INDICATIVE CONTENT
In this module we will look at a number of technologies which will include but are not limited to:
Legislation and compliance
Shared responsibility models
Encryption methods
Automation of responses
Storage Considerations
Cloud security threat models
Authentication and access management
Monitoring and recording methods
Automated services
Patch management techniques
Backups and recovery considerations
Cloud Networking
Secure Device Access
Firewall Technologies
IPS Operation and Implementation
Layer 2 Security Considerations
Virtual Private Networks
ASA Firewall Configuration
Network Security Testing
The students will have access to the Cisco networking labs where they can work in a controlled environment. In addition, they will have access to both Amazon Web Services (AWS) cloud environment and use of VMWare where they can develop practical skills.
The majority of this course will be carried out as practical work where the student can build confidence and skills using live equipment. This is designed to reinforce the theory skills and the case studies which we be looked at over the course. Additionality we will expect the students to work on building their own skills set and knowledge through experiments which they work on outside of the scheduled teaching times.
ADDITIONAL ASSESSMENT DETAILS
Report - The assessment for this module will be in a form of a case study which the student will work on their own. In this they will be looking at an example company which is provided which has decided to use a Hybrid cloud environment. The student will investigate and use their learnt knowledge to make recommendations on securing this environment and linking this securely with monitoring to an on-premise solution (Learning Outcomes 1 to 4)
Presentation – To encapsulate the skills learning in completing the above report (Learning Outcomes 3 and 4)
LEARNING OUTCOMES
1. CRITICALLY UNDERSTAND AND DISCUSS THE SECURITY CONSIDERATIONS OF A HYBRID CLOUD ENVIRONMENT
Communication,
Knowledge & Understanding
2. ENHANCE PROBLEM SOLVING SKILLS IN THE FIELD OF PRACTICAL BASED NETWORK AND CLOUD SECURITY
Knowledge & Understanding,
Learning,
Enquiry
3. APPLY SKILLS WHICH HAVE BEEN LEARNT IN THE FIELD OF SECURITY AND UNDERSTAND THE WIDER CONTEXT OF THE DECISIONS WHICH ARE MADE
Application,
Problem Solving
4. UNDERSTAND THE GLOBAL SECURITY CONSIDERATIONS OF CLOUD AND NETWORK SECURITY
Communication,
Knowledge & Understanding,
Reflection
LEARNING STRATEGIES
All teaching sessions will blend theory and practical learning. Students will be introduced to curriculum concepts and ideas and will then be able to apply theory to practical examples within the same sessions. In addition, students will be provided with a range of resources for independent study such as case studies, academic papers, and industry stories. The students will be given the opportunity to attend a number of relevant industries talks within this subject area.
RESOURCES
Blackboard
Cisco Network Academy
AWS Academy Environment
VMWare servers
Library and university IT facilities
REFERENCE TEXTS
All texts and electronic resources will be updated and refreshed on an annual basis and available for students via the online Study Links resource platform. All reference materials will be collated and curated and aligned to Equality, Diversity & Inclusion indicators.
Neto, Santana, (2021), AWS Certified Security Study Guide, Sybex.
Kanikathottu, (2020), AWS Security Cookbook: Practical solutions for managing security policies, monitoring, auditing, and compliance, Packt Publishing.
Nazmul, (2022), CCNP Security Cisco Secure Firewall and Intrusion Prevention System Official Cert Guide
Anderson, (2021), Security Engineering: A Guide to Building Dependable Distributed Systems, 3rd Edition, Wiley, 3rd Edition
Estrin, (2022), Cloud Security Handbook: Find out how to effectively secure cloud environments using AWS, Azure, and GCP, Packt Publishing
Hereth, (2021), Azure Cloud Security for Absolute Beginners: Enabling Cloud Infrastructure Security with Multi-Level Security Options, Apress; 1st ed. Edition
Blokdyk, (2021), loud Security and Risk Standards: Third Edition, 5STARCooks
A number of white papers will be provided which are from the field. In addition, industry talks will be advertised to the students for them to attend
WEB DESCRIPTOR
This module will look at the security aspects of cloud computing and network communications. As more data is stored in a cloud environment corporations do need to ensure that everything is secured and monitored to ensure compliance with several legal frameworks. In this module we will be using a hybrid cloud example where we will be looking at the secure network infrastructure and the compliant use of resources within the cloud.