Teaching Considerations

A. Suggested Schedule:

The following sample module plan is based on the offering of six to nine hours of lectures with outside lab and homework time. To cover adequately each area in this module, integrate the material into other business and information systems courses.

1 Planning 0.5 hour
2 Organizational Policies and Procedures 1.0 hour
3 Ethics and Professionalism 0.5 hour
4 Personnel Security 0.5 hour
5 Physical Security 0.5 hour
6 System Security 0.5 to 1 hour
7 Threats and Vulnerability 0.5 to 1 hour
8 Data Security and Recovery 0.5 to 1 hour
9 Control and Audit 0.5 hour
10 Costs and Benefits 0.5 to 1 hour

B. Homework and Lab Exercises:

Following are examples of exercises to enhance the lecture material for this module:

  1. Class/Paper exercises:
    1. Brainstorm and graph the flow of data in an organization then identify sensitive resources;
    2. List organizational security mechanisms that might be used to control the sensitive resources in (a).
    3. Take the position of the “bad guy” and justify the ethical standpoint of “why you went wrong.”
    4. Identify corporate policies and procedures for dealing with sensitive resources, and show how these policies and procedures might be communicated to the appropriate personnel.
  2. Lab exercise - Visit the microcomputer lab and identify:
    1. What is GOOD about security. Why?
    2. What is POOR about security. Why?


