TTM4185 - Security and robustness in ICT systems

About

Examination arrangement

Examination arrangement: Portfolio assessment
Grade: Letters

Evaluation form Weighting Duration Examination aids Grade deviation
Work 5/100
Work 5/100
Work 10/100
Work 10/100
Written examination 70/100 4 hours D

Course content

The course will focus on information and communication networks as critical infrastructure, where the central functions (basics, operations, maintenance of quality of service), and the properties of autonomy and heterogeneity are described.
The course demonstrates how communication networks are integrated with other systems, such as Content Delivery Networks, P2P, Virtual Networks, Clouds, Emergency (wireless) networks, sensor networks, business critical systems, Smart Grids, and discusses what can happened when attacked or prune to outages. A descriptive taxonomy is introduced, which includes Information security, privacy, safety, dependability, survivability, performances portability, and a classification of threats. Threats include both human-made (both intentional, incompetence, ignorance, accident) and random failure (environments / nature, weather, wear-out).
Several countermeasures exists, and this course covers technological (security mechanisms, fault avoidance and fault tolerant design, measurement / monitoring, standards), organizational (contingency, preparedness, importance of role specification, communication between operational units), and political, including laws and regulations (e-Governance). The course focus on the qualitative aspects, and will provide brief introduction to methods such as risk management and the application of graph theory.

Learning outcome

A. Knowledge:
To gain basic understanding of:
- How information and communication networks support and interact with others socially critical system
- the criticality, complexity and diversity (technological, organizational, interacting actors) of information systems and communications networks
- approaches to represent information and communication networks for the evaluation of the best possible design
- Different taxonomy for describing security and robustness properties, threats, and countermeasures
- The broad set of threat through presentations of various risks (ranging from human to random, malicious people unfortunate combination of random events)
- Various countermeasures for securing information systems and communication networks against such threats (including technological, organizational, regulations and laws, economic, political)
- That it is a compromise between the demands for quality and safety (security, reliability, performance), cost (OPEX / CAPEX), environment (energy efficiency),
- The use of contracts and agreements (e.g., Terms of Service, Service Level Agreements, privacy policies, etc.) to describe this

B. Skills:
- To learn methodical approach to analysis of risks / threats
- To be able to carry out basic risk assessments
- To be able to use graphs to represent the complexity and qualitative analysis of the impact of threats
- To be able to identify and prioritize appropriate countermeasures to mitigate threats

Learning methods and activities

Learning through lectures and practical exercises.

Further on evaluation

Portfolio assessment is the basis for the grade in the course. The portfolio includes four exercises (two pieces of 10 % work and two pieces of 5 % work), and a written final exam which counts 70%. The results for the parts are given in %-scores. The entire portfolio is assigned a letter grade.
If there is a re-sit examination, the examination form may be changed from written to oral.
If a student also after the re-sit exam has the final grade F/failed, the student must repeat the entire course. Works that count in the final grade must be repeated.

Course materials

To be decided at the beginning of the semester.

Timetable

Detailed timetable

Examination

Examination arrangement: Portfolio assessment

Term Statuskode Evaluation form Weighting Examination aids Date Time Room *
Autumn ORD Work 5/100

Release
2017-09-08

Submission
2017-09-20

Autumn ORD Work 5/100

Release
2017-09-22

Submission
2017-10-04

Autumn ORD Work 10/100

Release
2017-10-13

Submission
2017-10-25

Autumn ORD Work 10/100

Release
2017-11-03

Submission
2017-11-15

Autumn ORD Written examination 70/100 D 2017-12-08 09:00
  • * The location (room) for a written examination is published 3 days before examination date.
If more than one room is listed, you will find your room at Studentweb.