Coursework takes the following forms. • Lectures introducing & discussing concepts. • Exercises (self-study) • Experimental lab work (self-study) • Project work Most weeks will have lectures, exercises and lab work. Lectures will introduce concepts, paving the way for exercises and lab work. You are expected to complete the exercises by yourself. There are no exercise sessions with TAs since the book includes solutions to exercises. In lab work, you will carry out experiments in order to better understand the motivation and methods for secure implementation and configuration of IT systems and to assess the effectivity and impact of security measures. The experiments will be based on an extensive script and virtual machines that include example applications, questions, and answers. Lab work, exercises, and project are expected to be conducted independently; there are no exercise classes. However, TAs have office hours 3 times a week, where you can come and ask any question you might have, and we expect to use the learnit forums extensively for questions and answers. Finally, you will also complete, in groups of 5-6, a project: • Based on a set of functional requirements, you will design and implement a prototypical IT system. • You will conduct a security analysis and devise appropriate security measures for this system. • You will then swap systems with another group, and carry out a security review of another group's system. ------------------------------------ Information about study structure For students admitted from Autumn 2014 and later this course is part of the SDT AC track mandatory modules. For SDT DE track the course is part of the specialisation in Web Systems
The duration of the written examination is 4 hours.