Credits
7.5 ECTS
Semester
2 Semester
Delivery
Online
Duration
13 weeks
Language
About This Course
Information Security Management equips students to manage cyber risk and protect organisational assets. Using recognised ISO and NIST frameworks, students learn to assess threats and vulnerabilities, prioritise risks, select security controls, develop policies and strengthen cybersecurity culture. The course also covers contingency planning, data protection and professional development.
What You Will Learn
Your 13-Week Journey
Week 1 – Introduction to Information Security Management
Explore core security principles, governance, data breaches and the CIA triad.
Week 3 – Risk Assessment Based on NIST SP 800-30
Identify threats, vulnerabilities, likelihood, impact and overall risk.
Week 5 – Risk Assessment Based on ISO/IEC 27005
Assess organisational assets, threats, vulnerabilities and risk levels.
Week 7 – Risk Identification: Vulnerability Assessment
Identify and prioritise vulnerabilities using CVE, CWE, CVSS and OWASP.
Week 9 – Risk Treatment
Compare treatment options and select appropriate security controls.
Week 11 – Security Policies
Develop effective organisational security policies, standards and procedures.
Week 13 – Data Protection
Apply GDPR principles and conduct data protection impact assessments.
