教學大綱 Syllabus

科目名稱:資訊安全

Course Name: Norms and Practices of Information Security

修別:選

Type of Credit: Elective

2.0

學分數

Credit(s)

60

預收人數

Number of Students

課程資料Course Details

課程簡介Course Description

資訊安全所牽涉之層面甚廣,包括國家政策面、國家法規面、組織策略面、組織制度面、組織管理面、組織作業面、資訊系統面、科技應用面等等。本課程之主旨乃是讓學員了解銀行業是高度監管的行業,資訊安全及穩定金融秩序實為所有金融機構之責任與重要角色扮演。

 

核心能力分析圖 Core Competence Analysis Chart

能力項目說明


    課程目標與學習成效Course Objectives & Learning Outcomes

    本課程安排了政策、法規、制度、管理、作業、科技應用等產官學之專家及學者提供第一手資料,並與學員直接對話,以達到教授資訊安全規範與實務之課程目標。

    每周課程進度與作業要求 Course Schedule & Requirements

    教學週次Course Week 彈性補充教學週次Flexible Supplemental Instruction Week 彈性補充教學類別Flexible Supplemental Instruction Type

    周次

    日期

    授課教師

    課程主題

    內容

    1

    2月24日

    政大資管系蕭舜文教授

    資訊安全管理導論

    • 資訊「安全」
    • 風險評估與資安的價值
    • 資訊安全的資料科學

    2

    3月2日

    精誠資訊科技公司副總經理吳文舜

    資安攻防大揭秘:全方位資安策略

    • 資訊安全的基本意識 
    • 社群媒體安全
    • 網路與裝置安全  
    • 電子郵件與簡訊安全
    • ChatGPT 與資安  
    • 資安趨勢分享

    3

    3月9日

    精誠資訊科技公司副總經理吳文舜

    洞察企業風險

    強化資安防線

    • 引領企業安全的指南
    • 新時代數位身分認證趨勢
    • 軟體開發安全「向左走」
    • 企業資安風險圖
    • 資安維運服務框架

    4

    3月16日

    精誠資訊科技公司副總經理吳文舜

    金融業資安零信任的成熟度評估與階段性導入規劃

    • 零信任架構與規劃
    • 金融業資安成熟度評估與階段性導入規劃

    5

    3月23日

    渣打國際商業銀行

    廖苡庭

    銀行誠信暨法遵長

    資訊安全與洗錢防制國際實務分享 I

    介紹及分享國際間針對洗錢防制及打擊資恐之主要規範及慣例與監理之重點和期望,分享APG相互評鑑時對台灣金融業優缺點之評估及建議, 及渣打銀行防制洗錢暨打擊資恐實務做法與過去三年業界案例分享

    6

    3月30日

    政大資管系郁方副教授

    網站應用安全理論與實務 I

    • 軟體安全漏洞成因與分析
    • 安全軟體開發週期
    • OWASP網頁應用程式十大漏洞

    7

    4月6日

    政大資管系郁方副教授

    網站應用安全理論與實務 II

    • 字串運算程式的弱點偵測與攻防
    • JAVA程式開發語言的網頁安全開發實務
    • .NET程式開發語言的網頁安全開發實務

    8

    4月13日

    渣打國際商業銀行

    廖苡庭

    銀行誠信暨法遵長

    資訊安全與洗錢防制國際實務分享 II

    介紹及分享國際間針對洗錢防制及打擊資恐之主要規範及慣例與監理之重點和期望,分享APG相互評鑑時對台灣金融業優缺點之評估及建議, 及渣打銀行防制洗錢暨打擊資恐實務做法與過去三年業界案例分享

    9

    4月20日

    中研院黃彥男所長

    AI 的資訊安全以及隱私議題

    待定

    10

    4月27日

    政大資管系郁方副教授

    AI應用的自動測試與對抗例生成

    • 神經網路模型運算與架構
    • 對抗例威脅與生成技術
    • 自動化測試工具

    授課方式Teaching Approach

    70%

    講述 Lecture

    20%

    討論 Discussion

    10%

    小組活動 Group activity

    0%

    數位學習 E-learning

    0%

    其他: Others:

    評量工具與策略、評分標準成效Evaluation Criteria

    1. GRADE DISTRIBUTION:

    Weekly meeting attendance (4% x 10)   40%

    Meeting participation                        20%

    Homework/Term project deliverable     40%

    Total                                                   100%

     

    2. CONTRIBUTION EVALUATION:

        You are expected to attend each meeting on time with the assigned readings prepared in advance and to contribute to the meeting discussion either by starting the discussion or building on the contribution of others to move the discussion forward. The sharing of your experience and insights is a key part of the leaning process. To build on the contribution of others requires you to listen and to consider the timing of your participation.

        Meaningful meeting participation will be a factor in the determination of your grade. As in all meetings the more you put into a meeting the more you get out of it. We encourage the sharing of ideas with the meeting during meeting discussions. You are of course responsible for all material discussed in meeting even if you are absent. If you miss a meeting you must get notes from someone else in the meeting and you should designate someone to pick up any handouts for you. When you attend meeting you must be on time and remain for the entire meeting.

        The quality and frequency of your contribution will be taken into account in the grading scheme and will include the quality of your responses when cold called. You will be evaluated after every meeting session using the following criteria. Please note that contributions are NOT equivalent to only attending meeting or talking in meeting. The quality of what is said and of one's listening and responding to others are important components of my evaluation.

        Excellent Participation (A): (1) regularly initiates meeting discussions; (2) contributes consistently to meeting discussions; (3) regularly gives indication of substantial knowledge and insights; (4) frequently facilitates others in clarifying and developing their own viewpoints; (5) regularly builds on the thinking of others and integrates that thinking into own contributions to produce a larger synergistic understanding of the issues being discussed.

        Good Participation (B): (1) frequently initiates meeting discussions; (2) contributes consistently to meeting discussions; (3) regularly gives indication of substantial knowledge and insights; (4) occasionally facilitates others in clarifying and developing their own viewpoints.

        Fair Participation (C): (1) occasionally initiates meeting discussions; (2) contributes occasionally to meeting discussions; (3) gives indication of some knowledge and insights; (4) almost never responds constructively to the contribution of others.

        Poor Participation (D): (1) never or almost never initiates meeting discussions; (2) never or almost never contributes to meeting discussions; (3) is late for, does not attend, or is not prepared for 3 or more meetings; (4) actively inhibits or impedes the course of discussion; (5) exhibits defensive behavior such as aggression or withdrawal rather than being thoughtful and considerate of others' ideas.

        Failing Participation (F): (1) never or almost never initiates meeting discussions; (2) never or almost never contributes to meeting discussions; (3) is late for, does not attend, or is not prepared for 6 or more meetings; (4) actively inhibits or impedes the course of discussion; (5) exhibits defensive behavior such as aggression or withdrawal rather than being thoughtful and considerate of others' ideas.

    指定/參考書目Textbook & References

    TBA

    已申請之圖書館指定參考書目 圖書館指定參考書查詢 |相關處理要點

    維護智慧財產權,務必使用正版書籍。 Respect Copyright.

    課程相關連結Course Related Links

    
                

    課程附件Course Attachments

    課程進行中,使用智慧型手機、平板等隨身設備 To Use Smart Devices During the Class

    Yes

    列印