Sep 30, 2024  
GRCC Curriculum Database (2024-2025 Academic Year) 
    
GRCC Curriculum Database (2024-2025 Academic Year)
Add to Catalog (opens a new window)

CIS 278 - Pen Testing


Description
This course develops students’ understanding of effectively protecting various computer systems and networks (mobile, traditional, and cloud) through the use of the assessment and exploitation of vulnerabilities. It focuses on the tools and techniques used by defenders of networks and their adversaries. This course supplies an overview of the legal framework surrounding “computer hacking,” intrusion detection, and penetration testing.

This course prepares students for the CompTIA Pentest+ certification.


Credit Hours: 3
Contact Hours: 3
School: School of STEM
Department: Computer Information Systems
Discipline: CIS
Course Review & Revision Year: 2024-2025
Course Type:
Program Requirement- Offering designed to meet the learning needs of students in a specific GRCC program.
Course Format:
Lecture - 1:1

General Education Requirement: None
General Education Learner Outcomes (GELO):
NA
Course Learning Outcomes:
  1. Plan and scope penetration tests.
  2. Conduct passive reconnaissance.
  3. Perform non-technical tests to gather information.
  4. Conduct active reconnaissance.
  5. Analyze vulnerabilities.
  6. Penetrate networks.
  7. Exploit host-based vulnerabilities.
  8. Test applications.
  9. Complete post-exploit tasks.
  10. Analyze and report penetration test results.
  11. When communicating, use language that is appropriate to the audience. 
  12. Complete work accurately, with attention to detail. 

Approved for Online Delivery?: No
Course Outline:
I. Penetration Testing Overview

II. Planning and Scoping Penetration Tests

III. Information Gathering

IV. Vulnerability Scanning

V. Analyzing Vulnerability Scans

VI. Exploit and Pivot

VII. Exploiting Network Vulnerabilities

VIII. Exploiting Physical and Social Vulnerabilities

IX. Exploiting Application Vulnerabilities

X. Exploiting Host Vulnerabilities

XI. Scripting for Penetration Testing 

XII. Reporting and Communication 


Mandatory CLO Competency Assessment Measures:
Pentest+ Exam related assment (Test prep tool, or Certification Test)
Name of Industry Recognize Credentials: CompTIA Pentest+
Instructional Strategies:
Lecture: 25-50%

Lab: 25-50%

Group Discussion: 25-50%


Mandatory Course Components:
None
Academic Program Prerequisite: None
Prerequisites/Other Requirements: CIS 178  (C or Higher)
English Prerequisite(s): None
Math Prerequisite(s): None
Course Corerequisite(s): None
Course Software Utilized: Oracle Virtual Box
Course-Specific Placement Test: None
Consent to Enroll in Course: No Department Consent Required
Total Lecture Hours Per Week: 3
Faculty Credential Requirements:
Certification/License Requirement (list below), Master’s Degree (GRCC general requirement), Professionally qualified through work experience in field (Perkins Act or Other) (list below)
Faculty Credential Requirement Details: CompTIA Pentest+ Certification
Related MS degree CyberSecurity / Information Security.
Maximum Course Enrollment: 24
Equivalent Courses: None
Dual Enrollment Allowed?: Yes
Number of Times Course can be taken for credit: 1
First Term Valid: Fall 2020 (8/1/2020)
Programs Where This Courses is a Requirement:
CyberSecurity, Certificate
1st Catalog Year: 2020-2021
People Soft Course ID Number: 105035
Course CIP Code: 11.9999



Add to Catalog (opens a new window)