CSCI-734: FOUNDATIONS OF SECURITY MEASUREMENT AND EVALUATION
|
RIT Department of Computer Science | |
| Week | Topics | Homework | Reading | Special Events and Due Dates |
| 1 |
Course administration Topic 1: What are we going to measure and test? |
Specification of tools and products to research | see mycourses | |
| 2 | Topic 2: Security analysis process | Assignments, projects | see mycourses | Tools 1 presentation |
| 3 | Topic 3: Computer security policy evaluation | Research topic investigation | see mycourses |
Tools 2 presentation |
| 4 | Topic 4: Password and access control policy testing | Test 1 | see mycourses | Tools 3 presentation |
| 5 | Topic 5: Access control security models | Assignment 2 | see mycourses |
Assignment 2 is due |
| 6 | Topic 6: Security policy models | Test 2 | see mycourses | Tools 4 presentation |
| 7 | Topic 7: Assurance implementation | Project 1 | see mycourses | Tools 5 presentation |
| 8 | Topic 8: System hardening and patching | Project 1 | see mycourses | Project 1 is due |
| 9 | Topic 9: Security measurement | Project 1 | see mycourses | Tools 6 presentation |
| 10 | Project and research group discussions | Project presentation | see mycourses | Project presentations |
| 11 | Topic 10: Security metrics | Project 2 | see mycourses | Project 2 is due |
| 12 | Topic 11: Security metrics from the economic prospective | Assignment 1 | see mycourses | Assignment 1 is due |
| 13 | Project inter-group discussions | Project report | see mycourses | |
| 14 | Topic 12: Security auditing | Test 3 | see mycourses | |
| 15 | Project final and report publication | Report and publication | see mycourses | Project presentations and discussions |
| 16 |
updated: Monday April 16 11:40:00 EST 2012