ISA 562 Information Security Theory & Practice

Fall 2007

Check this page frequently for updated course materials!!!


Schedule of Classes (Subject to Change)

Date

Topics

Reading Assignment

Homework Assignment

Supplemental Material

08/27/07

Introduction to Course &
Information Security Management

Read Chapter 1

 

·          NIST Publication

·          Security Policy

09/03/07

Labor Day

 

 

 

09/10/07

Access Control -1

(access control matrix)

Read Bishop Chapter 2

HW#1

 

09/17/07

Access Control -2

(foundational results)

 

 

 

9/24/07

Cryptography

 

HW#2
Due: 10/22/07

·          Why Cryptography Is Harder Than It Looks

·          Classical Cryptography

·          Des Animation

·        Rijndael Cipher Animation

10/01/07

Access Control -3

(access control policies)

 

 

 

10/09/07
Tues

Access Control-4

(MLS Systems)

 

HW#3
Due: 10/29/07

 

10/15/07

Access Control-5

(Biba and BLP)

 

 

 

10/22/07

Mid term

Closed Book Exam

 

 

10/29/07

Access Control-6

(RBAC)

 

HW#4
Due: 11/19/07

·        Role-Based Access Control Models

·          Proposed NIST Standard for Role-Based Access Control

 

11/5/07

Network Security: SSL and TLS

Read Bishop Chapter 11

 

 

11/12/07

Certificate, Usage and their misuse

 

HW#5
Due: 12/03/07

  •   The problem with multiple roots in Web browsers-certificate masquerading" by Hayes, J.M. Proceedings Seventh IEEE International Workshops on Enabling Technologies: Infrastructure for Collaborative Enterprises, IEEE 1998. (WET ICE '98) 17-19 June 1998 Page(s): 306 -311

  • Restricting access with certificate attributes in multiple root environments - a recipe for certificate masquerading" by Hayes, J.M. Proc. 15th Annual Computer Security Applications Conference, IEEE, 2001, Page(s): 386-390.
     

 

11/19/07

Security Architecture and evaluation

Read Chapter 5

 

 

11/26/07

Physical security

Business Continuity & Disaster Recovery planning

Read chapter 4, chapter 6

 

 

12/03/07

Application Security

 Operational Security

          Legal, Regulations, Compliance, and investigations

 

Read Chapter 8, 9, 10

 

 

12/10/07

Final

 Closed Book Exam