Skip to main content

ISLA Santarém 13157

Auditing and Computer Security

Information Technology Management (ISLA Santarém)
  • ApresentaçãoPresentation
       
  • ProgramaProgramme
    1.Introduction to IT Auditing and Security. 2. Threats: Types of threats. Sources of threats. 3. Security Policies: Development and implementation. Security standards. 4. Risk Management: Identification and assessment of risks. Risk mitigation strategies. 5. Security Technologies: Firewalls and intrusion detection/prevention systems. Cryptography. Authentication and access control. 6. Auditing: Objectives, Principles and Auditing Techniques. 7. Audit and Security Standards and Frameworks: COBIT. NIST. ISACA. 8. Incident Management: Planning and response. 9. Human Aspects of Security: Awareness and training. Social engineering and its techniques. 10. GDPR - General Data Protection Regulation.
  • ObjectivosObjectives
    O1. Understand the fundamental concepts of auditing and computer security. O2. Identify the main threats and risks affecting systems. O3. Discuss the principles and fundamentals that guide the definition of computer security policies in organizations. O4. Recognize the main standards and frameworks used in IS auditing. O5. Identify and interpret the fundamental principles of the GDPR applicable to the processing of personal data. C1. Demonstrate knowledge of the main security risks affecting IS. C2. Specify and apply security policies appropriate to different organizational contexts. C3. Use encryption mechanisms to strengthen the confidentiality, integrity, and authenticity of information. C4. Use auditing, vulnerability testing, and intrusion detection tools to assess the security of systems. C5. Discuss human factors in computer security.
  • BibliografiaBibliography
    Easttom, C. (2023). Computer security fundamentals. Pearson IT Certification. Stallings, W., Brown, L., & Bauer, M. D. (2023). Computer security: principles and practice. USA: Pearson Education. Koflr, M, et. al, (2023). Hacking and Security, The Comprehensive Guide to Penetration Testing and Cybersecurity. SAP PRESS. van Oorschot, Paul C.(2021). Computer Security and the Internet, Tools and Jewels from Malware to Bitcoin. Springer Nature.
  • MetodologiaMethodology
    Synchronous distance learning: 1. Collaborative exploration of contents: through the application of a methodology based on flipped classes through which students take prior knowledge of the topics, being encouraged to apply this knowledge in the discussion of cases in groups and using digital collaborative tools. Faceto-face: 2. Practical exercises: resolution of application problems on the topics under study using the ABRP methodology. Autonomous: 3. Guided research proposed by the teacher and case studies to deepen the content. The lecturer gives feedback on the students' conclusions/doubts and on the exercises solved in class (tutorial guidance - OT), in person in the classroom and/or via the Moodle teaching/learning support platform.
  • LínguaLanguage
    Português
  • TipoType
    Semestral
  • ECTS
    4
  • NaturezaNature
    Mandatory
  • EstágioInternship
    Não
  • AvaliaçãoEvaluation

    Avaliação Curricular (contínua):
    - A1. Exercícios resolvidos em sala de aula.- A2. Trabalho teórico-prático (grupo).- A3. Teste final teórico-prático (individual).
    A classificação final é calculada através da fórmula Classificação Final =A1*0,2+A2*0,4+A3*0,4.
    O estudante é aprovado se obtiver classificação igual ou superior a 9,5 valores.
    Avaliação Final e/ou de Recurso/Especial.
    Hipótese 1:- A1. Exercícios resolvidos em sala de aula. Estudante obteve classificação positiva nesta componente: mantêm a classificação que será
    considerada em qualquer das épocas.- A2. Trabalho teórico-prático (grupo). O estudante participou no trabalho de grupo o qual obteve classificação positiva e obteve
    classificação positiva na componente individual: mantém a classificação que será considerada em qualquer das épocas (Avaliação Final,
    Recurso/Especial)- A3. Teste final teórico/prático (individual). O estudante realiza este Teste em qualquer das épocas em que se submeta a avaliação.
    A classificação final é calculada através da formula prevista na avaliação Curricular (contínua).
    Hipótese 2:- A1. Exercícios resolvidos em sala de aula. O estudante não participou ou participando obteve classificação negativa.- A2. Trabalho prático (grupo). O estudante não participou no trabalho de grupo, ou participando obteve classificação negativa no trabalho
    ou na componente de avaliação individual.
    Nestas circunstâncias estas componentes da avaliação não poderão ser utilizadas na Avaliação Final, Avaliação em Época de
    Recurso/Especial (A).
    O estudante realiza o exame teórico-prático (A=100%) e é aprovado se obtiver uma classificação igual ou superior a 9,5 valores em 20.
    A classificação mínima na avaliação curricular (continua) é a seguinte:- Exercícios resolvidos em sala de aula: 10 valores- Trabalho teórico-prático (grupo): 10 valores- Teste final teórico-prático (individual): 8 valores
    A avaliação dos trabalhos práticos em grupo, inclui a avaliação individual dos estudantes que terá uma ponderação de 40% na
    classificação do estudante nessa componente.