SSYS2

Sécurité avancée des SI d’entreprise

Course Description

It is essential for CISOs to have a global vision of how systems work, and to be familiar with the various components that make them up, so as to be able to put in place the appropriate policies to prevent potential faults.

To achieve this, students need to be trained in the concept of defense in depth, which consists in multiplying the layers of defense to reduce the impact of a component failure.

With this in mind, this course covers the various defense and isolation mechanisms implemented by the most widely used operating systems (Windows and Linux). It goes into more detail on each concept for both operating systems, with practical exercises for direct application.

54 hours (18h teaching + 12h supervised work + 24h labs)

Teaching Team: Daniel De Almeida Braga (Classes and practical sessions).

Teaching Language: French (material in english)

Targetted audience: Master 2 RSSI

Course organization: TBA

Prerequisites:

  • Unix 101 (you should know your way around a debian-based distribution, and be proefficient with a console)
  • Windows 101 (Windows 10/11, basics of CMD and PowerShell)
  • Computer Science security 101 (basics of cryptography and access control)

Goals

  • Present the various protection mechanisms implemented on both OSes.
  • Understand the limits of defenses, what they protect against and how to configure them effectively.
  • Learn how to deploy security policies on a system.
  • Prepare students to identify and respond to security vulnerabilities and threats in both OS.