Course - Security and robustness in ICT systems - TTM4185
TTM4185 - Security and robustness in ICT systems
About
New from the academic year 2015/2016
Examination arrangement
Examination arrangement: Portfolio assessment
Grade: Letters
Evaluation | Weighting | Duration | Grade deviation | Examination aids |
---|---|---|---|---|
Skriftlig eksamen | 70/100 | 4 timer | ||
Arbeider | 10/100 | |||
Arbeider | 10/100 | |||
Arbeider | 5/100 | |||
Arbeider | 5/100 |
Course content
The course will focus on information and communication networks as critical infrastructure, where the central functions (basics, operations, maintenance of quality of service), and the properties of autonomy and heterogeneity are described.
The course demonstrates how communication networks are integrated with other systems, such as Content Delivery Networks, P2P, Virtual Networks, Clouds, Emergency (wireless) networks, sensor networks, business critical systems, Smart Grids, and discusses what can happened when attacked or prune to outages. A descriptive taxonomy is introduced, which includes Information security, privacy, safety, dependability, survivability, performances portability, and a classification of threats. Threats include both human-made (both intentional, incompetence, ignorance, accident) and random failure (environments / nature, weather, wear-out).
Several countermeasures exists, and this course covers technological (security mechanisms, fault avoidance and fault tolerant design, measurement / monitoring, standards), organizational (contingency, preparedness, importance of role specification, communication between operational units), and political, including laws and regulations (e-Governance). The course focus on the qualitative aspects, and will provide brief introduction to methods such as risk management and the application of graph theory.
Learning outcome
A. Knowledge: to gain basic understanding of
- How information and communication networks support and interact with others socially critical system
- the criticality, complexity and diversity (technological, organizational, interacting actors) of information systems and communications networks
- approaches to represent information and communication networks for the evaluation of the best possible design
- Different taxonomy for describing security and robustness properties, threats, and countermeasures
- The broad set of threat through presentations of various risks (ranging from human to random, malicious people unfortunate combination of random events)
- Various countermeasures for securing information systems and communication networks against such threats (including technological, organizational, regulations and laws, economic, political)
- That it is a compromise between the demands for quality and safety (security, reliability, performance), cost (OPEX / CAPEX), environment (energy efficiency),
- The use of contracts and agreements (e.g., Terms of Service, Service Level Agreements, privacy policies, etc.) to describe this
B. Skill:
- To learn methodical approach to analysis of risks / threats
- To be able to carry out basic risk assessments
- To be able to use graphs to represent the complexity and qualitative analysis of the impact of threats
- To know and get practical experience with key countermeasures against various threats (e.g., "intrusion detection", "QoS routing", "reliable middleware")
Learning methods and activities
Learning through lectures and practical exercises. Portfolio assessment is the basis for the grade in the course. The portfolio includes four exercises (two pieces of 10 % work and two pieces of 5 % work), and a written final exam which counts 70%. The results for the parts are given in %-scores. The entire portfolio is assigned a letter grade. If there is a re-sit examination, the examination form may be changed from written to oral.
Recommended previous knowledge
TTM4175 - Communication Technology, introduction or TDT4105 - Information Technology, Introduction.
Course materials
To be decided at the beginning of the semester.
Version: 1
Credits:
7.5 SP
Study level: Intermediate course, level II
Term no.: 1
Teaching semester: SPRING 2016
Language of instruction: Norwegian
-
- Telematics
Department with academic responsibility
Department of Information Security and Communication Technology
Examination
Examination arrangement: Portfolio assessment
- Term Status code Evaluation Weighting Examination aids Date Time Examination system Room *
- Spring ORD Arbeider 5/100
-
Room Building Number of candidates - Spring ORD Arbeider 5/100
-
Room Building Number of candidates - Spring ORD Arbeider 10/100
-
Room Building Number of candidates - Spring ORD Arbeider 10/100
-
Room Building Number of candidates - Spring ORD Skriftlig eksamen 70/100 2016-05-27 09:00
-
Room Building Number of candidates - Summer KONT Arbeider 5/100
-
Room Building Number of candidates - Summer KONT Arbeider 5/100
-
Room Building Number of candidates - Summer KONT Arbeider 10/100
-
Room Building Number of candidates - Summer KONT Arbeider 10/100
-
Room Building Number of candidates - Summer KONT Muntlig eksamen 70/100 2016-08-08
-
Room Building Number of candidates
- * The location (room) for a written examination is published 3 days before examination date. If more than one room is listed, you will find your room at Studentweb.
For more information regarding registration for examination and examination procedures, see "Innsida - Exams"