Course Websites

CS 461 - Computer Security I

Last offered Spring 2022

Official Description

Fundamental principles of computer and communications security and information assurance: ethics, privacy, notions of threat, vulnerabilities, and risk in systems, information warfare, malicious software, data secrecy and integrity issues, network security, trusted computing, mandatory and discretionary access controls, certification and accreditation of systems against security standards. Security mechanisms: authentication, auditing, intrusion detection, access control, cryptography, security protocols, key distribution. Course Information: Same as ECE 422. 4 undergraduate hours. 4 graduate hours. Prerequisite: CS 241 or ECE 391.

Related Faculty

Text(s)

Computer Security: Principles and Practice, 2nd. Ed., by William Stalling and Lawrence Brown

Learning Goals

Assess and address Security and Privacy (S&P) issues for policy and humans. That is, characterize and classify the threats based on human conformance to policy and evaluate the effectiveness of a range of countermeaures. (1)
Provide S&P risk analysis for basic scenarios based on core principles, specifically the Confidentiality, Integrity, Availability (CIA) requirements. (1)
Apply cryptographic hashes, pseudorandom generators, symmetric, and asymmetric cryptography with appropriate tradeoffs. (1,2,3)
Evaluate options for authentication based on secrets, tokens, and biometrics. (1)
Understand network, application, and systems security. (1,2)
Formulate access control models for basic situations. (1,2)
Write and mitigate malicious code and characterize basic means of its propagation. (1,2,3)
Assess the threat of basic Denial of Service (DoS) attacks. (1)
Provide network securty protections using firewalls and IDSs. (1,2)
Assess threats based on physical layer. (1)
Apply legal and ethical rules for S&P. (4)

Topic List

Human issues in S&P
S&P risk assessment
History of cryptography
Symmetric key encryption
Asymmetric key encryption
Systems security
Database security
Application security
Web application security
Network security
Digital signatures
Cryptology
Authentication
Authorization
Malicious code
Threat Modeling
DoS
Intrusion Detection & Firewalls
Legal and Ethical Isssues in S&P
Trusted Operating systems
Evaluation and Auditing
Physical layer security threats

Required, Elective, or Selected Elective

Selected Elective.

TitleSectionCRNTypeHoursTimesDaysLocationInstructor
Computer Security IAL448199LCD41400 - 1515 W F  1002 Electrical & Computer Eng Bldg  Michael Bailey
Computer Security IALG70797LCD41400 - 1515 W F  1002 Electrical & Computer Eng Bldg  Michael Bailey
Computer Security IAY163507DIS00900 - 0950 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY263508DIS01000 - 1050 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY363509DIS01100 - 1150 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY463510DIS01200 - 1250 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY563511DIS01300 - 1350 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY663513DIS01400 - 1450 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY748198DIS01500 - 1550 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY872176DIS01600 - 1650 R  1105 Siebel Center for Comp Sci  Michael Bailey
Computer Security IAY972177DIS01700 - 1750 R  1105 Siebel Center for Comp Sci  Michael Bailey