CYBR 2404: Capstone
Effective date
September 2024
Department
Cybersecurity PDD
School
Continuing Studies
Description
Through this Capstone course, students will integrate the theory and practical skills gained throughout the program to craft a comprehensive cybersecurity project plan and present a persuasive business case, applicable to real-world scenarios. Students will apply essential project management elements and tailor cybersecurity policies to suit various organizational functions in alignment with compliance requirements and industry standards. Students will evaluate and select cybersecurity tools and solutions that best align with an organization's GRC needs and assess their impact. Additionally, students will enhance their critical skills of auditing and continuous improvement.
Year of study
2nd Year Post-secondary
Prerequisites
CYBR 1201, CYBR 1202, CYBR 1203, CYBR 2301, CYBR 2304.
Course Learning Outcomes
Upon successful completion of this course, students will be able to:
- Develop GRC and cybersecurity policies for an organization using industry best practices and frameworks that are in compliance with industry standards and regulations
- Revise GRC and cybersecurity policies in response to audit findings and recommendations
- Develop a comprehensive project plan for a cybersecurity risk management project, incorporating all necessary project management elements
- Assess technology solutions and controls to propose effective risk mitigation strategies using appropriate framework based on impact assessment of the organization’s security posture
- Critique and assess cybersecurity compliance efforts through executing period audits, making recommendations for continuous improvement in alignment with industry standards
- Construct a persuasive business case for a cybersecurity project, utilizing effective written and oral communication skills and techniques tailored to a business audience
Prior Learning Assessment & Recognition (PLAR)
None
Hours
Lecture, Online, Seminar, Tutorial: 15
Clinical, Lab, Rehearsal, Shop, Kitchen, Simulation, Studio: 25
Practicum, Self-Paced, Individual Learning: 60
Total Hours: 100
Instructional Strategies
Instructional strategies include problem and inquiry-based learning, report development, case studies, hands-on labs, presentations, and research activities.
Grading System
Letter Grade (A-F)
Evaluation Plan
|
Type
|
Percentage
|
Assessment activity
|
|
Lab Work
|
10
|
Lab assignment
|
|
Assignments
|
15
|
Presentations
|
|
Assignments
|
15
|
Peer review(s)
|
|
Project
|
45
|
Final project including components, such as project plan, status and progress updates, policies, communication plan, process maps and documentation, risk and controls matrices, proposed solutions etc.
|
|
Assignments
|
15
|
Cybersecurity and GRC policy development
|
Course topics
- Components of Cybersecurity Policies
- Principles of GRC in Cybersecurity
- Cybersecurity Policy Development Process
- Project Planning in Cybersecurity Risk Management
- Cybersecurity Policies for Organizational Functions
- Technology Assessment for Risk Mitigation
- Tool Assessment for GRC in Cybersecurity
- Evaluation of Cybersecurity Policies
- Auditing and Continuous Improvement
- Business Case Development
- Cybersecurity Project
Notes:
- Course contents and descriptions, offerings and schedules are subject to change without notice.
- Students are required to follow all College policies including ones that govern their educational experience at VCC. Policies are available on the VCC website at:
https://www.vcc.ca/about/governance--policies/policies/.
- To find out if there are existing transfer agreements for this course, visit the BC Transfer Guide at https://www.bctransferguide.ca.