Skip to content
A New Name. Same Commitment to Excellence. → Learn More about the Rebrand
💡Get 10% Off Further Education Courses! Use Code CARE10 before 30th September. → Apply Now
💡Get 10% Off Classroom & Live Online Diplomas! Use Code DIPLOMA10 before 30th September..
💡Get 10% Off On-Demand Professional Diplomas! Use Code DEMAND10 before 30th September..

Security Operations Management (Level 7)

Duration 1 Year
Stage Award
Level Level 7
ECTS Credit 10

This module will introduce the student to the key aspects of Security Operations Management, focusing on the information technology of products/services and their performance capabilities. Students will learn how to predict the future needs and demands in information technology. This involves an understanding of technical requirements, limitations and channel considerations.

The objectives of this module are to provide students with: A basic understanding of the key decision criteria for Security Operations Management including addressing the following topics:

  • Planning within the Cybersecurity area; An Industry Overview
  • Selection Process for security operations strategy
  • information technology Productivity Micro & Macro Approaches
  • Inbound risk mitigation
  • information technology security products and how they can be customised for consumers
  • Importance of Security Operations Management performance
Security Operations Management (Level 7)

Indicative Syllabus

Business Continuity Planning

Business Continuity Planning vs. Disaster Recovery Planning, Project scope and planning, Business impact assessment, Identify Priorities, Business Impact Assessment (BIA), Prioritization and classification of business functions, evaluating impact and dependencies, Resource Prioritization, Continuity planning, implementation, BCP Team Selection, Legal and Regulatory Requirements, Testing and Exercises for BCP resilience, use cases of BCPs.

Assessment and Testing

Categorizing Threat Actors Tools Techniques and Procedures (TTPs), MITRE ATT&CK, Strategies for Threat Modelling, Threat Analysis Practices and Tools, Categorizing Threats, Threat Models, Attack Trees, Attack Libraries, Threat Profiles, IDDIL/ATC, STRIDE/DREAD, Security Testing, Vulnerability Scanning, Penetration Testing, Log Reviews, Software Testing, Third Party Software. Managing Threat Assessment and Intelligence Operations.

Awareness, training and education

User awareness and educational programmes, protecting personal privacy, elements of the digital footprint, security technologies and tools, host firewalls, VPN, proxies, access points, SSL/TLS, anti-spam, anti-virus, considerations for different device categories, computer backups (on and offline), patch application and management. Incident Reporting culture. Security Operating Procedures. Insider threats. External Attacks. Staff induction process. Maintaining user awareness.

Incident Response

Defining security events and incidents, Attack and incident response lifecycles, Volatile and non-volatile data, IOCs vs IOAs, Laws relating to the capture of static and dynamic data, Pre-Incident Preparation, Scoping an Incident, Incident response team management, EU and Global legal frameworks. Best practices and uses cases. NIST 800-61 r2 and SANS PICERL. Developing and Managing Incident Response Teams and Frameworks.

Backup and Availability

Backup and Recovery Procedures, Storage Disk Layouts, RAID, On site and off site backups, Backup Strategies, Cloud based, Backup testing, Information storage and disposal, Server backups, Electronic Vaulting, remote journaling and mirroring, best practices, ISO/IEC 27040 and ISO 20001 requirements.

Course Details

On completion of this module learners will have been enabled to:

  1. Access and research Security Operations Management plans critically
  2. Research and summarize the processes, in terms of micro and macro information technology security
  3. Identify the manner in which planning documents can give rise to information technology operational security effects
  4. Describe Security Operations Management products
  5. Outline the various key performance indicators in Security Operations Management
  6. Describe the manner in which data influences decision making

The Security Operations Management module is assessed via one 40% continuous assessment using a combination of written and practical assessments and a final examination of 60%.

Each examination script will be annotated with comments outlining where marks have been awarded and also where marks have been lost.

Continuous assessments will be completed by learners using appropriate information and communications technology and will be submitted via the City College VLF, thus contributing to the fulfilment of programme learning outcomes PLO 3.

Learners will receive feedback on each assessment in fulfilment of programme learning outcome PLO 7.

MLO 1 MLO 2 MLO 3 MLO 4 MLO 5 MLO 6
Exam x x x x x
Ass x x x

Where the combined marks of the assessment and examination do not reach the pass mark the learner will be required to repeat the element of assessment that they failed. Reassessment materials will be published on Moodle after the Examination Board Meeting and will be aligned to the MIMLOs and learners will be capped at 40% unless there are personal mitigating circumstances.

Security Operations Management (Level 7)

Expert Faculty

Learn from the best in your industry

Flexible Learning Options

Study your way, on your time

Career Focused Programmes

Programmes with purpose, aimed at your future

Student Support Services

Here for you, every step of the way

Security Operations Management (Level 7)