critical cyber risk management strategies appropriate to level of risk

 

X

1.3 Assist in developing suitable cyber security response options according to organisational policies and procedures

 

X

1.4 Present options for risk management strategies for approval within scope of own role

 

X

1.5 Document approved risk management strategies

 

X

2. Support implementation of approved risk management strategies in response to risk

 

2.1 Support communication of approved risk management strategies to required personnel

 

X

2.2 Contribute to monitoring cyber security risk according to selected risk management strategies

 

X

2.3 Assist in determining compliance with implemented cyber risk mitigation strategies

 

X

2.4 Address non-compliance within scope of own role and escalate where required according to organisational policies and procedures

 

X

2.5 Assist in establishing feedback processes that provide warning of potential new risks according to organisational requirements

 

X

3. Review and revise implemented risk management strategies

 

3.1 Identify benchmarks to track effectiveness of risk management strategies

 

X

3.2 Support evaluation of effectiveness of implemented strategies

 

X

3.3 Update risk management strategies with new information as required

 

X

Other Information

Assessments
To be deemed competent students must demonstrate an understanding of all aspects required
of this course and must achieve a satisfactory standard in each assessment. Assessment
methods have been designed to measure student's competency in each course over multiple
tasks.
Resubmissions
For each assessment submitted by the due date in this course students will be given feedback
within 2 weeks of the assessment submission. If you do not submit your assessment by the
due date or if your first attempt is not satisfactory you will be allowed a single resubmission
attempt for each assessment in this course. You will be provided with a new due date by your
teacher for your resubmission attempt if a resubmission is required.
Due dates
All assessment tasks will have a due date provided and published in Canvas. Assessments
submitted after the due date will not be accepted unless an extension has been provided or
special consideration has been granted.
Extensions
If you will not be able to meet the due date for an assessment you may apply to your teacher
for an extension of up to seven days by completing the Application of Time to Submit
Assessment Work Form at
https://www.rmit.edu.au/content/dam/rmit/documents/Students/Student_forms/Application-
for-extension-of-time-to-submit-work.pdf Applications for an extension of time must be
received before the due date for an assessment.
Special Consideration
If unforeseen circumstances beyond your control prevent you from submitting your work on
time you may be eligible to apply for special consideration. For further information regarding
special consideration, please refer to the RMIT Special Consideration page at
https://www.rmit.edu.au/students/student-essentials/assessment-and-results/special-
consideration

Course Overview: Access Course Overview