| CSTC 237 - Network Security  3 Credit:  (2 lecture, 2 lab, 0 clinical) 4 Contact Hours:  [Co-requisite: CSTC 127  or CSTC 173 ]  This course provides practical techniques for implementing security in today’s computer networks. Current risks and threats to an organization’s data, along with methods of safeguarding this data, are discussed. Students implement basic security services on various types of computer networks. Material is relevant to CompTIA’s Security+ Certification Exam.
 Semesters Offered: fall semesters
 
 Course Goals/ Objectives/ Competencies:
 Goal 1:  Identify computer network security threats.
 
	Detail the variation in threats posed by a virus, worms, and trojan horses.Define and differentiate the function of Spyware and Spam.Describe adware security threats and its relationship to malware.Detail the similarities and differences of rootkits and botnets. Goal 2:  Implement appropriate measures to establish computer network security. 
	Install and maintain service packs, hotfixes and patches.Identify and establish appropriate group policies.Install and maintain antivirus, firewalls, and antispam applications. Goal 3:  Identify network design elements subject to security threats. 
	Describe how the TCP/IP Protocol stack can be vulnerable to security threats.Determine threats by spoofing, DoS, and Man-in-the middle and measure to address them.Describe network vulnerabilities from weak passwords and how to secure from them.Describe the process of establishing backdoors and their potential threat from external exploits.Outline threats specifically encountered via wireless infrastructure. Goal 4:  Apply appropriate network tools to facilitate network security. 
	Create network designs which appropriately utilized DMZ, NAT, VLANs and standard subnetting.Incorporate the use of firewalls and proxy servers to secure from external threats.Develop content filters and protocol analyzers to capture and analyze incoming traffic. Goal 5:  Apply industry best practices for access control. 
	Create implicit deny, least privilege, and time of day restrictions to control access.Establish appropriate account expiration settings.Create authentication procedures using RADIUS, CHAP, and Kerberos. Goal 6:  Explain general cryptography methods for wired and wireless networks. 
	Describe and differentiate between Key management, Confidentiality, and Digital certificates.Define the purpose and application of SSL.TSL, PPTP, HTTPS, L2TP, and IPSEC. Goal 7:  Explain redundancy planning and its components. 
	Describe various techniques for establishing system backups.Define RAID and UPS technology and how they support a fault tolerance strategy. Goal 8:  Identify legislation and organizational policies for network security. 
	Create policies which incorporate secure disposal of computers.Define end-user organizational acceptable use policies.Develop a plan for personal training.Describe and differentiate between due care and due diligence. 
 Add to Portfolio (opens a new window)
 |