Dec 07, 2025  
2025-2026 Undergraduate Catalog 
    
2025-2026 Undergraduate Catalog

IST 43000 - IT Security And Risk Management



This course provides an introduction to the fundamental principles and topics of Information Technolgoy Security and Risk Management at the organizational level. Students will learn critical security principles that enable them to plan, develop, and perform security tasks. The course will address hardware, software, processes, communcations, applications, and policies and procedures with respect to organizational IT Security and Risk Management.

Preparation for Course
P: IST 35000.

Cr. 3.
Student Learning Outcomes
1.    Understand the fundamental principles of Information Technology security.
2.    Understand the concepts of threat, evaluation of assets, information assets, physical, operational, and information security and how they are related.
3.    Understand the need for the careful design of a secure organizational information infrastructure.
4.    Understand risk analysis and risk management.
5.    Understand both technical and administrative mitigation approaches.
6.    Understand the need for a comprehensive security model and its implications for the security manager.
7.    Gain an understanding of security technologies.
8.    Gain an introductory understanding of basic cryptography, its implementation considerations, and key management.
9.    Learn to design and guide the development of an organization’s security policy.
10.    Learn to determine appropriate strategies to assure confidentiality, integrity, and availability of information.
11.    Learn to apply risk management techniques to manage risk, reduce vulnerabilities, threats, and apply appropriate safeguards/controls.