Management of Information Security, 4th Edition Syllabus
1
Management of Information Security
Fourth Edition
Term, Year
General Course Information
Instructor:
Office:
Office Hours:
Phone:
Mail:
E-mail:
Web site:
Classroom:
Class Times:
Prerequisites:
Textbook: Michael E. Whitman, Herbert J. Mattord, Management of Information Security, Fourth Edition.
Course Technology, Cengage Learning, 2014, ISBN-13: 978-1-285-06229-7.
Course Objectives
This course focuses on the managerial aspects of information security and assurance. Topics covered include access
Specific topic coverage includes:
Introduction to the Management of
Security Management Practices
Management of Information Security, 4th Edition Syllabus
2
Web Site
Supplementary information for the course is available at [URL]. The Web site contains class notes, PowerPoint
slides, class announcements, the course syllabus, test dates, and other information for the course.
E-Mail
All students are requested to obtain an e-mail account. If you have any questions about the course or need assistance,
Grading and Evaluation Criteria
40% of the grade is based on a midterm and a final examination. Both examinations are cumulative and given in a
varied format. An in-class review will be held prior to each examination.
Management of Information Security, 4th Edition Syllabus
3
14-Week Course Outline
Week
Topics
Chapter
Readings
Exams
1
Introduction to the Management of Information Security
Chapter 1
2
Planning for Security
Chapter 2
3
Planning for Contingencies
Chapter 3
4
Information Security Policy
Chapter 4
5
Developing the Security Program
Chapter 5
6
Chapter 6
7
Review
8
Security Management Practices
Chapter 7
9
Risk Management: Identifying and Assessing Risk
Chapter 8
Risk Management: Controlling Risk
Chapter 9
Protection Mechanisms
Personnel and Security
Law and Ethics
Review
Management of Information Security, 4th Edition Syllabus
4
10-Week Course Outline
Week
Topics
Chapter
Readings
Exams
1
Introduction to the Management of Information Security
Chapter 1
2
Planning for Security
Planning for Contingencies
Chapter 2
Chapter 3
3
Information Security Policy
Chapter 4
4
Developing the Security Program
Chapter 5
5
Security Management Models
Chapter 6
6
Security Management Practices
Chapter 7
Risk Management: Controlling Risk
Chapter 9
8
Protection Mechanisms
9
Personnel and Security
Law and Ethics