Bachelor of Information Technology
IT3500.10 – Cybersecurity Governance and Risk Management
This subject explores cybersecurity governance and risk management within organisational environments, with a focus on how businesses identify, assess, and manage cybersecurity risks, particularly in small to medium-sized enterprises. Students examine governance structures, risk assessment methods, security policies, compliance frameworks, and incident management processes aligned with organisational objectives.
They develop practical skills in analysing threats, vulnerabilities, and risks, and in recommending appropriate controls and mitigation strategies. The subject also emphasises clear communication of cybersecurity risks and governance outcomes to both technical and non-technical stakeholders. In addition, students explore regulatory requirements and best practices for developing and evaluating organisational cybersecurity policies and procedures.
This subject prepares students for entry-level roles in cybersecurity governance, risk, and compliance, such as Cybersecurity Risk Analyst, GRC Analyst, IT Risk Analyst, and Security Compliance Analyst, while also providing a strong foundation for further study and professional development in cybersecurity.
.png)