Program Modules
Semester 1: Security Foundations
Learning Outcomes: Understand security principles, threat landscape, security governance, and risk concepts.
Modules:
- Introduction to Cybersecurity - Evolution, trends, domains, careers
- CIA Triad - Confidentiality, Integrity, Availability
- Security Principles - Least Privilege, Separation of Duties, Defense in Depth, Zero Trust
- Security Threats - Malware, Ransomware, APTs, Insider threats
- Risk Management Basics - Assessment, treatment, risk register
Labs: Security awareness exercises, Threat identification workshops, Risk assessment case studies
Modules:
- Networking Fundamentals - OSI Model, TCP/IP, Ports and Protocols
- Network Infrastructure - Switches, Routers, Wireless networks
- Secure Network Design - DMZ, Segmentation, VLANs
- Network Attacks - ARP Spoofing, DNS Poisoning, DoS/DDoS
- Network Protection - Firewalls, IDS, IPS, NAC
Labs: Wireshark analysis, Network scanning, Firewall configuration, VLAN implementation
Modules:
- Windows Security - Active Directory, Group Policy, Windows Hardening
- Linux Security - File permissions, SELinux, Linux hardening
- Endpoint Security - Antivirus, EDR, Patch Management
Labs: Windows Server Security, Linux Hardening, Active Directory Security
Semester 2: Defensive Security
Modules:
- SOC Fundamentals - Architecture, Roles
- Log Management - Syslog, Windows Events
- SIEM Technologies - Architecture, Use Cases, Correlation Rules
- Threat Monitoring - IOC Analysis, Alert Investigation
Labs: SIEM deployment, Log analysis, Threat hunting
Modules:
- Incident Response Lifecycle - Preparation, Detection, Containment, Eradication, Recovery
- Digital Forensics - Evidence Collection, Chain of Custody, Disk Forensics, Memory Forensics
- Malware Investigation - Static Analysis, Dynamic Analysis
Labs: Incident handling scenarios, Evidence acquisition, Memory analysis
Modules:
- Vulnerability Concepts - CVE, CVSS, CWE
- Vulnerability Scanning - Network scanning, Web scanning
- Risk Prioritization - Vulnerability scoring, Remediation planning
Labs: Vulnerability scanning, Risk analysis, Reporting
Semester 3: Offensive Security
Modules:
- Penetration Testing Methodology - Reconnaissance, Enumeration, Exploitation, Post Exploitation
- Web Application Testing - Authentication flaws, Session management, Access control
- Wireless Security Testing - Wi-Fi attacks, WPA security
- Reporting - Executive report, Technical report
Labs: Ethical hacking labs, Penetration testing exercises, Capture The Flag (CTF)
Modules:
- Secure Web Technologies - HTTP/HTTPS, Sessions, Cookies
- OWASP Top 10 - Broken Access Control, Cryptographic Failures, Injection, Insecure Design, Security Misconfiguration, Vulnerable Components, Authentication Failures, Integrity Failures, Logging Failures, SSRF
- Secure Coding - Input validation, Output encoding, Authentication controls
Labs: Web vulnerabilities, Secure coding exercises, Web security testing
Modules:
- Cloud Fundamentals - IaaS, PaaS, SaaS
- Cloud Security Architecture - Shared Responsibility Model, Cloud Identity
- Cloud Security Controls - Encryption, Logging, Monitoring
- Multi-Cloud Security - AWS Security, Azure Security, Google Cloud Security
Labs: Cloud IAM, Cloud monitoring, Security policies
Semester 4: Governance and Advanced Security
Modules:
- Information Security Governance - Policies, Standards, Procedures
- ISO 27001 - ISMS, Controls, Audits
- Risk Management - Risk Frameworks, Risk Treatment
- Compliance - GDPR, PCI DSS, Regulatory Requirements
Labs: Policy writing, Risk assessments, ISO implementation
Modules:
- Human-Centric Security - Security culture, Human behavior
- Social Engineering - Phishing, Vishing, Smishing
- Awareness Program Development - Training plans, Awareness campaigns
Labs: Awareness simulations, Phishing campaigns, Security presentations
Modules:
- Artificial Intelligence Security - AI threats, AI defenses
- IoT Security - Device security, IoT attacks
- Blockchain Security - Smart contract risks
- Zero Trust Architecture - Identity-first security, Continuous verification
Labs: AI security exercises, IoT testing, Zero Trust implementation
Capstone Graduation Project (60 Hours)
Students must complete a real-world cybersecurity project such as:
- Enterprise Security Assessment
- SOC Design and Implementation
- Vulnerability Management Program
- Cloud Security Architecture
- ISO 27001 Implementation Plan
- Security Operations Dashboard
- Cybersecurity Awareness Program
Deliverables::
- Project Proposal
- Technical Documentation
- Risk Assessment
- Security Controls Mapping
- Final Presentation
- Viva Examination