IT RISK MANAGEMENT AND AUDIT (4 Credits)
Learning Outcomes:
On successful completion of this course, student will be able to: Describe the fundamental concept of IT Risk Management and Auditing, and know its various frameworks/techniques of them; Describe the characteristics of various techniques of IT Risk Management and Auditing and understand how each of them works; Apply relevant frameworks/ techniques of IT Risk Management and Auditing according to individual cases/problems and perform evaluation; Analyse the results obtained from frameworks/ techniques of IT Risk Management and Auditing from several perspectives and able to provide suggestions to improve the system performance; Propose business continuity plan and IT auditing that can mitigate the IT infrastructure disruptions.
Topics:
- Introduction to IT Risk Management and Audit; An Overview of Information Security and Risk Management;
- Planning for Organizational Readiness;
- Incident Response: Planning; Incident Response: Organizing and Preparing the CSIRT and Incident Detection;
- Incident Response Strategies, Recovery, Maintenance and Investigations;
- Disaster Recovery and Business Continuity;
- Introduction to IT Auditing;
- IT Auditing Techniques;
- Frameworks, Standards, and Regulations in IT Auditing;
- Enrichment Activity: Business Impact Analysis – Asset Identification, Threat Identification, Control Identification, and Mitigation Planning;
- Enrichment Activity: Risk Assessment – Assessing Asset and Threat, Determine Likelihood, Calculating Risk;
- Enrichment Activity: Guest Lecture – Contingency Planning;
- Enrichment Activity: Auditing IT – Auditing Controls to Protect Information Assets;
- Enrichment Activity: Presentation – Project Presentation;
- Enrichment Activity: Guest Lecture – Business Continuity.
SOCIAL MEDIA
Let’s relentlessly connected and get caught up each other.
Looking for tweets ...