School / Prep
ENSEIRB-MATMECA
Internal code
EI9RE352
Teaching hours
- CIIntegrated Courses20h
- PRACTICAL WORKPractical work12h
Syllabus
Concept of Information System Security
Objectives
Implementation principles
IS Security Policy
Risk analysis
Management and Governance of Information System Security
Management Systems
Common principles (PDCA)
QMS (ISO 9001)
ISMS (ISO 2700x)
SMCA (ISO 22301)
Industry standards
PCI-DSS
SOX, RGS, ...
Best practice guides
ITIL, Cobit
ANSSI, SANS, NIST
Laws and regulations
Legal and/or regulatory obligations linked to business activities
The 12 SAIV (Secteurs d'Activité d'Importance Vitale)
Military Programming Law and OIVs (Opérateurs d'Importance Vitale)
International regulations
Certifications certifications
Objectives
Certification procedures and processes
Certification of an organization
Certification of a software or hardware product
Designer's approach
Buyer's approach
Means implemented to ensure ISS management
Audits and testing
CERTs
SOCs
Further information
Systems and systems of systems
Standards, certifications, guides (organizational)
Certifications and product evaluations
Cybersecurity policy and ISMS
Law and regulation
Post-mortem analysis (Forensic)
Assessment of knowledge
Initial assessment / Main session - Tests
Type of assessment | Type of test | Duration (in minutes) | Number of tests | Test coefficient | Eliminatory mark in the test | Remarks |
---|---|---|---|---|---|---|
Integral Continuous Control | Continuous control | 1 |
Second chance / Catch-up session - Tests
Type of assessment | Type of test | Duration (in minutes) | Number of tests | Test coefficient | Eliminatory mark in the test | Remarks |
---|---|---|---|---|---|---|
Final test | File | 30 | 1 | documents allowed without calculator |