Course Title: Contribute to cyber security risk management

Part B: Course Detail

Teaching Period: Term1 2025

Course Code: COSC7397C

Course Title: Contribute to cyber security risk management

Important Information:

Please note that this course may have compulsory in-person attendance requirements for some teaching activities. 

Please check your Canvas course shell closer to the course start date to see if this course requires mandatory in-person attendance.

The delivery method of the course might have to change quickly in response to changes in course requirements. It is advisable for students to keep in contact with their teachers regarding in-person course attendance.

School: 520T Future Technologies

Campus: City Campus

Program: C4410 - Certificate IV in Information Technology

Course Contact: Ajay Shiv Sharma

Course Contact Phone: +61 3 9925 4612

Course Contact Email: ajay.shiv.sharma@rmit.edu.au


Name and Contact Details of All Other Relevant Staff

Nominal Hours: 30

Regardless of the mode of delivery, represent a guide to the relative teaching time and student effort required to successfully achieve a particular competency/module. This may include not only scheduled classes or workplace visits but also the amount of effort required to undertake, evaluate and complete all assessment requirements, including any non-classroom activities.

Pre-requisites and Co-requisites

None

Course Description

In this course you will gain the skills and knowledge required to contribute to cyber security risk management, which includes assisting in developing and managing associated risk management strategies.


National Codes, Titles, Elements and Performance Criteria

National Element Code & Title:

BSBXCS404 Contribute to cyber security risk management

Element:

1. Contribute to recommending risk management strategies that mitigate cyber security risk

Performance Criteria:

1.1 Consult with stakeholders to determine scope of risk management appropriate to organisation and industry

1.2 Review relevant critical cyber risk management strategies appropriate to level of risk

1.3 Assist in developing suitable cyber security response options according to organisational policies and procedures

1.4 Present options for risk management strategies for approval within scope of own role

1.5 Document approved risk management strategies

Element:

2. Support implementation of approved risk management strategies in response to risk

Performance Criteria:

2.1 Support communication of approved risk management strategies to required personnel

2.2 Contribute to monitoring cyber security risk according to selected risk management strategies

2.3 Assist in determining compliance with implemented cyber risk mitigation strategies

2.4 Address non-compliance within scope of own role and escalate where required according to organisational policies and procedures

2.5 Assist in establishing feedback processes that provide warning of potential new risks according to organisational requirements

Element:

3. Review and revise implemented risk management strategies

Performance Criteria:

3.1 Identify benchmarks to track effectiveness of risk management strategies

3.2 Support evaluation of effectiveness of implemented strategies

3.3 Update risk management strategies with new information as required


Learning Outcomes


 On successful completion of this course the candidate will demonstrate the ability to complete the tasks outlined in the elements, performance criteria and foundation skills of this unit. 


Details of Learning Activities

This unit describes the skills and knowledge required to contribute to cyber security risk management, which includes assisting in developing and managing associated risk management strategies.

It applies to those working in a broad range of industries and job roles who work alongside technical experts to develop cyber security risk-management strategies.


Teaching Schedule

WeekDateTopicAssessment / Learning activities
Week 1 10-16 February Introduction to Cyber Security All classes will run Online via Collaborate Ultra. 
  • Submit the Survey
  • Take part in class activities
  • Complete the Labs /activities
 
Week 2 17-23 February

Guide to screening personal information

  • Submit the Survey
  • Take part in class activities
  • Complete the Labs /activities
Week 3 24 Feburary-2 March

Security privacy policies and procedures

  • Complete Week 1 to 2 Activities, if not done previously
  • Complete Week 3 Labs/Activities
Week 4 3-9 March

Risk Mitigation strategies and controls

  • Complete Week 1 to 3 Activities, if not done previously
  • Complete Week 4 Labs/Activities
Week 5 10-16 March

Incident Report disaster recovery and continuity of operation

  • Complete Week 1 to 4 Activities, if not done previously
  • Complete Week 5 Labs/Activities
Week 6 17-23 March

Cyber Monitoring

  • Complete Week 1 to 5 Activities, if not done previously
  • Complete Week 6 Labs/Activities
Week 7 24-30 March

Risk management and prioritisation

Knowledge Test - Released

  • Complete Week 1 to 6 Activities, if not done previously
  • Complete Week 7 Labs/Activities
Week 8 31 March - 6 April

Cyber Training

Knowledge Test - Task 1 - Due this week

  • Complete Week 1 to 7 Activities, if not done previously
  • Complete Week 8 Labs/Activities

Assessment 2 - Released

Week 9 7-13 April

Building an incident response

  • Complete Week 1 to 8 Activities, if not done previously
  • Complete Week 9 Labs/Activities
Week 10 14-20 April

NIST Framework

  • Complete Week 1 to 9 Activities, if not done previously
  • Complete Week 10 Labs/Activities
   

18-25 April

  

Mid-semester break 

  
Week 11 28 April - 4 May

Introduction to GDPR

Assessment 2 - Part 1 Due this week

  • Complete Week 1 to 10 Activities, if not done previously
  • Complete Week 11 Labs/Activities
Week 12 5-11 May

Introduction to data breaches

  • Complete Week 1 to 11 Activities, if not done previously
  • Complete Week 12 Labs/Activities
Week 13 12-18 May

Cybersecurity Maturity

  • Complete Week 1 to 12 Activities, if not done previously
  • Complete Week 13 Labs/Activities
Week 14 19-25 May

Metrics to determine success of strategy

  • Complete Week 1 to 13 Activities, if not done previously
  • Complete Week 14 Labs/Activities
Week 15 26 May - 1 June

Assessment 

Assessment 2 - Part 2 Due this week

  • Recap and Revision
Week 16 2-8 June

Assessment

  • Recap and Revision
Week 17 9-15 June

Re-submission

Re-submissions as required

Week 18 16-22 June

Re-submission

Re-submissions as required

 

*Please note that this timeline is subject to change based on semester requirements. We recommend checking your Canvas course shell regularly to stay updated with the latest schedule. 

 

Student directed hours involve completing activities such as reading online resources, assignments, individual student/teacher course-related consultation. Students are required to self-study the learning materials and complete the assigned out of class activities for the scheduled non-teaching hours. 


Learning Resources

Prescribed Texts


References


Other Resources

Not Applicable


Overview of Assessment

Assessment for this course is ongoing throughout the semester. Your knowledge and understanding of course content is assessed through participation in class exercises and various types of assessments.

Full assessment briefs will be provided and can be found on CANVAS.


Assessment Tasks

Students must pass each of the following assessments to demonstrate competency:

  • Assessment Task 1 - Knowledge Task
  • Assignment 2 - Project

You should refer to the assessment brief which is available through Canvas for full assessment criteria and due dates

Results that apply to courses that are delivered and assessed in accordance with competency-based assessment are: 

  • CA: Competency Achieved
  • NYC: Not Yet Competent
  • DNS: Did not Submit for Assessment


Assessment Matrix

Element

    

Performance criteria

    

 

    

 

    

 

    

 

    

Assessment

Task 1: Knowledge Assessment

 

    

Assessment

Task 2: Project

    

 

1. Contribute to recommending risk management strategies that mitigate cyber security risk

    

1.1 Consult with stakeholders to determine scope of risk management appropriate to organisation and industry

    

 

    

X

    

1.2 Review relevant critical cyber risk management strategies appropriate to level of risk

    

 

    

X

    

1.3 Assist in developing suitable cyber security response options according to organisational policies and procedures

    

 

    

X

    

1.4 Present options for risk management strategies for approval within scope of own role

    

 

    

X

    

1.5 Document approved risk management strategies

    

 

    

X

    

2. Support implementation of approved risk management strategies in response to risk

 

    

2.1 Support communication of approved risk management strategies to required personnel

    

 

    

X

    

2.2 Contribute to monitoring cyber security risk according to selected risk management strategies

    

 

    

X

    

2.3 Assist in determining compliance with implemented cyber risk mitigation strategies

    

 

    

X

    

2.4 Address non-compliance within scope of own role and escalate where required according to organisational policies and procedures

    

 

    

X

    

2.5 Assist in establishing feedback processes that provide warning of potential new risks according to organisational requirements

    

 

    

X

    

3. Review and revise implemented risk management strategies

 

    

3.1 Identify benchmarks to track effectiveness of risk management strategies

    

 

    

X

    

3.2 Support evaluation of effectiveness of implemented strategies

    

 

    

X

    

3.3 Update risk management strategies with new information as required

    

 

    

X

    

Other Information

Credit Transfer and/or Recognition of Prior Learning (RPL): 

 You may be eligible for credit towards courses in your program if you have already met the learning/competency outcomes through previous learning and/or industry experience. To be eligible for credit towards a course, you must demonstrate that you have already completed learning and/or gained industry experience, that is:   

• Relevant 
• Current 
• Satisfies the learning/competency outcomes of the course   

To find more information about credit transfer and RPL, please refer to the following link: https://www.rmit.edu.au/students/my-course/enrolment/apply-for-credit 

 Study and Learning Support:   

RMIT University Library provides free study support services and resources to help you build your academic skills. 
 
Study and Learning Centre (SLC) provides free learning and academic development advice to you. Services offered by SLC to support your numeracy and literacy skills are:   

• Assignment writing, thesis writing and study skills advice 
• Math and science developmental support and advice 
• English language development 

To find more information about Study and Learning Support, please refer to the following link: https://www.rmit.edu.au/students/support-services/study-support   

Equitable Learning Services (ELS):   

The Equitable Learning Services team (ELS team) supports and creates equal opportunities for students with a disability, long-term illness and/or mental health condition. We also support primary carers.    

ELS works in partnership with students to create an Equitable Learning Plan. Your plan is tailored to you, supports your needs and establishes how RMIT can provide ongoing assistance so you can access and participate in your studies. The ELS team can assist you to manage your Equitable Learning Plan.   

To find more information about services offered by Equitable Learning Services (ELS), please refer to the following link: https://www.rmit.edu.au/students/support-services/equitable-learning 

  

Extensions and Special Consideration    

Extensions:   

• Extensions are available for unforeseen circumstances of a short-term nature.   

• Applications must be submitted to the school at least one working day before the due date of the assessment.   

• Extensions can be approved for up to 7 days past the due date for an assessment. (Where students need an extension exceeding 7 days, they must instead apply for special consideration.)   

 

Special Consideration:   

• An application for special consideration is made in advance of an assessment wherever possible, but will normally be accepted within five working days after the assessment date. For more information, see the Special Consideration page of the RMIT website. 

Plagiarism: 

Plagiarism is a form of cheating and it is very serious academic offence that may lead to expulsion from the University. 

Please Refer: www.rmit.edu.au/academicintegrity to find more information about plagiarism. 

Other Information: 

All email communications will be sent to your RMIT email address and you must regularly check your RMIT emails.

Course Overview: Access Course Overview