ISMN 5670/6670/6676 – Information Security and Assurance

Summer Semester 2010

ADMINISTRATIVE INFORMATION

 

Instructor: Dr. Casey G. Cegielski, Ph.D

 

Email: cegieca@auburn.edu

 

Class URL: www.business.auburn.edu/~cegieca/5670

 

 

Telephone: 334.844.6542

 

Office: 421 Lowder Business Building

 

Office Hours:  T/Th - 11:15 am – 12:15 pm

                    

 

REQUIRED COURSE MATERIALS

 

Auburn University Email Account

 


COURSE DESCRIPTION


MGMT 5760/6760 is an INTENSIVE inspection of the current practices related to information security and assurance.

 


MAJOR COURSE OBJECTIVES

 

The purpose of this course is to allow students to:

 

  • Gain an understanding of the purpose and role of information security and assurance in today’s complex business environment
  • Digest current methodologies employed in the field of IS/IA
  • Prepare for the practice of IS/IA

 


TEACHING METHOD


This is a lecture-based course. The student is expected to have read assigned materials as listed on the course schedule prior to each class. The class discussions/lectures are intended to emphasize the primary concepts from each chapter and to provide an opportunity to answer any questions that may result from the readings. Because of the intensive nature of this class, it is essential that each student allocate adequate time to prepare for every class session.

 


STANDARDS OF HONESTY


ALL PORTIONS OF THE AUBURN UNIVERSITY HONESTY CODE (TITLE X11) FOUND IN THE TIGER CUB WILL APPLY TO THIS CLASS. 

 


CLASS ATTENDANCE


Based on several years spent observing student performance and class attendance, your professor concludes that people who skip class tend to receive very low grades. The choice is yours.

 


SPECIAL ACCOMMODATIONS FOR STUDENTS WITH DISABILITIES


Students who need special accommodations should make an appointment to discuss the Accommodations Memo with me during my office hours as soon as possible. If scheduled office hours conflict with classes, please arrange an alternate appointment time. If you do not have an Accommodations Memo but need special accommodations, contact The Program for Students with Disabilities, 1244 Haley Center, 334-844-5943 (Voice T/O).

 

 

GRADING

 

Item

Points Allocated

% Final Grade

Scale

Points

Written Exam I

300

30%

A

>895

Written Exam II

300

30%

B

>795

Final Exam

400

40%

C

>695

 

 

 

D

>595

Total Points

1000

100%

F

<595

 

Additionally, graduate students enrolled in this section must  complete a research project and make for successful completion of the course.

 

 

GRADUATE PROJECT

 

Identify and examine a business and interview the ranking security office and document the IT compliance and IT Audit policies practiced by said organization in a 10 page expose’.  Pay particular attention to the relation of the organization’s policy with the security triad discussed in class.

 

 

EXAMS

 

The format of each written exam will be multiple choice questions. The exact question number may vary from exam to exam. In any exam question, conceptual as well as applied material may be covered. For all exams, students will be provided with the question breakdown no later than the class period prior to the exam date.

 

Students missing an exam due to a PRE-ARRANGED Auburn University approved excused absence will be allowed to arrange a make exam with the instructors. Please refer to the Tiger Cub for an explanation of Auburn University approved excuses.

 

 

COURSE SCHEDULE

 

Date

Lecture Topic

Lecture Guide

28

Course Introduction

 

29

InfoSec & Risk Mngt Introduction

Lecture Topic 1

30

InfoSec & Risk Mngt Introduction

 

1

Access Control

Lecture Topic 2

2

Access Control

 

6

Access Control

 

7

Cryptography

Lecture Topic 3

8

Cryptography

 

9

Exam #1

         

12

Business Continuity & Disaster Recovery

Lecture Topic 6

13

Business Continuity & Disaster Recovery

 

14

Business Continuity & Disaster Recovery

 

15

Physical Security

Lecture Topic 4

16

Physical Security

 

19

App Security

Lecture Topic 7

20

App Security

 

21

Exam #2

 

22

Security Arch & Design

Lecture Topic 5

23

Security Arch & Design

 

26

Legal, Regulatory, Compliance

Lecture Topic 9

27

Legal, Regulatory, Compliance

 

28

Operational Security

Lecture Topic 8

29

Operational Security

 

30

TBA

 

4

Final Exam #3