CIT 186 - Intrusion Detection and Prevention

Credits: 3
3 Lecture Hours

Prerequisites: CIT 175  

This course covers the basic theory and practice of detecting and preventing intrusions and attacks in cyberspace. The study emphasis is on methods and tools to monitor for and identify system vulnerabilities and threats and prevent attacks.

Learning Outcomes
Upon successful completion of the course, the student will:

  1. Describe internal and external intrusion threats and risks.
  2. Create intrusion event handling procedures.
  3. Identify current penetration testing tools, technique and procedures.
  4. Apply current penetration testing tools, technique and procedures.
  5. Perform network and system discovery and footprinting.
  6. Describe Intrusion Detection System/Intrusion Prevention System (IDS/IPS) principles, tools and techniques.
  7. Evaluate IDS/IPS tools.
  8. Create IDS/IPS rules and sensors to prevent and detect intrusions.
  9. Test IDS/IPS rules and sensors.
  10. Respond to detected intrusions appropriately.
Listed Topics
  1. Internal and external intrusion threats and risks
  2. Intrusion event handling procedures
  3. Penetration testing tools, technique and procedures
  4. Hands-on work on penetration testing
  5. Network and system discovery and footprinting
  6. IDS/IPS principles, tools and techniques
  7. Strengths and weaknesses of IDS/IPS tools
  8. Hands-on work on creating IDS/IPS rules and sensors
  9. Hands-on test of IDS/IPS rules and sensors
  10. Response to intrusions and event handling
Reference Materials
Appropriate materials, references, and software tools will be used.
Approved By: Bullock, Quintin Date Approved: 11/04/2014

