课程信息
3.8
35 个评分
11 个审阅
In this MOOC, we will learn the basic cyber security concepts, how to identify vulnerabilities/threat in a network system. We will apply CIA basic security services in the triage of recent cyberattack incidents, such as OPM data breach. We will learn the risk management framework for analyzing the risks in a network system, and apply the basic security design principles to protect the data and secure computer systems. We will examine the trustworthiness of programs and data installed in our systems and show the proper way to verify their integrity and authenticity. We will apply principle of least privileges for controlling the shared access given to different groups of users and system processes. On Amazon Cloud instances, we will use GnuPG software to generate public/private key pair for signing/verifying documents and open source software, and for encrypting documents. We will learn how to publish software, the related signature and release key on web server and publish public key to PGP key server for others to retrieve. We will learn Public Key Infrastructure (PKI) and Linux utility to serve as a CA for an organization, learn how to sign certificate request for clients or servers in secure email and web applications....
Globe

100% 在线课程

立即开始,按照自己的计划学习。
Calendar

可灵活调整截止日期

根据您的日程表重置截止日期。
Intermediate Level

中级

Clock

建议:4 hours/week

完成时间大约为14 小时
Comment Dots

English

字幕:English
Globe

100% 在线课程

立即开始,按照自己的计划学习。
Calendar

可灵活调整截止日期

根据您的日程表重置截止日期。
Intermediate Level

中级

Clock

建议:4 hours/week

完成时间大约为14 小时
Comment Dots

English

字幕:English

教学大纲 - 您将从这门课程中学到什么

1

章节
Clock
完成时间为 4 小时

Cybersecurity Concepts and Security Principles

In this module, we will introduce the basic cyber security concepts, enable you to identity root causes of vulnerabilities in a network system and distinguish them from the threats from both inside and outside. We will analyze the enabling factors of recent cyber attack incidences and discuss the basic security services for their defense and triage. We will introduce the risk management framework for analyzing the risks in a network system, and apply the basic security design principles to protect the data and secure the computer systems. Trust is critical and in the center of any secure systems. We will examine the source and authenticity of the programs and data installed in systems we used daily and show the proper way to check their integrity, and verify their authenticity. ...
Reading
6 个视频(共 48 分钟), 5 个阅读材料, 3 个测验
Video6 个视频
Lesson 1. Vulnerabilities and Threats11分钟
Method, Opportunity, and Motive5分钟
Confidentiality, Integrity, and Availability13分钟
Risk, Risk Assessment and Method of Defense7分钟
Security Principles: Defense in Depth, Defense with Diversity, Cyber Resilience6分钟
Reading5 个阅读材料
Cybersecurity Concepts10分钟
M.O.M.10分钟
C.I.A.10分钟
NIST RMF10分钟
Defense in Depth10分钟
Quiz1 个练习
Exam 1.1. Assess Cybersecurity Concepts and Security Principles Learned42分钟

2

章节
Clock
完成时间为 4 小时

Protect Data Access and Verify Source of Trust

In this module we apply principle of least privileges for controlling the proper access given to users and system process. We will demonstrate such an access control by using an example of project document access control using the Unix file access mechanism. We use OPM data breach example to show the impact and the need for principle of adequate data protection. Trust is critical and in the center of any secure systems. We will examine the source and authenticity of the programs and data installed in systems we used daily and show the proper way to check their integrity, and verify their authenticity. ...
Reading
3 个视频(共 25 分钟), 3 个阅读材料, 2 个测验
Video3 个视频
Principle of Adequate Data Protection5分钟
In Software We Trust. Really?9分钟
Reading3 个阅读材料
Apply Principle of Least Privileges for Access Control20分钟
Inside the Cyberattack that Shocked the US Government", by Brendan Koerner on OPM breach20分钟
also good to add some additional reading beyond the slides20分钟
Quiz1 个练习
Exam 1.2. Assess How to Protect Data Access and Verify Source of Trust22分钟

3

章节
Clock
完成时间为 4 小时

Using GPG to Sign/Verify Software

In this module, we introduce GPG software tool for generating public key private key pair for signing/verifying the documents and to encrypt documents, and publish our public key on our web server and PGP key server for others to retrieve. We will use GnuPG software tool to verify the common opensource software packages such as apache and putty. We will also learn how to sign software and the proper way to list the software package, their pgp signature, and our signing public key on a web site....
Reading
3 个视频(共 30 分钟), 3 个阅读材料, 2 个测验
Video3 个视频
Verify Software Integrity and Authenticity8分钟
Web of Trust10分钟
Reading3 个阅读材料
The GNU Privacy Handbook30分钟
Making and verifying signatures20分钟
How to send/receive encrypted email with GnuPG20分钟
Quiz1 个练习
Exam 1.3. Assess the skill of using gpg to sign and verify software.20分钟

4

章节
Clock
完成时间为 5 小时

Be a CA, Setup Secure Server and Client Certificate

In this module, we will learn the Public Key Infrastructure (PKI), how CA operates, and the certificates signing and verification process. We will utilize the utility command in a Linux system to serve as a CA for an organization, learn how to sign certificate request for clients or servers both secure email or secure web access purpose. We will earn how to generate server certificate requests as a webmaster, send them to CA for signing and install the signed certificates in Apache web server for secure web access. We will also set up apache web server for requiring clients to present their client certificates for mutual authentication. We will also guide you to set client certificate on browser for mutual authentication and on a mail client for signing and encrypting emails....
Reading
6 个视频(共 71 分钟), 5 个阅读材料, 2 个测验
Video6 个视频
What are in a Certificate?8分钟
Being Your Own CA21分钟
Server Certificate and Installation13分钟
Setup Client Certificate7分钟
Client Server Mutual Authentication8分钟
Reading5 个阅读材料
Verisign15分钟
Secure Web Access15分钟
Server Certificates15分钟
Client Certificates20分钟
Example of Mutual Authentication15分钟
Quiz1 个练习
Exam 1.4. Assess PKI Concepts and Certificates Creation/Signing with PKI20分钟
3.8

热门审阅

创建者 LBMar 8th 2018

The course is excellent in terms of syllabus and objectives. IN my view, it would be even better if there were more explanations about the practical exercises

创建者 SBSep 21st 2018

This is well organised course its a great assets to my profile.

讲师

Edward Chow

Professor
Computer Science

关于 University of Colorado System

The University of Colorado is a recognized leader in higher education on the national and global stage. We collaborate to meet the diverse needs of our students and communities. We promote innovation, encourage discovery and support the extension of knowledge in ways unique to the state of Colorado and beyond....

关于 Fundamentals of Computer Network Security 专项课程

This specialization in intended for IT professionals, computer programmers, managers, IT security professionals who like to move up ladder, who are seeking to develop network system security skills. Through four courses, we will cover the Design and Analyze Secure Networked Systems, Develop Secure Programs with Basic Cryptography and Crypto API, Hacking and Patching Web Applications, Perform Penetration Testing, and Secure Networked Systems with Firewall and IDS, which will prepare you to perform tasks as Cyber Security Engineer, IT Security Analyst, and Cyber Security Analyst. The learning outcomes of this specialization include: you should be able to create public/private keys, certificate requests, install/sign/verify them for web server and client authentication, secure emails, and code signing. you should be able to write secure web apps with Crypto API to implement the confidentiality, integrity, and availability basic security services. you should be able to hack web applications with vulnerabilities and patch them. you should be able to apply penetration testing tool to exploit vulnerable systems. you should be able to crack passwords given the hashes in password file using AWS P2 GPU. you should be able to configure firewall and IDS for secure network systems you should be able to specify effective security policies and implement efficient enforcement procedures by applying security design principles for securing network systems....
Fundamentals of Computer Network Security

常见问题

  • Once you enroll for a Certificate, you’ll have access to all videos, quizzes, and programming assignments (if applicable). Peer review assignments can only be submitted and reviewed once your session has begun. If you choose to explore the course without purchasing, you may not be able to access certain assignments.

  • When you enroll in the course, you get access to all of the courses in the Specialization, and you earn a certificate when you complete the work. Your electronic Certificate will be added to your Accomplishments page - from there, you can print your Certificate or add it to your LinkedIn profile. If you only want to read and view the course content, you can audit the course for free.

还有其他问题吗?请访问 学生帮助中心