Network Security
1,500 words
The Case Study – Network Security Planning and Upgrade
This individual assessment for the Network Security module requires students to work as network consultants and carry out network and security planning and an upgrade for an imaginary company. The assignment is titled “The Case study” and requires students to produce a written report presenting solutions to the problems identified within the case study. The assessment is worth 15 credits and requires approximately 1,500 words, with a permitted variation of ±10%. The coursework focuses on applying network security concepts and protocols to contemporary Internet and mobile-based solutions and technologies. Students are expected to analyse the requirements of the imaginary organisation, identify relevant network and security issues and propose appropriate planning and upgrade solutions. The report should demonstrate an understanding of network security technologies while considering the organisation's information assets and operational requirements. A significant part of the assessment concerns network performance. Students must provide recommendations and suggestions for addressing network performance issues identified in the case study. Where the proposed solution changes the existing network design, an appropriate network diagram should be included. The brief allows students to use tools such as Packet Tracer or other suitable applications to represent the proposed network design. The assignment also requires students to consider security policy and network protection. The existing security policy should be reviewed and recommendations should be made for improving it. Students are specifically instructed not to create a completely new security policy because the organisation already has one. In addition, the report should discuss how appropriate security measures could be implemented across the network. Detailed device configurations are not required, although relevant examples or configuration snippets are encouraged. Because the information provided in the case study is incomplete, students must identify and document their assumptions and requirements. This includes defining unspecified parameters such as network speeds, device features and existing policy details. The assumptions and requirements section is therefore an important part of the investigation and contributes to the assessment mark. The final report should summarise the key findings of the investigation and may recommend how any remaining IT support budget could be used. References must be included and used effectively to support the discussion. The marking criteria allocate 10% to the introduction, 10% to assumptions and requirements, 20% to improving performance, 20% to policy amendments, 20% to securing the network, 10% to the conclusion/summary and 10% to references. The assessed learning outcomes cover the application of network security concepts and protocols, critical evaluation and design of security policies, understanding of IT governance and its influence on organisational security policy, and critical review of current research and technological advances in network security. The brief also permits AI assistance, but any AI tools used must be referenced and their use summarised at the end of the report before the reference list.
Read Model Answer →
Security of Emerging Connected Systems
2,000 words
Security Evaluation – Secure Design, Security Audit and IoT Security Recommendations
This individual coursework for the Security of Emerging Connected Systems module requires students to prepare a 2,000-word technical report evaluating secure design, security auditing and security recommendations for an organisation developing Internet of Things (IoT) devices and systems for home and workplace environments. The assessment is worth 10 credits and requires students to provide practical and evidence-based guidance to the client’s software development team. The report is assessed across secure design and development methodology, security audit methodology, security recommendations and overall report structure. The first major section addresses Secure Design and Development Methodology. The client wants to incorporate secure design principles into its software development workflow and therefore requires an overview of possible secure design processes relevant to IoT. Students must evaluate the strengths and weaknesses of different approaches and provide a justified recommendation for a process that would be appropriate for the client. The emphasis is on integrating security into the design and development of systems rather than treating security as a separate activity after development. The second section focuses on Security Audit Methodology. The client wants to complement its secure design process with a security audit of the final developed system. Students must provide a practical guide explaining how a security audit could be performed, including the overall testing methodology and the purpose of each stage. The brief identifies methodologies such as PTES and OWASP as examples. Students are also expected to discuss different approaches and evaluate their respective strengths and weaknesses. The third section concerns Security Recommendations and requires students to demonstrate the implications of strong secure design and auditing through an IoT security case study. Students must research a security vulnerability affecting an IoT device, explain the vulnerability and identify where the security flaw was introduced. The report must then examine which parts of the secure design and audit processes were not implemented correctly and evaluate the resulting impact on the security of the product. The report is intended for a technical audience, specifically the client's software development team. Students are expected to use an appropriate technical structure and language, support their arguments and analysis with references, and use APA referencing. The assessment also encourages appropriate diagrams to support the written content. The report structure component accounts for 10% of the assessment, while Secure Design and Development Methodology, Security Audit Methodology and Security Recommendations each account for 30%. The coursework assesses learning outcomes relating to defence-in-depth solutions for technical internet security vulnerabilities, secure private networks for IoT and BYOD, and current research and technological advances in network security. These outcomes connect the assignment to practical IoT security engineering, secure development, security auditing and emerging network-security practices.
Read Model Answer →