Course Title: Manage network security

Part B: Course Detail

Teaching Period: Term2 2022

Course Code: INTE5051C

Course Title: Manage network security

Important Information:

Please note that this course may have compulsory in-person attendance requirements for some teaching activities. 

To participate in any RMIT course in-person activities or assessment, you will need to comply with RMIT vaccination requirements which are applicable during the duration of the course. This RMIT requirement includes being vaccinated against COVID-19 or holding a valid medical exemption. 

Please read this RMIT Enrolment Procedure as it has important information regarding COVID vaccination and your study at RMIT: https://policies.rmit.edu.au/document/view.php?id=209

Please read the Student website for additional requirements of in-person attendance: https://www.rmit.edu.au/covid/coming-to-campus 


Please check your Canvas course shell closer to when the course starts to see if this course requires mandatory in-person attendance. The delivery method of the course might have to change quickly in response to changes in the local state/national directive regarding in-person course attendance. 

School: 520T Future Technologies

Campus: City Campus

Program: C5402 - Diploma of Information Technology

Course Contact: Luke Eberbach

Course Contact Phone: +61 3 9925 4381

Course Contact Email: luke.eberbach@rmit.edu.au


Name and Contact Details of All Other Relevant Staff

Course Coordinator Name: Syed Mohammad Zohaib

Email: syed.zohaib@rmit.edu.au

Nominal Hours: 80

Regardless of the mode of delivery, represent a guide to the relative teaching time and student effort required to successfully achieve a particular competency/module. This may include not only scheduled classes or workplace visits but also the amount of effort required to undertake, evaluate and complete all assessment requirements, including any non-classroom activities.

Pre-requisites and Co-requisites

None

Course Description

In this course you will gain the skills and knowledge required to implement and manage security functions throughout a network.


National Codes, Titles, Elements and Performance Criteria

National Element Code & Title:

ICTNWK546 Manage network security

Element:

1. Plan security design process

Performance Criteria:

1.1 Define planning phase for network security design according to organisational requirements

1.2 Define building phase for network security design according to organisational requirements

1.3 Define managing phase for network security design according to organisational requirements

Element:

2. Identify threats to network security

Performance Criteria:

2.1 Determine major threat themes to network security

2.2 Determine the potential origin of major threats according to network security design specifications

2.3 Identify industry standard common network vulnerability types

2.4 Design and document threat model according to network security design specifications

Element:

3. Analyse security risks

Performance Criteria:

3.1 Determine required elements of risk management according to network security design specifications

3.2 Identify organisational assets requiring protection

3.3 Categorise and document assets and determine their value according to organisational requirements

3.4 Determine and document risk management plan according to organisational requirements

Element:

4. Create a security design

Performance Criteria:

4.1 Determine attacker scenarios and threats according to network security design specifications

4.2 Design and document network components security measures

4.3 Develop and document security policies

4.4 Submit document to required personnel and seek and respond to feedback

Element:

5. Design security incidents response

Performance Criteria:

5.1 Design and document auditing and incidents response procedure

5.2 Submit to required personnel, seek and respond to feedback


Learning Outcomes


On successful completion of this course you will have developed and applied the skills and knowledge required to demonstrate competency in the above elements


Details of Learning Activities

This unit describes the skills and knowledge required to implement and manage security functions throughout a network.

It applies to individuals with Information and Communications Technology (ICT) expertise and lead the development of strategic reviews of security and provide technical advice, guidance and leadership in resolution of specified problems.

No licensing, legislative or certification requirements apply to this unit at the time of publication.


Teaching Schedule

Please note, that this schedule is subject to change. Notification of any changes will be made via canvas announcements. Please refer to the syllabus on Canvas for the most up-to-date schedule.

Week

Topics/Discussions

ICTNWK511 Elements

1

Topics

  • Introduction to Cybersecurity
  • Enrol in Cisco Networking Academy
  • Cybersecurity - A World of Experts and Criminals

Tutorials

  • Cybersecurity Vocabulary

 

Revision

  • Pre-Course Quiz

2.2 - 2.4

2

Topics

  • Introduction to Packet Tracer
  • Common Network Types / Topologies

Labs

  • Social Engineering Techniques
  • Creating a Cyber Security World

Revision

  • Review Netacad Quiz 1

4.1

3

Topics

  • The Cybersecurity Cube

Labs

  • Install a Virtual Machine on a Personal Computer
  • Exploring Authentication, Authorization, and Accounting

Revision

  • Review Netacad Quiz 2

1.1 - 1.3, 2.3, 2.4, 4.2, 4.4

4

Topics

  • Planning, Building and Managing Network Security Design

Labs

  • Exploring File and Data Encryption

Tutorial

  • Implementing an Information Security Program

Assessments

  • Project 1 - Section 1 Release (Due Week 7)

1.1 - 1.3, 2.3, 2.4, 2.5, 4.2, 4.4

 

 

5

Topics

  • Identifying and Valuing Assets

Assessments

  • Work on Project 1 - Section 2

4.4

 

 

6

Topics

  • Threat Modelling

Lab

  • Threat Modelling

Assessment

  • Work on Project 1 - Section 3

1.1 - 1.3

 

 

 

 

 

 

 

7

Topics

  • Implement Tests and Verify Solutions

Tutorials

  • Managing the Network
  • Cybersecurity Awareness While Travelling

Assessment

  • Work on Project 1 - Section 4 & 5 (Due Week 7)

3.1-3.4

 

 

 

 

 

 

 

 

 

8

Topics

  • Cybersecurity Threats, Vulnerabilities, and Attacks

Labs

  • Detecting Threats & Vulnerabilities

2.1 - 2.4, 4.1, 4.2

9

Topics

  • The Art of Protecting Secrets

Labs

  • Lab: Using Steganography
  • Lab: Configuring VPN Transport Mode
  • Lab: Configuring VPN Tunnel Mode

Assessment

  • Review Netacad Quiz 4
  • Knowledge Test Release (Due Week 11)

1.1, 1.2, 3.1, 4.1, 4.2

10

Topics

  • Network Attacks, vulnerabilities and weaknesses

Lab

  • Configuring WEP/WPA2 PSK/WPA2 RADIUS

Tutorial

  • Cybersecurity Awareness: Security Overview

2.1 - 2.4, 4.1, 4.2

11

Topics

  • The Art of Ensuring Integrity
  • Application of Switch Port Security

Labs

  • Password Cracking
  • Using Digital Signatures

Revision

  • Review Netacad Quiz 5

Assessment

  • Knowledge Test (Due Week 11)

4.2, 4.3

12

Topics

  • Security Policies
  • Project 2 Help:
    • Identification of incoming attacks
    • Identification of threats
    • Network Verification
    • ACLs

 

  • Project 2 Section 1 Release (Due Week 15)

3.1 - 3.4, 5.1 - 5.4

13

Topics

  • The Five Nines Concept
  • ACLs

Labs

  • Router and Switch Redundancy
  • Router and Switch Resilience

Revision

  • Review Netacad Quiz 6

Assessments

  • Work on Project 2 Section 1

5.1

14

Topics

  • Risk Management Plan
  • Incident Response Plan

Tutorial

  • Protecting a Cybersecurity Domain
  • Cybersecurity for IT Professionals

Revision

  • Review Netacad Quiz 7

Assessments

  • Work on Project 2 Section 2

1.1, 2.2 - 2.4, 3.1, 4.1, 5.1, 5.3

15

Topics

  • Become a Cybersecurity Specialist

Revision

  • Review Netacad Quiz 8

Assessments

  • Work on Project 2 Section 2 (Due Week 15)

5.1, 5.2

16

Resubmissions (If Applicable)

 

17

Resubmissions (If Applicable)

 

18

Results finalise

 

 


Learning Resources

Prescribed Texts


References


Other Resources

We will be using Virtualisation to create different operating systems for this course.

You will be required to bring or purchase an External Hard Drive (Minimum 500GB) to complete your assessments. Without it, you will not be able to complete this course. 

It is your responsibility to have this organized by the end of week 1 at the latest.

The school computers do not allocate enough disk space for you to install Virtual Machines on your profiles.

All other resources will be provided via the Cisco Networking academy


Overview of Assessment

Assessment for this course is ongoing throughout the semester. Your knowledge and understanding of course content is assessed through participation in class exercises, oral presentations and through the application of learned skills and insights to your written tasks. Full assessment briefs will be provided and can be found on CANVAS


Assessment Tasks

Task 1 Knowledge Tests
Task 2 Project 1
Task 3 Project 2


Assessment Matrix

Competency assessment map

Unit Code

ICTNWK546

Unit Title

Manage Network Security

Date Competency Assessment Map completed/revised

22-July-2021

Position of the person/s who mapped assessments to the unit

Program Coordinator

Approved by

Luke Eberbach

Description

This Competency Assessment Map is a key document for assessors and must be completed for all units delivered and assessed. This document confirms that that all aspects of the unit of competency and assessment requirements have been addressed. This document is part of your assessment tool and once completed, must be filed with the other assessment documents. 

 

National Qualification Title

Diploma of Information Technology 

National Qualification Code

ICT50220 

If unit assessed in cluster, list codes and titles of other cluster units

 

Elective unit or Core unit

Elective

 

Assessment task number and title

Use correct Assessment Title as per Templates. For Example, Knowledge, Product or Practical

Assessment One : Select Method/s

ü Knowledge Assessment

☐ Product Assessment

☐ Practical Assessment

Assessment Two: Select Method/s

☐ Knowledge Assessment

ü Product Assessment

☐ Practical Assessment

 

Assessment Three : Select Method/s

☐ Knowledge Assessment

ü Product Assessment

☐ Practical Assessment

 

Mapping Assessments to the Unit of Competency – Instructions

 

Element

Performance criteria

 

 

 

 

 

Assessment Task 1: Knowledge Assessment

Assessment Task 2: Project 1

Assessment Task 3: Project 2

 

1. Plan security design process

1.1 Define planning phase for network security design according to organisational requirements

Q4a

 

 

1.2 Define building phase for network security design according to organisational requirements

Q4b

 

 

1.3 Define managing phase for network security design according to organisational requirements

Q4c

 

 

 

 

2. Identify threats to network security

2.1 Determine major threat themes to network security

 

Section 2c

 

2.2 Determine the potential origin of major threats according to network security design specifications

 

Section 2d

 

2.3 Identify industry standard common network vulnerability types

Q5a, 5b

 

 

2.4 Design and document threat model according to network security design specifications

 

Section 3

 

3. Analyse security risks

3.1 Determine required elements of risk management according to network security design specifications

 

Section 1

 

3.2 Identify organisational assets requiring protection

 

Section 2a

 

3.3 Categorise and document assets and determine their value according to organisational requirements

 

Section 2a, b, e, f

 

3.4 Determine and document risk management plan according to organisational requirements

 

 

Section 2, Task 1

4. Create a security design

 

4.1 Determine attacker scenarios and threats according to network security design specifications

 

 

Section 1, Task 1

4.2 Design and document network components security measures

 

Section 3

Section 4 a

 

4.3 Develop and document security policies

 

 

Section 1, Task 2

4.4 Submit document to required personnel and seek and respond to feedback

 

Section 4 c

 

5. Design security incidents response

 

5.1 Design and document auditing and incidents response procedure

 

 

Section 2, Task 2

5.2 Submit to required personnel, seek and respond to feedback

 

 

Section 1: Task 3a + 3b

Foundation Skills – This section is only completed when foundation are explicitly stated in the unit of competency. In most Training Packages the foundation skills are integrated into the unit of competency and this is clearly stated.

Foundation skill

Description

Describe how each foundation skill is demonstrated through the relevant assessment

Numeracy

 

Calculates equipment costs in order to assess their business-related value

AT2: Calculate the value of a variety of IT equipment to an organisation.

Oral communication

Uses active listening, observational and questioning techniques in order to identify different perspectives and confirm and clarify knowledge

AT2: Students are required to run a series of tests created by another student. The student running the tests will be required to verbally report the outcomes and any modifications required to the student who originally created the test so the outcome can be documented

Writing

Uses factual information and industry related terminology to develop organisational plans, security policies and document security breaches

AT1:

Writing answers to knowledge questions

AT2:

Provide explanations on dealing with threats

Design security measures needed that can be applied to an existing network

Record the outcome of tests and identifying modifications required, if applicable.

AT3

Creating a Risk Management plan based on a scenario provided, writing clear information for staff in the event of a cybersecurity incident.

Write a security policy that is to be used for wireless connections when travelling for employees.

Creating an incident response plan which involves listing devices that require an audit, staff responsibilities, processes for alerting stakeholders and a review timeframe.

Problem solving

Identifies and applies complex principles, concepts, language and practices associated with the digital world and uses these to troubleshoot and reduce risks

AT2: Designing a series of tests to resolve a series of potential threats on a network

Running tests for another student and identifying what did and did not work in these tests to provide feedback to the original student.

AT3: Creating an incident response plan that can be used to identify any issues that exist within a network. This plan will then be passed onto another student so they can execute the plan to test and identify its robustness.

Uses digital tools to access and organise complex data and analyse multiple sources of information for strategic purposes

AT2, AT3: Students will be utilising a program called Packet Tracer which provides a simulated network for them to use. They will need to input a series of specific commands to read the outputs of different configurations so they can modify and rectify issues.

 

Performance Evidence 

 

Assessment Task 1: Knowledge Assessment

Assessment Task 2: Project 1

Assessment Task 3: Project 2

The candidate must demonstrate the ability to complete the tasks outlined in the elements, performance criteria and foundation skills of this unit, including evidence of the ability to:

  • evaluate security information and use it to plan control methods and countermeasures to manage prescribed network security requirements on at least one occasion.

 

 

  • Section 2, Tasks 3a, b

In the course of the above, the candidate must:

  • document plans, policies and processes.

 

 

  • Section 1, Task 3
  • Section 2, Task 1
  • Section 2, Task 2

 

 

Knowledge Evidence 

 

The candidate must be able to demonstrate knowledge to complete the tasks outlined in the elements, performance criteria and foundation skills of this unit, including knowledge of:

 

Assessment Task 1: Knowledge Assessment

Assessment Task 2: Project 1

Assessment Task 3: Project 2

industry standard ICT networks and their configuration

Standard Networks:

Q1, Q2

Configuration:

Q3

 

 

network attacks, vulnerabilities and related weaknesses of installed infrastructure, including:

  • security technologies
  • emerging security issues

Vulnerabilities:

Q5a, Q5b,

Weaknesses:

Q5c, Q5d,

Network Attacks:

Q5e, Q6

 

 

network security measures, including:

  • auditing and penetration testing techniques
  • logging analysis techniques
  • organisational network infrastructure
  • capabilities of software and hardware solutions
  • general features of emerging security policies, with depth in security procedures
  • network management and security process controls
  • Q7, Q8,
  • Q9,
  • Q10,
  • Q10, Q11
  • Q12, Q13,
  • Q14

 

 

network security implementation risk management plans and procedures, including:

  • network security planning
  • implementation
  • cost analysis and budgeting.
  • Q15
  • Q16
  • Q17

 

 

 

Assessment conditions

Describe how assessments meet the assessment conditions

Skills in this unit must be demonstrated in a workplace or simulated environment where the conditions are typical of those in a working environment in this industry.

This includes access to:

 

a site or prototype where network security may be implemented and managed

AT2 + AT3 Students will have access to network simulation software called Packet Tracer where they will be able to implement network security on different networks. The commands used in this environment replicate what they would be using on real equipment

network support tools currently used in industry

AT 2+3 will be utilising simulation software called Packet Tracer which will be used to provide students with the commands and procedures they need to successfully diagnose and implement network security

organisational security policies, manufacturer recommendations and security standards.

AT 3: Students will be provided with a security policy document containing information on password procedures. They will also be provided with the security standards based on manufacturer recommendations required on a network that they will need to ensure are met.

 

Other Information

Assessments

To be deemed competent students must demonstrate an understanding of all aspects required of this course and must achieve a satisfactory standard in each assessment. Assessment methods have been designed to measure student's competency in each course over multiple tasks.

Resubmissions

For each assessment submitted by the due date in this course students will be given feedback within 2 weeks of the assessment submission. If you do not submit your assessment by the due date or if your first attempt is not satisfactory you will be allowed a single resubmission attempt for each assessment in this course. You will be provided with a new due date by your teacher for your resubmission attempt if a resubmission is required.

Due dates

All assessment tasks will have a due date provided and published in Canvas. Assessments submitted after the due date will not be accepted unless an extension has been provided or special consideration has been granted.

Extensions

If you will not be able to meet the due date for an assessment you may apply to your teacher for an extension of up to seven days by completing the Application of Time to Submit Assessment Work Form at https://www.rmit.edu.au/content/dam/rmit/documents/Students/Student_forms/Application-for-extension-of-time-to-submit-work.pdf (Links to an external site.)  Applications for an extension of time must be received before the due date for an assessment.

Special Consideration

If unforeseen circumstances beyond your control prevent you from submitting your work on time you may be eligible to apply for special consideration. For further information regarding special consideration, please refer to the RMIT Special Consideration page at https://www.rmit.edu.au/students/student-essentials/assessment-and-results/special-consideration (Links to an external site.) 

 

Credit Transfer and/or Recognition of Prior Learning (RPL):
You may be eligible for credit towards courses in your program if you have already met the learning/competency outcomes through previous learning and/or industry experience. To be eligible for credit towards a course, you must demonstrate that you have already completed learning and/or gained industry experience that is:

  • Relevant
  • Current
  • Satisfies the learning/competency outcomes of the course

Please refer to http://www.rmit.edu.au/students/enrolment/credit to find more information about credit transfer and RPL.
 

Study and learning Support: 

Study and Learning Centre (SLC) provides free learning and academic development advice to you. 
Services offered by SLC to support your numeracy and literacy skills are: 

assignment writing, thesis writing and study skills advice 
maths and science developmental support and advice 
English language development 

Please Refer http://www.rmit.edu.au/studyandlearningcentre to find more information about Study and learning Support 

Equitable Learning Services (ELS):

If you are suffering from long-term medical condition or disability, you should contact Equitable Learning Services (ELS) to seek advice and support to complete your studies.
Please refer to https://www.rmit.edu.au/students/support-and-facilities/student-support/equitable-learning-services to find more information about services offered by Equitable Learning Services (ELS).


Plagiarism: 

Plagiarism is a form of cheating and it is very serious academic offence that may lead to expulsion from the University. 

Please Refer: www.rmit.edu.au/academicintegrity to find more information about plagiarism. 

Other Information: 

All email communications will be sent to your RMIT email address and you must regularly check your RMIT emails.

 

Course Overview: Access Course Overview