CONTROL ICT SECURITY THREATS

UNIT CODE: IT/OS/ICT/CR/3/6

UNIT DESCRIPTION

This unit covers the competencies required to provide ICT security. They include identification of security threats, installation of security control measures, implementation of security measures, testing of system vulnerability and monitoring of the security system.

 

 

COURSE OUTLINE

 

UNIT

 

1.  Identify security threats

1.1    Security threats are identified based on the vulnerability of the system.

1.2    Security threats are categorized according to the risk impact

1.3    Appropriate Security measures are selected as per the Security threats

2. Establish and Install security control measures

2.1    ICT Security policy is implemented as per the

Kenya security act 2018

2.2    Security control measures are identified and categorized as per the laws governing security in ICT.

2.3    Evaluation of Security control measures is done as per the ICT Security policy

2.4    Installation of Security control measures is done as per the ICT security policy

3.  Deploy Security Measures

3.1    Physical control measures are implemented according to the ICT security policy.

3.2    Logical security control measures are implemented according to the ICT security policy.

3.3    ICT Security policy is implemented According to

the Kenya security Act 2018.

 

4.  Test system vulnerability

4.1   Schedule system testing plan is developed

4.2   Vulnerable levels of the system are identified.

4.3   Security ethical penetration is done as per the ICT security policy.

4.4   Report on system vulnerability is generated

4.5   Corrective action is taken based on the System Vulnerability report

5.  Monitor security system

5.1    Performance of the security systems is evaluated.

5.2    Reports on security system are generated

5.3    Security systems are updated or overhauled based on the security system report.

 

Last modified: Sunday, 8 February 2026, 8:08 PM