Release: 1. ICA60308 Advanced Diploma of Information Technology (E-Security)



Similar documents
ICA60208 Advanced Diploma of Information Technology (Network Security)

ICA60211 Advanced Diploma of Network Security

ICA60311 Advanced Diploma of Information Technology Business Analysis

Release: 1. ICA50705 Diploma of Information Technology (Software Development)

ICA30105 Certificate III in Information Technology

ICA50611 Diploma of Website Development

ICT60210 Advanced Diploma of Telecommunications Network Engineering

ICAB5238B Build a highly secure firewall

BSB41513 Project Management Practice

Revision Number: 1. BSB41507 Certificate IV in Project Management

ICASAS505A Review and update disaster recovery and contingency plans

BSB51312 Diploma of Work Health and Safety

BSB51407 Diploma of Project Management

TAE80312 Graduate Certificate in Digital Education

Release: 2. ICA70111 Graduate Certificate in Information Technology and Strategic Management

Release: 1. ICA40311 Certificate IV in Web-Based Technologies

Revision Number: 2. BSB51207 Diploma of Marketing

FNS40310 Certificate IV in Personal Injury Management (Claims Management)

Release: 1. ICAB5230B Maintain custom software

Release 1. ICAICT814A Develop cloud computing strategies for a business

Advanced Diploma of Integrated Risk Management FNS60811 Description

CPP50811 Diploma of Waste Management

FNS51511 Diploma of Credit Management

BSB50613 Diploma of Human Resources Management

Release: 3. TAE80210 Graduate Diploma of Management (Learning)

TAE80210 Vocational Graduate Diploma of Management (Learning)

Revision Number: 2. BSB50407 Diploma of Business Administration

ICANWK616A Manage security, privacy and compliance of cloud service deployment

Release 3. BSB50207 Diploma of Business

ICTTEN5204A Produce technical solutions from business specifications

TAE50211 Diploma of Training Design and Development

The Next Generation of Security Leaders

BSB41407 Certificate IV in Occupational Health and Safety

Release: 1. CUL40111 Certificate IV in Library, Information and Cultural Services

FNS50610 Diploma of Financial Planning

BSB40407 Certificate IV in Small Business Management

Release: 1. MEM80112 Graduate Diploma of Engineering

Qualification Outline

Release: 1. CUV50311 Diploma of Graphic Design

FNS41512 Certificate IV in Life Insurance

BSB41407 Certificate IV in Occupational Health and Safety

Cyber Security Consultancy Standard. Version 0.2 Crown Copyright 2015 All Rights Reserved. Page 1 of 13

ICAS4108B Complete database back-up and recovery

BSB60407 Advanced Diploma of Management

ICT Qualifications Mandatory Review

Diploma of Project Management BSB51415

XXX000YY Certificate IV in Government Security

TAE40110 Certificate IV in Training and Assessment Press Crtl + Click to go to link Table of Contents Employment opportunities...

BSBINM501A Manage an information or knowledge management system

SIS50610 Diploma of Sport Development

Qualification details

ICAS4134C Provide first-level remote help desk support

CPP50611 Diploma of Security and Risk Management

Information Technology Cluster

Release 1. BSBPMG415A Apply project risk-management techniques

Release: 1. BSBPMG503A Manage project time

Release: 1. CPP31111 Certificate III in Carpet Cleaning Operations

BSB30407 Certificate III in Business Administration

Revision Number: 1. SIT50207 Diploma of Events

ICANWK406A Install, configure and test network security

Release: 2. SIR30412 Certificate III in Business to Business Sales

University of Central Florida Class Specification Administrative and Professional. Information Security Officer

BSBCCO501B Develop business continuity strategy

Security Transcends Technology

Information Security Specialist Training on the Basis of ISO/IEC 27002

Release: 1. ICANWK607A Design and implement wireless network security

How To Be A Successful It Manager

TAE40110 Certificate IV in Training and Assessment

Approach to Information Security Architecture. Kaapro Kanto Chief Architect, Security and Privacy TeliaSonera

ICP30112 Certificate III in Printing and Graphic Arts (Graphic Design Production)

LGAGOVA610B Implement computerised asset management systems

SIS50612 Diploma of Sport Development

JOB DESCRIPTION CONTRACTUAL POSITION

Transcription:

Release: 1 ICA60308 Advanced Diploma of Information Technology (E-Security)

ICA60308 Advanced Diploma of Information Technology (E-Security) Modification History Not Applicable Approved Page 2 of 8

Description Description This qualification provides the skills and knowledge for an individual to manage complex and high-level ICT security systems and components. The qualification has a robust ICT technical base with appropriate security units aligned to the Certified Information Systems Security Professional (CISSP) and the IT Security Essential Body of Knowledge (EBK). CISSP is an independent information security certification governed by the International Information Systems Security Certification Consortium (ISC). EKB is a Competency and Functional Framework for IT Security Workforce Development. The EBK characterises the IT security workforce and provides a national baseline representing the essential knowledge and skills that IT security practitioners should have to perform specific roles and responsibilities. The US Department of Homeland Security's (DHS), National Cyber Security Division worked with subject matter experts from government, the private sector, and academia to develop an umbrella framework that establishes a national baseline representing the essential knowledge and skills IT security practitioners must have to perform their jobs. The IT Security EBK builds directly on established work and is not intended to represent a standard, directive, or policy by DHS. Instead, it further clarifies key IT security terms and concepts for well-defined competencies, identifies notional security roles, and defines primary functional perspectives to help advance the IT security training and certification landscape as we strive to ensure that we have the most qualified and appropriately trained IT security workforce possible. In previous versions of the ICA05 Training Package, the security of networks and systems was a priority and a number of units in the areas of risk management, websites and privacy were developed. These have been included in Advanced Diploma core along with several more traditional Property Services security units. A number of server, network and interface electives are offered to allow a further level of specialisation as required. The facility for selecting electives from ICA05 and other Training Packages enables other ICT oriented skill areas (e.g. programming or database development) or broader business units to be included. New units relating to e-security have been added at AQF level 4 that complement and extend security as a more holistic approach throughout the 'systems life cycle'. A new unit, ICAS6254A Manage IT security, has been added to the core units at the AQF level 6 to provide a holistic approach to management of e-security. Consideration should be given to selecting these units as electives where they are relevant to workplace roles. This qualification also provides a logical next step as a capstone qualification for ICT Diploma graduates particularly those that have progressed through the networking stream and AQF 3 to AQF 5 pathway. This qualification is particularly relevant to those that have developed technical specialisations in networking but an emphasis on the E-security units at the Diploma level. It is also possible to transition from other Diploma qualifications (e.g. Software Development or Systems Analysis and Design or Website development or General) if an appropriate selection of electives have been chosen especially with a focus on the E-security units. Pathway An appropriate pathway for this qualification is from the ICA50408 Diploma of Information Technology (Networking) Job Roles Approved Page 3 of 8

Possible job titles include: Database Security Expert E-risk Manager E-security Specialist ICT Security Consultants ICT Security Specialist Information Risk Manager (IRM) Internal Computer Audit Specialist IT Security Analyst/Engineer IT Security Specialist Lead Security Analyst Security Engineer Senior Software Engineer (Security) Systems Security Analyst Web Security Administrator Pathways Information Not Applicable Licensing/Regulatory Information Not Applicable Entry Requirements Not Applicable Approved Page 4 of 8

Employability Skills Summary Employability skills summary ICA60308 Advanced Diploma of Information Technology (E-security) The following table contains a summary of the employability skills required for a Security Consultant. The employability skills facets described here are broad industry requirements that may vary depending on qualification packaging options. Employability skill Industry requirements for this qualification include: Communication articulating complex security scenarios in a clear, concise manner relevant to all levels of the organisation documenting information related to attacks, threats, risks and controls in a security plan using report writing skills for business requiring depth in some areas, and analysis and evaluation of information in a defined range of areas, for example when documenting recommendations for improvement and referring them to appropriate technical specialists Teamwork managing group facilitation and presentation skills in relation to transferring and collecting information, for example when senior management and auditor approval is obtained for the design of the controls reviewing the security strategy with security approved key stakeholders Problem Solving developing controls and contingencies to alleviate security threats taking corrective action on system implementation breakdowns using problem-solving skills for an evolving complex scenario of security threats Initiative and Enterprise developing new criteria, applications, knowledge and procedures generating ideas at an abstract level through the analysis of information and concepts identifying and applying skill and knowledge areas to a wide variety of contexts, with depth in some areas Planning and Organising developing security plans planning for controls and contingencies when designing an IT security framework Self-management having accountability and responsibility for self and others in achieving workplace outcomes taking responsibility for own outputs in relation to broad quantity and quality parameters Approved Page 5 of 8

Employability skill Industry requirements for this qualification include: Learning having knowledge of current industry accepted hardware and software products, including broad knowledge of security features and capabilities Technology identifying technology needs, sourcing, purchasing, installing, configuring and testing components including software and hardware using technological capability assessment skills involving analysis, diagnosis and evaluation, for example when evaluating various products against architecture requirements to determine the best IT solution, and for estimating current and future capacity requirements and evaluating against client's future requirements Packaging Rules Qualification structure To attain the ICA60308 Advanced Diploma of Information Technology (E-security) 17 units must be achieved: 12 core units; plus 5 elective units Achieve 12 Core Units Core ICAA5056B Prepare disaster recovery and contingency plans ICAA6052B Design an IT security framework ICAA6053B Design system security and controls ICAB5159C Build a security shield for a network ICAB5237B Build a high performance security perimeter ICAB5238B Build a highly secure firewall ICAI5152B Implement risk management processes ICAI5252A Develop, implement and evaluate an incident response plan ICAI5250A Develop, implement and evaluate system and application security ICAS5192B Configure an internet gateway ICAS6254A Manage IT security PSPPM601B Direct complex project activities Achieve 3 elective units chosen from the ICA60308 electives list below which have not previously counted in a Diploma qualification Electives ICAA5044C Develop system infrastructure design plan ICAD5092C Update and document operational procedures ICAI5098C Install and manage complex networks ICAI5100C Build an internet infrastructure ICAI5176C Install and configure router Approved Page 6 of 8

ICAI5196C Implement secure encryption technologies ICAI5197C Install and maintain valid authentication processes ICAI5253A Implement and evaluate systems for regulatory and standards compliance ICAI6187B Implement change management processes ICTTC168A Design and implement an enterprise VoIP&Unified Communications PRSSM504A Prepare security risk management plan PRSTS301A Identify technical security requirements Achieve 2 elective units chosen from the following sources, which have not previously counted in a Diploma qualification (listed in recommended order) ICA60308 electives list; and/or ICA05 Information and Communications Technology Training Package or BSB07 Business Services Training Package at Diploma or Advanced Diploma; and/or any other Training Package at Advanced Diploma (to a maximum of 2 units) based on documented industry or enterprise needs Prerequisite Requirements Prerequisites Requirements Prerequisite arrangements for any elective units should be checked with the originating Training Package. A number of the core units within this qualification have prerequisites. These are detailed as follows: Code and title Prerequisite units ICAA6052B Design an IT security framework ICAA4041C Determine and confirm client business expectations and needs ICAB5159C Build a security shield for a network ICAS5192B # Configure an internet gateway ICAI5252A Develop, implement and evaluate an incident response plan ICAP4037B Contribute to the development of a strategy plan # ICAI5152B Implement risk management processes ICAI5250A Develop, implement and evaluate system and application security ICAB4225C Automate processes ICAS5192B Configure an internet gateway ICAI4097B Install and configure a network # ICAS6254A Manage IT security ICAI4249A Implement and evaluate data security # ICAI4251A Implement and evaluate network and telecommunication security # Approved Page 7 of 8

Code and title Prerequisite units ICAI5250A Develop, implement and evaluate system and application security # ICAI5252A Develop, implement and evaluate an incident response plan # Approved Page 8 of 8