Technology and Data

Bachelor’s in Cybersecurity and Digital Risk Management

بكالوريوس الأمن السيبراني وإدارة المخاطر الرقمية

Bachelor’s

Programme overview

A pathway combining systems, networks and technical security with risk assessment, governance and incident response through lawful, responsible practice.

This pathway connects an organisation’s technical environment with the protection of its data, services and business continuity. It begins with computing and networks before covering system and application security, identity, incident monitoring and risk assessment. Security exercises are limited to training environments or authorised work, with documented findings translated into remediation priorities for technical teams and management.

Who is this programme for?

  • Learners interested in networks, systems and information protection.
  • Those seeking a foundation for technical security and digital risk roles.
  • Learners interested in systematic analysis and responding to technical problems.

Programme objectives

  • Develop understanding of technical infrastructure and confidentiality, integrity and availability.
  • Develop skills in identifying risk and assessing security controls.
  • Connect technical analysis with business priorities and incident response.
  • Establish authorisation boundaries, ethics and documentation in security practice.

Learning outcomes

  1. Explain a network or system architecture and identify risk exposure.
  2. Recommend configurations and safeguards proportionate to assets and threats.
  3. Analyse logs and security events in a documented training scenario.
  4. Prepare a risk register and treatment plan linked to impact and priority.
  5. Draft an incident response and service recovery plan.
  6. Present a security report with scope, evidence, limitations and recommendations.

Programme modules

01Computing and Networks for Cybersecurity

Understand systems, networks and data flows as foundations for security analysis.

Key topics

  • Operating systems and programming concepts
  • Network protocols and segmentation
  • Assets, services and data flows

Learning outcomes

  • Map a technical architecture and explain its functions and trust boundaries.
02Security Principles, Cryptography and Identity

Study information protection, authentication and access control.

Key topics

  • Encryption, hashing and key management
  • Authentication and authorisation
  • Least privilege and account lifecycle

Learning outcomes

  • Propose an access and data protection model with clear rationale and limitations.
03System and Cloud Infrastructure Security

Assess configurations and controls that reduce system and service risk exposure.

Key topics

  • Hardening and patch management
  • Security responsibilities in cloud services
  • Backup and monitoring

Learning outcomes

  • Prepare prioritised security improvements for a defined infrastructure.
04Application Security and the Development Lifecycle

Integrate security requirements into application design, review and authorised testing.

Key topics

  • Threat modelling and security requirements
  • Input validation and session management flaws
  • Component review and vulnerability management

Learning outcomes

  • Analyse an application model and recommend verifiable security improvements.
05Monitoring, Analysis and Incident Response

Turn events and logs into an initial incident assessment and structured response actions.

Key topics

  • Log collection and event correlation
  • Alert triage and scope assessment
  • Containment, recovery and evidence records

Learning outcomes

  • Analyse an incident scenario and produce a timeline and justified response plan.
06Digital Governance, Risk and Compliance

Connect technical protection with policies, responsibilities and organisational requirements.

Key topics

  • Impact and likelihood assessment
  • Security policies and third-party risk
  • Privacy, awareness and applicable obligations

Learning outcomes

  • Build a risk register connecting each risk with an owner, control and treatment option.
07Business Continuity and Digital Resilience

Assess service disruption and develop preparation and recovery arrangements.

Key topics

  • Business impact and service dependencies
  • Recovery plans and crisis communication
  • Exercises and lessons learned

Learning outcomes

  • Propose a continuity plan and test it through a documented tabletop exercise.
08Cybersecurity and Digital Risk Capstone

Apply security analysis to a defined case within a clear authorised scope.

Key topics

  • Scope, authorisation and assets
  • Control assessment and remediation priorities
  • Technical report and management summary

Learning outcomes

  • Deliver a security assessment linking evidence, risk and a practical improvement plan.

Assessment

  • Assignments
  • Projects
  • Research or final project

Career opportunities

  • Security analysis and event monitoring
  • System and network security support
  • Governance, risk and compliance
  • Business continuity and security awareness coordination

Frequently asked questions

How are security exercises conducted?

The pathway focuses on cases, training environments or clearly authorised scopes. Acceptable practice does not include testing other people’s systems without permission; the scope, purpose and boundaries of each activity are documented.

Does the pathway include the management side of risk?

Yes. It connects technical risk with effects on services, data and operations, covering policies, responsibilities, continuity and communication with management alongside technical subjects.

Other programmes you may like

Take Your Next Step with ASAS Excellence College

Choose the programme that matches your ambitions, and talk to our admissions team for the information you need before starting your application.