BRAC: Preparation Partnership for Expanding Information Security Capacity in Maryland UPDATE September 1, 2009 Agenda Introductions Project Updates Pending Courses Outreach/Marketing Ideas INFO.SEC.MGT.CERT Courses MarylandOnline approval and marketing Website Kickoff and Orientation Sessions Connection with STEM Collegian Center Outreach Marketing Plan and Highlights – Lucinia Mundy Next Face to Face Meeting Ideas Prior to Oct 28th event? End of October? Early November? Overview Developing online format of courses for IS cert program Developing an Information Security Management Certificate program developing courses for the IS Mgmt program Developing the online format Marketing Overview Developing online format of courses for IS cert program F2F online Maryland Online Developing an Information Security Management Certificate Program Internal approval MHEC approval Using what’s available developing PGCC courses for the IS Mgmt program F2F online Maryland Online Deliverable #2: develop Information Security Management Certificate INFO.SEC.MGT.CERT This certificate will help meet the needs of technical and security staff for both managing and implementing information security projects. Coursework may include basic computer operations, operating systems, security, cyber law, disaster recovery, project management and systems analysis. Students wishing to continue may apply these credits to the Information Security A.A.S. degree. Students are also encouraged to complete the Information Security Certificate and the Cisco CCNA Preparation Certificate offered by the Engineering Technology department. CIS 1010 Computer Literacy 3 CIS 1700 Understanding Operating Systems 3 CIS 1620 Computer Security, Security+ 3 CIS 2840 Systems Analysis and Project Management 4 Choose one of the following MGT 2860 Cyber Law 3 MGT 1900 Introduction to Public Administration 3 MGT 2880 Disaster Recovery and Risk Management 3 Total Required for Certificate 16 credits Deliverable #1: convert to online IS Certificate Program This certificate will help to prepare students for an entry-level position in the field of information security. Upon completion of coursework, …… may be applied to the Information Security A.A.S. degree program CIS 1010 Computer Literacy . . . . . . . . . 3 (Bugg, Sullivan) CIS 1700 Understanding Operating Systems . . . . . . . 3 (Bugg) CIS 1620 Computer Security, Security+ . . . . . . . . . . 3 (Sullivan,Burt) CIS 1630 Securing the Infrastructure . . . . . . . . . . . . . 3 CIS 1660 Network Defense and Countermeasures . . . 3 Program Elective . . . . . . . . . . 3-4 Choose one course from the following: FOS 2600 Computer Forensics I ENT 2190 Wireless LANs CIS 2760 UNIX/Linux System Administration Total Required for Certificate . . . . . . . . . . 18-19 Credits KEY: Yellow-already offered online/ Red BRAC grant conversion CIS 1660 Network Defense and Countermeasures Online Course Michael Burt FOS 260 Computer Forensics I Jim Chen (also Trang Nguyen & Laura R. Ellsworth) Crafted by The Dark Side of The Moon using public files and self-authored. Evidence Image Note the date and time of the folders created for the forensic analysis. File Signatures Students use file signature analysis to identify the file type/extension. Note the file type/extension – dot.xyz. Hacking and Malware Students identify the type of attack (automated – note the upload date/time). The compromised host becomes a distribution point for KPorn and Malware. Students are warned before hand about bare skin content in the KPorn folder. KPorn Exposed You can’t say that I didn’t warn you before hand (clue?) about the bare skin. King Prawn – What do you expect? Deleted and Secure Erase Students recover deleted files. Delete: Normal, secure erase, duplicate name, duplicate name content differs. Spoofed eMail Ok Bill…. Your yatch or mine? Damaged File Header Students reconstruct damage file header to recover the evidence. Hidden Data and Metadata Students examine files for hidden data. Example: The original TVShow.mp3 had been extended with one minute of silence to simulate the ending before playing the hidden audio message. CIS 1700 Understanding Operating Systems Barry Bugg CIS 1700 14 in Summer pilot class Fall 09 18 Students mailed a CD with software to allow them to run lab exercises from their home computer. CD allows for 3 different operating systems—Vista, Linux and XP—VM player—virtual machines Website http://www.edtechpolicy.org/BRAC/ Kickoff/Orientation Sessions Next Orientation Session IS Management Certificate Program Orientation Wednesday, October 28, 2009 Marlboro Hall, #1097 2:30pm ~ 4:00pm Light Refreshments Will Be Served! Connection with STEM Collegian Center Christine Barrow Outreach Marketing Plan and Highlights Lucinia Mundy Pending Activities CIS 2840 Systems Analysis to Systems Analysis and Project Management - Michael Burt (October) CW 225 - Hardening the Infrastructure– Paul Derdul (October) Management Department Other Outreach Ideas Events/Activities/Organizations we should know about- include? Ideas for PR materials MarylandOnline approval and marketing through website—offered through other partner campuses Transition Program Capital College Next Face to Face Meeting Ideas Prior to Oct 28th event? End of October? Early November?