Information Security and Cyber Law
Subject Overview
The second Elective-I option, covering information system security fundamentals — authentication, access control and database security, malicious software and denial-of-service attacks, intrusion detection and firewalls, and cryptographic algorithms, internet security protocols and Indian cyber law including the IT Act 2000. A 4-credit elective theory paper.
Unit-wise Syllabus
4 units — click WhatsApp below to get the full notes for each
Unit 1: Security fundamentals
Information system classification and components, CIA triad, security functional requirements, authentication methods (password, token, biometric, remote user), access control principles (discretionary, role-based, file access control), database security and encryption
Unit 2: Malware and attacks
Types of malicious software — viruses, worms, spam, Trojans, zombies, bots, keyloggers, phishing, spyware, backdoors, rootkits, preventive measures; denial-of-service attack types and defenses
Unit 3: Intrusion detection and firewalls
Intruders and intrusion detection, host-based and network-based intrusion detection, honeypots, firewall need/characteristics/types/basing, intrusion prevention systems, symmetric encryption principles, Data Encryption Standard
Unit 4: Internet security protocols and cyber law
SSL, TLS, HTTPS, IPv4/IPv6 security protocols, information security policy concepts, ISO standards, Indian cyber laws, IT Act 2000, electronic records and e-governance, classification of cyber crimes, certifying authority regulation, patents, copyright, digital signatures, introduction to cyberspace
