Code
MGFE MIS 5208
Level
M2
Field
Systèmes d’information
Language
Anglais/English
ECTS Credits
2
Class hours
18
Total student load
40
Program Manager(s)
Department
- Technologies, Information et Management
Educational team
Introduction to the module
Recent and rapid developments in IT have contributed to the acceleration of information exchanges. Companies are now faced with effectively controlling the confidentiality, integrity and availability of information and data in various forms. The emergence of artificial intelligence further adds dimensions to the defense-attack surface.
To respond to cybersecurity management requires a combination of technical, managerial, human, and even moral capacities. This course introduces cybersecurity management as an interdisciplinary subject, raising guiding questions and representative case studies to inspire students' self-organized work and discussion concerning the contemporary security landscape.
Learning goals
- 1. S’approprier les usages avancés et spécialisés des outils de l’intelligence digitale en s’assurant de leur impact durable et responsable
Course Learning objectives
By the end of the course, each student will be able to (respond to or ) DELETE "RESPOND TO OR" TO HAVE ACTION'S VERB discuss at least one major question in cybersecurity management in the contemporary setting, thus planning of organization's and personal data management stance accordingly (e.g., by drafting policy documents, planning technology procurements, etc.).
Content : structure and schedule
The concept of risk
- Types of risk
- Risk management
- Risks linked to information systems
Cybersecurity: what is at stake in enterprises?
- Overview of cybersecurity and its key technical basis
- Tackling cyber security stakes from interdisciplinary perspective: governance, protection, defense, resilience, etc.
- AI & security
- Conceptual and practical guiding questions in cybersecurity management.
- AI agent breaking Game
Sustainable Development Goals
This course contributes to SDG 9 (Industry, Innovation and Infrastructure) and SDG 16 (Peace, Justice and Effective Institutions) by teaching students how to protect the digital systems that modern organizations and public services rely on. The course develops practical skills in cyber risk assessment, security governance, and incident response, enabling students to support resilient and trustworthy infrastructures that sustain innovation. It also emphasizes accountability, responsible decision-making, and balancing between different risk management factors, which help students understand the dilemmas of security management.
Learning delivery
synchrone
Pedagogical methods
Lectures + case studies + scenario-based solution discussion
Evaluation and grading system and catch up exams
Grading consists of projects (no paper exam): Group project on security management and policy-making (40%); individual exploration of technologies related to cybersecurity management (40%), in-class tabletop exercise (20%).
Catch up exam: Practical consultancy and conceptual reflection in writing format. A few scenarios are provided where the students need to provide practical recommendations and higher level reasoning. The grade of the catch up exam replaces the group and individual part of overall score, but not the in-class tabletop exercise.
Module Policies
Professor-Student Communication
● The professor will contact the students through their school email address (IMT-BS/TSP) and the Moodle portal. No communication via personal email addresses will take place. It is the student responsibility to regularly check their IMT-BS/TSP mailbox.
● Students can communicate with the professor by emailing him/her to his institutional address. If necessary, it is possible to meet the professor in his office during office-hours or by appointment.
Students with accommodation needs
If a student has a disability that will prevent from completing the described work or require any kind of accommodation, he may inform the program director (with supporting documents) as soon as possible. Also, students are encouraged to discuss it with the professor.
Class behavior
● Out of courtesy for the professor and classmates, all mobile phones, electronic games or other devices that generate sound should be turned off during class.
● Students should avoid disruptive and disrespectful behavior such as: arriving late, leaving early, careless behavior (e.g. sleeping, reading a non-course material, using vulgar language, over-speaking, eating, drinking, etc.). A warning may be given on the first infraction of these rules. Repeated violators will be penalized and may face expulsion from the class and/or other disciplinary proceedings.
● The tolerated delay is 5 minutes. Attendance will be declared on Moodle during these 5 minutes via a QR code provided by the teacher at each course start.
● Student should arrive on time for exams and other assessments. No one will be allowed to enter the classroom once the first person has finished the exam and left the room. There is absolutely no exception to this rule. No student can continue to take an exam once the time is up. No student may leave the room during an examination unless he / she has finished and handed over all the documents.
● In the case of remote learning, the student must keep his camera on unless instructed otherwise by the professor.
Honor code
IMT-BS is committed to a policy of honesty in the academic community. Conduct that compromises this policy may result in academic and / or disciplinary sanctions. Students must refrain from cheating, lying, plagiarizing and stealing. This includes completing your own original work and giving credit to any other person whose ideas and printed materials (including those from the Internet) are paraphrased or quoted directly. Any student who violates or helps another student violate academic behavior standards will be penalized according to IMT-BS rules.
Textbook Required and Suggested Readings
Security engineering: a guide to building dependable distributed systems, by R Anderson.
Keywords
Cybersecurity, IT security management, Data governance
Prerequisites
None