INFT2001

Information Security

Autumn

Trondheim

Norwegian

Overview

35 candidates

Average grade

C

3.29

0.47

Pass rate

100%

6 points

Grade distribution
Average over time
Pass rate over time

About this course

Content

Cybersecurity terminology and history, legal and ethical issues in cybersecurity, vulnerability in digital infrastructures, identities, authentication and authorization, human aspects of cybersecurity, basic threat profiling, future visions for a more secure digital society. Information security management systems (ISMS), frameworks for security work, standards 27001 and 27002, risk analyzes, security policy, security culture and evaluation.

Learning outcomes

Knowledge:

the candidate can:

  • explain the application of the standards ISO 27001 and ISO 27002 with emphasis on both connections and differences between them
  • explain a step-by-step plan for the introduction of an information security management system and account for critical success factors in each of the phases
  • explain the importance of information security for the company's finances and reputation
  • give an account of the most commonly used concepts in cybersecurity as well as the subject's most important historical development
  • explain how vulnerabilities in digital infrastructures can arise and how the most common vulnerabilities can be counteracted.

Skills:

the candidate can:

  • make an assessment of strategy and measures for anchoring the safety work, based on a prior analysis of the situation in a specific company
  • carry out a risk analysis for a specific company based on a standard procedure and prioritize and implement relevant measures to reduce the risk value for identified threats
  • propose a strategy to involve both the company's own employees and any external expertise in the change processes related to the introduction of an ISMScarry out basic threat profiling and risk analysis
  • use tools to protect identities from common security attacks

General competence:

the candidate can:

  • account for society's vulnerability as a consequence of cybersecurity challenges
  • can search for and apply relevant subject matter to shed light on a given problem
  • convey subject matter both in writing and orally

Teaching methods

Lessons with accompanying presentations are posted weekly during the semester.

Exercises are carried out in groups throughout the semester.