MIS 7381 Syllabus_Spring 2016_Cooper.doc 1 02/08/16 2:44 PM



Similar documents
1. COURSE DESCRIPTION

Accounting : Accounting Information Systems and Controls. Fall 2015 COLLEGE OF BUSINESS AND INNOVATION

CS4320 Computer and Network Security. Fall 2015 Syllabus

Course title: Management Information Systems Fall 2010 Course number: CRN: Location: Meeting day: Meeting time:

Systems and Internet Marketing Syllabus Spring 2011 Department of Management, Marketing and International Business

Syracuse University School of Information Studies. IST553 - Information Architecture for Internet Services. Tentative Syllabus - Spring 2015

EMM 210 FIELD STUDY IN EMERGENCY MANAGEMENT

FLORIDA INTERNATIONAL UNIVERSITY

PSY 6361 Teaching of Psychology Online Course Spring nd Eight Weeks

CMJ CRIME SCENE INVESTIGATION Spring Syllabus 2015

Financial Statement Analysis University of Texas at Austin ACC 327 Spring 2009 J. William Kamas

Summer Credit Hours

IST359 - INTRODUCTION TO DATABASE MANAGEMENT SYSTEMS

BCIS Business Computer Applications - Online

Management 352: Human Resource Management Spring 2015 Syllabus

BCIS Business Computer Applications D10

CJ Introduction to Criminal Justice COURSE SYLLABUS: Spring 2013

Professor Mr. Scott Rando FINA Spring University of Houston C.T. Bauer College of Business

PSY 3329 Educational Psychology Online Course Spring Week Course

ECON 351: Microeconomics for Business

ASU College of Education Teacher Education Department SPED 3360: Management Issues with Individuals with Disabilities Course Syllabus Spring, 2016

John Fenoglio Gary Husmann FINA 7397 Spring 2016

Systems and Internet Marketing Syllabus Fall 2012 Department of Management, Marketing and International Business

The University of Texas at Austin McCombs School of Business Foundations of Accounting (ACC 310F) Course Syllabus Spring 2015

SOUTHWESTERN MICHIGAN COLLEGE SCHOOL: Arts and Sciences Niles, Michigan COURSE SYLLABUS Fall Semester 2014

UNIVERSITY OF MASSACHUSETTS BOSTON COLLEGE OF MANAGEMENT AF Theory of Finance SYLLABUS Spring 2013

Online College Algebra (MATH 1302-D10) Fall 2011

Alvin Community College Human Resource Management, HRPO Student Information Plan (SIP) - Distance Learning Spring, 2014

CJ 480, Criminological Theories Syllabus, Spring 2011

SYLLABUS CIS 3660: OBJECT-ORIENTED SYSTEM ANALYSIS AND DESIGN SPRING 2010

BUS 3525 Strategic Management Online

Psychological Testing (PSYCH 149) Syllabus

MIS Systems Analysis & Design

MATH 104 FINITE MATHEMATICS

Texas A&M University-Commerce Syllabus Accounting Information Systems - Acct W & W

CMJ 152 LAW ENFORCEMENT & THE COMMUNITY Spring Syllabus 2015

ISM 4113: SYSTEMS ANALYSIS & DESIGN

Kent State University, College of Business Administration. Department of Accounting, Fall REVISED Aug 22, Instructor:

Introduction to Computer Forensics Course Syllabus Spring 2012

Technology and Online Computer Access Requirements: Lake-Sumter State College Course Syllabus

Statistical Methods Online Course Syllabus

ISBN: Custom Textbook + MindTap Access Card:

COURSE SYLLABUS FIREWALLS & NETWORK SECURITY. ITSY-2301 Number Lecture - Lab - Credit. ITSY-1342 Prerequisites. April 16, 2015 Revision Date

Intro to Graduate Education and Technology ED 500 Spring, 2012 ONLINE Course Outline

COURSE INFORMATION. 3. You learn the course policies and follow them.

Political Science 1336 American Government I U.S. and Texas Constitutions and Politics FALL 2009

MIS 426: Management Information Systems

ISM 4210: DATABASE MANAGEMENT

Collin College Business and Computer Systems

ANGELO STATE UNIVERSITY Department of Accounting, Finance and Economics. Financial Management. Spring 2015 Syllabus

MIS 426: Management Information Systems

CISM Fundamentals of Computer Applications

PSYC 2301 General Psychology Course Syllabus. PSYC 2301 General Psychology. Psychology. Behavioral Sciences Department. Division of Arts and Sciences

CIT 212 Microsoft Networking II Windows Server 2012 R2 Administration Fall 2015

MKTG 435 International Marketing Course Syllabus Spring Phone: (618)

MGSC 290 Computer Information Systems in Business SYLLABUS Spring 2008

Syllabus: AIT Information Systems Infrastructure Lifecycle Management

COURSE SYLLABUS INTRODUCTION TO INTERNATIONAL BUSINESS, MGT ONLINE FALL 2013

Applied Network Security Course Syllabus Spring 2015

CISM Fundamentals of Computer Applications

General Psychology Course Syllabus - INMON. PSYC 2301 General Psychology. Psychology. Behavioral Sciences Department. Division of Arts and Sciences

Class: BBA 440 Human Resource Management; 3 credit hours. Dates: Jan 12 th May 4 th Class #:

F l o r i d a G u l f C o a s t U n i v e r s i t y S t a t i s t i c a l M e t h o d s F a l l C R N

Syllabus Government 2306: Texas State and Local Government: 3 Credit Hours / 0 Lab Hours

(Texas Tech) AND (personal)

COURSE SYLLABUS DESIGNING WEB PAGES COP3835-RVC-1121 GENERAL INFORMATION IMPORTANT INFORMATION PROFESSOR INFORMATION

MONTGOMERY COLLEGE Rockville Campus CA141 Introduction to Database Applications Computer Applications Department

Advanced General Psychology (PSYC 4000) (CRN: 32452) Spring 2015 Weber State University- Ogden Campus

Introduction to Psychology 100 On-Campus Fall 2014 Syllabus

Syllabus Healthcare Project Management

HARFORD COMMUNITY COLLEGE 401 Thomas Run Road Bel Air, MD Course Outline

CS 649 Database Management Systems. Fall 2011

Office Hours: Tuesday and Thursday 10:00 am 12:00 pm; other times by appointment.

LabPaq # AP-1-1H - will contain all necessary lab supplies. **Order or from Bookstore if you receive Financial Aid.

Public Speaking Fall 2015 Communication B AP6 Online Campus

Class: BBA 440 Human Resource Management; 3 credit hours

MGT 3361 Project Management

Cover Sheet: Request 9959

STUDENT INFORMATION PLAN AND SYLLABUS INCLUDING COURSE OUTLINE ACCOUNTING 2301, FINANCIAL ACCOUNTING FALL SEMESTER, 2015

RNSG 1413 Foundations of Nursing Practice CRN# Theory: Tuesday 8:00 AM - 1:00 PM (Room 581A) Credit: 4 (3 Lecture/2 Lab)

CS 1361-D10: Computer Science I

EMBA Class 11 Marketing Administration Winter/Spring 2013

ACTG 051A: Intermediate Accounting 1A Foothill College, Summer 2015

This course is worth THREE college Credits. Reading and Assignment Calendars will be provided in class early in the semester.

AEC 3073 INTERCULTURAL COMMUNICATION Ms. Mary Rodriguez

Spring 2013 CS 6930 Advanced Topics in Web Security and Privacy - 3 Credit Hours Syllabus and Course Policies

IST359 INTRODUCTION TO DATABASE MANAGEMENT SYSTEMS

Psychology of Sport and Exercise

AEC 340 AGRICULTURAL FINANCE Texas A&M University-Commerce Department of Agricultural Sciences Summer 2, 2014

MKT/IBUS 4321 International Marketing

PSY 350 ABNORMAL PSYCHOLOGY SPRING 2011

Professor Alan R. Platt

Clinical Psychology Syllabus 1

Principles of Marketing MK 301 (Online) Summer 2012

Transcription:

MIS 7381 Management of Information Security Spring 2016: Tuesday 6-9PM Room: 114 MH Professor: R. Cooper Office: MH 280B Phone: 713-743-4732 E-mail: rcooper@uh.edu (Rather than phone, e-mail is my preferred form of communication.) Office Hours Course Focus This course provides an introduction to the management of information security. Throughout the semester, we will be focusing on issues such as the following: Identifying and prioritizing the importance of security for an organization s information assets, considering profit, legal, and ethical issues. Identifying and prioritizing potential threats to an organization s information assets. Identifying models and techniques for managing and controlling an organization s information asset security Determining an effective information security strategy and architecture Planning for and responding to information system security incidents, including disaster recovery Required Textbook and Materials Whitman, M.E. & Mattord, H.J. Management of Information Security, Fourth Edition, Course Technology, 2014, ISBN: 1-285-06229-9. Get copies of two Harvard cases: ChoicePoint (A): 9-306-001 and ipremier Co. (A): 9-601-114. The easiest way to get these is to put the following URL in your web browser: https://cb.hbsp.harvard.edu/cbmp/import/ptos/32495443 You then need to register on the site to create a user name if you do not already have one. MAKE SURE THAT YOU REGISTER AS A STUDENT. You will have access to the two cases for 6 months. After you register, you can get to the cases at any time by doing the following: 1. Visit hbsp.harvard.edu and log in. 2. Click My Coursepacks and then click Management of Information Security 2016 Course Grades A 90-100 B 80-89 C 70-79 D 60-69 Course Evaluation Assignments (30%) There are 3 assignments, each worth 10%. Assignments are due at the beginning of the assigned class. Feel free to email assignments to me if you cannot make it to class. Assignments that are turned in up to one week late will earn a maximum of ½ credit. Assignments more than one week late are not accepted. Participation (15%) A significant amount of learning occurs during class presentations and discussions. Therefore, students will receive a participation grade for each class meeting. Students who are absent will receive a zero for that class; students attending only a portion of a class period will receive a maximum participation grade equal to that portion. The two lowest grades will not be counted in determining the final participation grade. Exam 1 (27%) You may bring notes on one 8 ½ x 11 sheet of paper to the exam. Exam 2 (28%) You may bring notes on one 8 ½ x 11 sheet of paper to the exam. Class Announcements/Assignments/Readings Announcements, assignments, readings, etc. will be provided on the Blackboard Learn site for this class Accommodations for Students with Disabilities We would like to help students with disabilities achieve their highest potential in this class. To this end, in order to receive academic accommodations (e.g., for an exam), students must register with the Center for Students with Disabilities (CSD) (telephone 713-743-5400), at the beginning of the semester. Professional Conduct and Academic Honesty All students are expected to conform to the Bauer Code of Ethics and Professional Conduct (see http://www.bauer.uh.edu/bcbe/bauercode.htm). In addition, the University of Houston Academic Honesty Policy is strictly enforced. No violations of this policy will be tolerated in this course. A discussion of the policy is included in the University of Houston Student Handbook at the following website: http://www.uh.edu/dos/hdbk/acad/achonpol.html. Students are expected to be familiar with the Bauer Code and the University of Houston Academic Honesty Policy. MIS 7381 Syllabus_Spring 2016_Cooper.doc 1 02/08/16 2:44 PM

Tentative Schedule Date Class Topic Read PRIOR To Class January 19 Introduction: Overview of Chapter 1 Information Security 26 Identifying Important Chapter 8: pages 279-290 Information Assets ChoicePoint(A), focusing on Information Asset February 2 Laws and Ethics and the Importance of Information Assets 9 Technical Threats & Protection Mechanisms Identification Chapter 12 ChoicePoint(A), focusing on Laws & Ethics Chapter 10 The ipremier Company(A), focusing on Technical aspects 16 Personnel-Related Threats Chapter 11: pages 426-440 ChoicePoint(A) and ipremier Company(A), focusing on Personnel-Related Threats 23 Assessing the Threats & Riskiness of Information Assets March 1 Assessing the Threats & Riskiness of Information Assets Review for Exam Chapter 8: page 291-297 Microsoft Risk Prioritization Approach Summary Handout (See readings in HGA, focusing on Risk Prioritization (see readings in Microsoft Cost-Benefit Analysis Assessment Summary Handout (See readings in HGA Case, focusing on Cost-Benefit Analysis (see readings in Assignment (to be turned in at the beginning of class) Assignment 1: CIAP (See March 8 Exam 1 15 Spring Break!! 22 Risk Control Strategies Chapter 9 Assignment 2: To Be Announced (see 29 Security Programs Chapter 5 Creation of a Hospital Information Security Department (see readings in April 5 Security Policy Chapter 4 Texas Information Security Policies (see readings in 12 Contingency Planning Chapter 3 ipremier Company (A), focusing on Business Impact 19 Security Management Audit Review for Exam 26 To Be Determined May 10 6:00-9:00PM Exam 2 Analysis and Incident Response Plan Chapters 6 & 7 ipremier Company (A), focusing on metrics Assignment 3: To Be Announced (see MIS 7381 Syllabus_Spring 2016_Cooper.doc 2 02/08/16 2:44 PM

Weeks 1 & 2 (Chapter 1 and 8: 279-290) Overview of information security (NSTISSC Model) & evaluating the importance of information assets What are we trying to protect and why? Week 3 (Chapter 12) Understanding how laws and ethics affect the importance of information assets Understanding Information Assets, their Threats, and Protection Week 4 (Chapter 10) Understanding technical threats & vulnerabilities and associated protection mechanisms What can harm information assets & how can we protect them? Week 5 (Chapter 11: 426-440) Understanding the human aspects of security: threats & vulnerabilities and associated protection mechanisms Weeks 6 & 7 (Chapter 8 page 291-297 and Microsoft Approach) Determining degrees of threats, vulnerabilities, and mitigation in order to assess relative risk How can we quantify information asset risk and associated protection? How can we determine what controls to implement? Week 9 (Chapter 9 and Microsoft Approach) Quantifying, controlling, and managing risk Week 10 (Chapter 5) Understanding elements of a security program, security department (and its placement), and SETA program. Week 11 (Chapter 4) Understanding how to develop security policy, standards, and practice guidelines Week 12 (Chapter 3) Understanding contingency plans: what they are, how to create them, and how to test them. Week 13 (Chapters 6 & 7) Developing & evaluating a security management program using accepted models and practices Planning & Organizing for Information Security in an Organization MIS 7381 Syllabus_Spring 2016_Cooper.doc 3 02/08/16 2:44 PM

This page intentionally blank MIS 7381 Syllabus_Spring 2016_Cooper.doc 4 02/08/16 2:44 PM

Management of Information Systems Security Your grades will not be posted without your authorization. If authorized, the posting will be by the last 3 digits of your Student (PeopleSoft) ID. No names will be shown. In the event you do not want your grades posted, you may request your grades in person during office hours. By signing either "yes" or "no" below, I (the student) affirm that I have read the syllabus and understand the policies and requirements of this course. We need a definite YES or NO answer: YES - I want my grades posted Printed Name Student ID Number Signature Date NO - I do NOT want my grades posted Printed Name Student ID Number Signature Date Please Tell Me A Little About You If you are currently working, where do you work and what do you do? What is your formal (e.g., classroom) and informal (e.g., hobby) background in information technology? Do you have any formal background in Information Security? MIS 7381 Syllabus_Spring 2016_Cooper.doc 5 02/08/16 2:44 PM