DMDT : Cyber risk and cyber security

Catalog of Institut Mines-Télécom Business School courses

Code

MGFE MIS 5208

Level

M2

Field

Systèmes d’information

Language

Anglais/English

ECTS Credits

2

Class hours

18

Total student load

40

Program Manager(s)

Department

  • Technologies, Information et Management

Educational team

Introduction to the module

Recent and rapid developments in IT have contributed to the acceleration of information exchanges. Companies are now faced with effectively controlling the confidentiality, integrity and availability of information and data in various forms. The emergence of artificial intelligence further adds dimensions to the defense-attack surface.

To respond to cybersecurity management requires a combination of technical, managerial, human, and even moral capacities. This course introduces cybersecurity management as an interdisciplinary subject, raising guiding questions and representative case studies to inspire students' self-organized work and discussion concerning the contemporary security landscape.

Learning goals

  • 1. S’approprier les usages avancés et spécialisés des outils de l’intelligence digitale en s’assurant de leur impact durable et responsable

Course Learning objectives

By the end of the course, each student will be able to (respond to or ) DELETE "RESPOND TO OR" TO HAVE ACTION'S VERB discuss at least one major question in cybersecurity management in the contemporary setting, thus planning of organization's and personal data management stance accordingly (e.g., by drafting policy documents, planning technology procurements, etc.).

Content : structure and schedule

The concept of risk
- Types of risk
- Risk management
- Risks linked to information systems
Cybersecurity: what is at stake in enterprises?
- Overview of cybersecurity and its key technical basis
- Tackling cyber security stakes from interdisciplinary perspective: governance, protection, defense, resilience, etc.
- AI & security
- Conceptual and practical guiding questions in cybersecurity management.
- AI agent breaking Game

Sustainable Development Goals

This course contributes to SDG 9 (Industry, Innovation and Infrastructure) and SDG 16 (Peace, Justice and Effective Institutions) by teaching students how to protect the digital systems that modern organizations and public services rely on. The course develops practical skills in cyber risk assessment, security governance, and incident response, enabling students to support resilient and trustworthy infrastructures that sustain innovation. It also emphasizes accountability, responsible decision-making, and balancing between different risk management factors, which help students understand the dilemmas of security management.

Learning delivery

synchrone

Pedagogical methods

Lectures + case studies + scenario-based solution discussion

Evaluation and grading system and catch up exams

Grading consists of projects (no paper exam): Group project on security management and policy-making (40%); individual exploration of technologies related to cybersecurity management (40%), in-class tabletop exercise (20%).
Catch up exam: Practical consultancy and conceptual reflection in writing format. A few scenarios are provided where the students need to provide practical recommendations and higher level reasoning. The grade of the catch up exam replaces the group and individual part of overall score, but not the in-class tabletop exercise.

Module Policies

Professor-Student Communication
● The professor will contact the students through their school email address (IMT-BS/TSP) and the Moodle portal. No communication via personal email addresses will take place. It is the student responsibility to regularly check their IMT-BS/TSP mailbox.
● Students can communicate with the professor by emailing him/her to his institutional address. If necessary, it is possible to meet the professor in his office during office-hours or by appointment.

Students with accommodation needs
If a student has a disability that will prevent from completing the described work or require any kind of accommodation, he may inform the program director (with supporting documents) as soon as possible. Also, students are encouraged to discuss it with the professor.

Class behavior
● Out of courtesy for the professor and classmates, all mobile phones, electronic games or other devices that generate sound should be turned off during class.
● Students should avoid disruptive and disrespectful behavior such as: arriving late, leaving early, careless behavior (e.g. sleeping, reading a non-course material, using vulgar language, over-speaking, eating, drinking, etc.). A warning may be given on the first infraction of these rules. Repeated violators will be penalized and may face expulsion from the class and/or other disciplinary proceedings.
● The tolerated delay is 5 minutes. Attendance will be declared on Moodle during these 5 minutes via a QR code provided by the teacher at each course start.
● Student should arrive on time for exams and other assessments. No one will be allowed to enter the classroom once the first person has finished the exam and left the room. There is absolutely no exception to this rule. No student can continue to take an exam once the time is up. No student may leave the room during an examination unless he / she has finished and handed over all the documents.
● In the case of remote learning, the student must keep his camera on unless instructed otherwise by the professor.

Honor code
IMT-BS is committed to a policy of honesty in the academic community. Conduct that compromises this policy may result in academic and / or disciplinary sanctions. Students must refrain from cheating, lying, plagiarizing and stealing. This includes completing your own original work and giving credit to any other person whose ideas and printed materials (including those from the Internet) are paraphrased or quoted directly. Any student who violates or helps another student violate academic behavior standards will be penalized according to IMT-BS rules.

Textbook Required and Suggested Readings

Security engineering: a guide to building dependable distributed systems, by R Anderson.

Keywords

Cybersecurity, IT security management, Data governance

Prerequisites

None