INDICATIVE CONTENT
This module addresses the following topics:
Classic hacking / cracking examples, and modern threat actors – through case studies and simulation
System modelling, management and implementation issues for Security Operation Centre (SOC) and its components
Security Information Event Management (SIEM) systems
Security Orchestration, Automation and Response (SOAR) system
Window and Linux structures and security
Operating Systems and architectures
Network protocols, TCP/IP suit and OSI reference model, Ethernet and Internet protocols, Address resolution protocol, Transport Layer Protocol (TCP) and User Datagram Protocol (UDP)
Network services (DHCP, DNS, NAT, FTP/TFTP, email protocols, and HTTP)
Network devices (end devices, routers, and switches)
Wireless communications e.g. Wi-Fi
Network topologies, LANs, and WANs
Security devices e.g. Firewall, Intrusion Detection / Prevention System (IDS/IPS) and their evaluation of systems
Network security or management services (ACL, SNMP, NetFlow, Syslog, NTP, AAA, VPN)
Risks and management strategies in an enterprise while working as a team
- Teamwork and individual process roles
- Enterprise and Entrepreneurship opportunities within the sector
- Professional Practice and industry expectations
- Associated legal, social, and ethical principles
- Cost and impact to systems
Common threats and attacks
Network monitoring tools
Protocol vulnerabilities and security enhancement
Defence models and access control
Threat intelligence
Cryptography
Endpoint protection and vulnerability assessment
Network security data and evaluating alerts
Digital Forensics and incidence response
Research activities into current and emerging security threats
Security governance frameworks (ISO 27001, NIST, CyBOK)
Security policies and organisational controls
Industry standards and emerging research
BCS / TechSkills / Employability elements:
System modelling is considered in relation to business systems, threats, and risk management
Teamwork and industry roles are addressed within simulation and case study work carried out in securing a business against cyber threats
Commercial and business issues are addressed at an Enterprise level with protection of essential assets
Evaluation of systems takes place through threat and risk assessment
Legal, social, ethical and professional issues are considered in undertaking teamwork and associated roles within the simulation aspects of the module
ADDITIONAL ASSESSMENT DETAILS
CLASS-TEST – This is a time constrained test, compiled of multiple-choice questions. The test will explore concepts where you will need to work through in order to select the best answer in relation to practical case study scenarios. You therefore will need to think practically around the use of technology management and risks that are evident to varying sizes of enterprise. The class-test will explore your personal development and thinking around possible entrepreneurship opportunities.
REPORT – You will produce a written report based on the case study work you have undertaken. Within the report there will be themes that relate to the network design and security models and issues involved, and an evaluation summary from using network / cyber tools applied to scenarios of the case study.
Formative assessment opportunities will be provided throughout the module. In creating the report staff will review progress regularly and give feedback on a draft. Related to the class-test there will be pre-circulated sample questions and group feedback as to potentially good answers. There will also be a mock test so you can gauge your learning.
LEARNING STRATEGIES
All teaching sessions will blend theory and practical learning together through the extensive use of simulation. You will be introduced to curriculum concepts and ideas and will then be able to apply theory to practical examples within the same sessions. In addition, you will be provided with a range of resources for independent study such as further case studies, academic papers and industry stories. There will be a mixture of practical and theoretical formative (mock or practice) exercises which will help you build knowledge and confidence in preparation for summative (formal) assessment.
LEARNING OUTCOMES
1. Critically evaluate system modelling approaches for modern network and security designs (e.g. SOC, SIEM, SOAR, IDS/IPS, and AAA), and their commercial and business implementation issues through research.
Knowledge & understanding
Research skills
2. Formulate based on principled research selection appropriate network and security tools (e.g. Wireshark, Network Security Monitoring (NSM), and cryptography etc.) for deployment based on a provided scenario.
Digital literacy
Research skills
3. Critically reflect on Cybersecurity management and planning issues and requirements for various sizes of enterprise, identifying alongside personal development you have made, and entrepreneurship opportunities identified.
Reflection
Personal Development & Entrepreneurship
4. Demonstrate critical analysis of risk assessment and selection of the most appropriate strategy based on the stakeholders and an entire business and how best to communicate findings.
Critical Reasoning & Collaboration
Communication
RESOURCES
Standard Personal Computer (PC)
Pre-created Virtual Machines (VM)
Cisco CyberOps Associate course learning materials
Online learning material
TEXTS
Chapple. M. and Seidl. D (2021), Cyberwarfare: information operations in a connected world, Jones & Barlett Learning
Delahunty, S. and Jardin, S. (2025), The Cyber Security Handbook, FT Publishing International
Sutton, D. (2022), Cyber security: the complete guide to cyber threats and protection, BCS, The Chartered Institute for IT
Widdowson, A. (2025), Humans and Cyber Security: How Organisations Can Enhance Resilience Through Human Factors, CRC Press
Hibberd, G. (2022), The Art of Cyber Security: A practical guide to winning the war on cybercrime, IT Governance Publishing
WEB DESCRIPTOR
Within this module, you will learn and practice the modern concepts of cybersecurity defence mechanisms through practical case studies, namely the Security Operation Centre (SOC), Security Information Event Management (SIEM) system, and through Security Orchestration, Automation and Response (SOAR). You will also work with cyber / network security devices, e.g. firewalls, IDS and IPS, Operating Systems, and look for network protocol vulnerabilities, common threats such as malware, common network attacks and the use of relevant cyber tools to protect systems against these. This will give you a deep understanding of cyber operations, required skills for industry, an understanding of standard methods and practices for risk assessment, and practical management strategies.