UMUC

Graduate School of Management & Technology – Programs

Course Descriptions - INFA

INFA 610 Computer Security, Software Assurance, Hardware Assurance, and Security Management (3) (Formerly CSMN 655)

An overview of information security management. Topics include security architecture, security models, access control systems and methodology, applications and systems security, operation security, database security, cryptography, physical security, network and Internet security, business continuity planning, and law and ethics in information assurance. A brief review of the building blocks of information systems (such as computer organization and architecture, operating systems, data structure and algorithms, principles of programming languages, database, and software engineering) is provided to show the scope of security management.

INFA 620 Network and Internet Security (3) (Formerly TLMN 672)

An introduction to the security concepts needed for the design, use, and implementation of secure voice and data communications networks, including the Internet. A brief review of networking technology and standards (including an introduction to Internet communication protocols) is provided. Specific security subjects addressed include defense models, security policy development, authentication and authorization controls, firewalls, packet filtering, virtual private networks (VPNs), and wireless network security.

INFA 630 Intrusion Detection and Intrusion Prevention (3) (Formerly CSMN 683)

An exploration of the theory and implementation of intrusion detection and intrusion prevention. Topics include network-based, host-based, and hybrid intrusion detection, intrusion prevention, attack pattern identification, deployment, response, surveillance, damage assessment, data forensics, data mining, attack tracing, system recovery, and continuity of operation.

INFA 640 Cryptology and Data Protection (3) (Formerly CSMN 681)

An overview of the theory of encryption using symmetric and asymmetric keys, current protocols for exchanging secure data (including the Data Encryption Standard and the Advanced Encryption Standard), and secure communication techniques. A review of the historical development of cryptographic methods and cryptanalysis tools is provided. Public Key Infrastructure and the use of digital signatures and certificates for protecting and validating data are examined. Strategies for the physical protection of information assets are explored.

INFA 650 Computer Forensics (3)

An introduction to the fundamental concepts behind the collection and analysis of the digital evidence left behind in a digital crime scene. Topics include the identification, preservation, collection, examination, analysis, and presentation of evidence for prosecution purposes. Discussion also covers the laws and ethics related to computer forensics and challenges in computer forensics. Network forensics is briefly explored.

INFA 660 Security Policy, Ethics, and the Legal Environment (3) (Formerly CSMN 685)

An overview of laws and ethics related to information assurance. The information security responsibilities of major domestic and international agencies (such as the Federal Bureau of Investigation, National Security Agency, and National Institute of Standards and Technology) are reviewed. Topics include issues involving information security management within an enterprise, such as suitable organizational policy, plans, and implementation strategies. Discussion also covers ethical issues, such as monitoring employee computer use and proper limitations on the use of customer data.

INFA 670 Information Assurance Capstone (3)

A study of information assurance that integrates and applies concepts previously studied. Best practices and appropriate technologies to design, implement, manage, evaluate, and further improve information security are explored. Emerging trends are analyzed to understand their potential effect on information security and assurance.