1 / 38100%
CIS462
Preview: CIS462 : Security Strategy and Policy
Course Guide
Prerequisites
Course Description
Instructional Materials
CIS333
The course presents a discussion on security policies created to protect and maintain a computing
network, such as password policy, e-mail policy and Internet policy. Students are presented with a
comprehensive view of information security policies, frameworks and issues related to
organizational behavior and crisis management. Topics also include governance, regulation,
mandates, business drivers and legal considerations when implementing security policies and
frameworks.
Required Resources
Robert Johnson. 2015. . CIS462 Jones & Bartlett 3rd Security Policies and Implementation Issues
edition textbook available at https://www.strayerbookstore.com
Dan Goodin. 2010. SCADA Worm a 'Nation State Search-and-Destroy Weapon' .
https://www.theregister.com/2010/09/22/stuxnet_worm_weapon/
Supplemental Resources
2020 Strayer University. All Rights Reserved. This document contains Strayer University and Proprietary Confidential
information and may not be copied, further distributed, or otherwise disclosed in whole or in part, the without expressed
written permission of Strayer University.
Course Learning Outcomes
Weekly Course Schedule
Week 1 - To Do List
Computer Security Resource Center. 2016. . FISMA Implementation Project
https://csrc.nist.gov/projects/risk-management
MITRE. No date. . https://www.mitre.org/capabilities/cybersecurity/overview? Cybersecurity
category=all
CVE. No date. CVE - Common Vulnerabilities and Exposures (CVE) . http://cve.mitre.org/
NIST. No date. . https://csrc.nist.gov/ NIST Computer Security Resource Center | CSRC
Cybersecurity & Infrastructure Security Agency. No date. . https://us- Homepage | CISA
cert.cisa.gov/
Assess the effectiveness, implementation. and enforcement of an
acceptable use policy (AUP).
1
Propose an IT security policy based on an industry-standard framework.
2
Assess the effectiveness of policies and mitigation techniques in protecting
the nation's critical infrastructure.
3
Develop methods for establishing component priorities and determining
component reliance and dependencies for a business impact analysis.
4
Create a disaster recovery plan for an organization.
Students also viewed