Instructor Profile:
Professor of Commerce and Management Sciences, School of Commerce and Management Sciences (SOCMS), Nashik, India
Dr.Ankamreddi Rama Mohan is a distinguished academic with over 28 years of teaching experience across India and abroad. He holds two Master’s degrees in Commerce and Management Studies from Andhra University, Visakhapatnam, and Acharya Nagarjuna University, Guntur, Andhra Pradesh. He earned his Ph.D. in Commerce and Management Studies from Acharya Nagarjuna University, where his research focused on the dynamic fields of Banking and Finance.
His extensive academic journey includes four years of international experience, having served as a Professor at a government university in Ethiopia, East Africa, from 2014 to 2018. His expertise and leadership in higher education have allowed him to mentor numerous Master’s students and contribute as a thesis adjudicator for doctoral programs at prestigious institutions such as NIT Warangal and Sir C.V. Raman University, Raipur.
Dr. Mohan’s research contributions have been widely recognized in several internationally reputed journals and conferences, and he is also a frequent reviewer for many esteemed academic publications. His areas of research interest are primarily in Banking and Financial Services, where he has authored four textbooks that have become valuable resources for students and professionals alike.
In addition to his academic and research accomplishments, Dr. Mohan is actively involved in the academic community, regularly reviewing scholarly work and participating in thesis evaluations. His dedication to advancing knowledge in the fields of commerce, finance, and management makes him a sought-after educator, researcher, and thought leader in his field.
His deep passion for education and commitment to fostering academic excellence ensures that his Massive Open Online Courses (MOOCs) will be both insightful and enriching, providing students with a strong foundation in commerce and management studies, particularly in the areas of banking, financial services, and human resource management.
Course Outline: Information System Security and Control
Module 1: Introduction to Information Security
- Overview of Information Systems: Definition and components of information systems, Importance of information security in organizations
- Security Threats and Vulnerabilities: Types of threats (malware, phishing, insider threats), Vulnerability assessment and management
- Security Principles and Concepts: Confidentiality, Integrity, Availability (CIA triad), Authentication, Authorization, and Accounting (AAA)
Module 2: Security Policies and Risk Management
- Information Security Policies: Developing and implementing effective security policies, Types of security policies (acceptable use, access control)
- Risk Assessment and Management: Identifying, analyzing, and prioritizing risks, Risk mitigation strategies and frameworks
- Compliance and Regulatory Standards: Overview of relevant standards (ISO 27001, NIST), Understanding compliance requirements (GDPR, HIPAA)
Module 3: Security Controls and Technologies
- Access Control Mechanisms: Types of access controls (discretionary, mandatory, role-based), Implementation and management of access controls
- Network Security Technologies: Firewalls, Intrusion Detection Systems (IDS), and Intrusion Prevention Systems (IPS), Virtual Private Networks (VPNs) and secure communication protocols
- Cryptography and Data Protection: Principles of cryptography (encryption, hashing), Data protection techniques (data masking, tokenization)
Module 4: Incident Response and Business Continuity
- Incident Response Planning: Developing an incident response plan, Roles and responsibilities in incident response teams
- Incident Detection and Handling: Techniques for detecting security incidents, Steps for effective incident handling and recovery
- Business Continuity and Disaster Recovery: Creating a business continuity plan (BCP), Disaster recovery planning and testing strategies
This course aims to provide participants with a comprehensive understanding of information system security and control, equipping them with the skills necessary to protect and manage organizational information assets effectively. Each module combines theoretical knowledge with practical applications, ensuring learners are prepared to address real-world security challenges.