Unit of study_

Empirical Security Analysis and Engineering - COMP5617

Year - 2018

This unit will present the lessons from recent research and from case studies of practice to bring students the skills to assess and improve the security of deployed systems. A particular focus is on data-driven approaches to collect operational data about a system's security. We explore deployment issues at local and global scale, e. g. for X. 509, DNS, and BGP, and also take human factors explicitly into account. As a result, students will learn to put building blocks of security together in a sound way, to arrive at engineering solutions that are empirically verifiable, functional, and secure against realistic threats. As Dan Geer once famously said: "Any security technology whose effectiveness can't be empirically determined is indistinguishable from blind luck."

Lectures, Tutorials, Project Work - own time

through semester assessment (40%) and final exam (60%)

Assumed knowledge
ELEC5616 OR INFO2315 OR INFO2222. Good programming skills in Go, Python or C; skills to learn a new language if required. A reasonable technical orientation and basic networking knowledge is required. Students should bring the mathematical skills to understand cryptography; the unit will introduce the functional principles as background. Prior exposure to security is helpful, but not a pre-requisite.


Faculty: Engineering and Information Technologies

Semester 2

30 Jul 2018

Department/School: Information Technologies
Study Mode: Normal (lecture/lab/tutorial) day
Census Date: 31 Aug 2018
Unit of study level: Postgraduate
Credit points: 6.0
EFTSL: 0.125
Available for study abroad and exchange: Yes
Faculty/department permission required? No
Courses that offer this unit

