Cybersecurity Post-baccalaureate UCERT

College of Sciences
Undergraduate certificate

faculty and students in cybersecurity lab

About this program

Cybersecurity is defined as the activity or process, ability or capability, or state whereby information and communications systems and their contents are protected from and/or defended against damage, unauthorized use or modification, or exploitation. Metropolitan State's Cybersecurity Certificate is a 24-semester credit program intended for students who have already graduated with an earned bachelor's degree and would like to reshape their skills and knowledge in the field of cybersecurity. Students without a bachelor's degree in any field are not eligible for pursuing this certificate.

The certificate consists of course work designed to develop analytical and problem-solving skills and provide students with both the theoretical and technical backgrounds along with the necessary practical experiences to secure challenging jobs in the field of cybersecurity. The major goal of the cybersecurity certificate is to prepare students with the necessary skills to enter into the cybersecurity workforce by demonstrating an in-depth understanding of contemporary technological and societal issues related to cybersecurity and to be able to contribute to the community at large in a responsible and ethical manner.

Potential cybersecurity careers include Chief Information Security Officer (CISO), Security Auditor/Manager, Security Administrator, Security Analyst/Architect/Engineer, Penetration Tester, Vulnerability Assessor, Incident Responder, and Secure Software Developer.

Metropolitan State University is designated as a National Center of Academic Excellence in Cyber Defense (CAE-CD) by the National Security Agency (NSA) and the Department of Homeland Security (DHS). CAE-CD institutions receive formal recognition from the U.S. Government as well as opportunities for prestige and publicity for their role in securing our Nation's information systems.

Student outcomes

A student graduating with the cybersecurity certificate will be able to:

  • demonstrate the ability to apply knowledge of cybersecurity concepts, tools and technologies to prevent, detect, react, and recover from cyber-attacks.
  • understand cybersecurity risks, threats, and related countermeasures and apply this understanding to develop cyber defense strategies.
  • demonstrate the ability to design cybersecurity systems to meet organizational needs within realistic constraints such as economic, environmental, social, and ethical expectations.
  • identify, analyze, and synthesize scholarly and professional literature relating to the fields of cybersecurity, information security, or information assurance to help solve specific problems and to stay current with the rapidly changing security context.
  • participate as an active and effective member of a project team engaged in achieving solutions to specific cybersecurity related problems.
  • demonstrate sensitivity to and sound judgment on ethical issues as they arise in information security and cyber defense and adhere to accepted norms of professional responsibility.

Gainful Employment Disclosure

Gainful employment programs are those "that prepare students for gainful employment in a recognized occupation." Public institutions are required to report this information for all undergraduate and graduate programs that are Title IV eligible and that lead to certificates, diplomas, graduate certificates or specialist awards. Degree programs at all levels are not considered to be gainful employment programs.

Enrolling in this program

Program eligibility requirements

To be eligible for acceptance to the Cybersecurity Certificate program, students must submit a College of Sciences Undergraduate Program Declaration Form when the following is completed:

  • Bachelor's degree in any discipline from a regionally accredited college/university with a GPA of 2.5 or better or with the Computer Science and Cybersecurity department consent

Course requirements

Requirements (24 credits)

Core (16 credits)

This program requires a core of 16 credits and 8 cybersecurity-related elective credits. Transfer credits will be evaluated on a case by case basis. Note ICS 383 or 460 is required

ICS 382 Computer Security

4 credits

This course introduces principles of computer security with integrated hands-on labs. The course prepares students to effectively protect information assets by providing fundamental details about security threats, vulnerabilities, and their countermeasures ranging from a simple computer to enterprise computing. Topics include broad range of today's security challenges, common security threats and countermeasures, security management, access control mechanisms, applied cryptography, privacy issues, computer ethics, file system security, and network security.

Full course description for Computer Security

ICS 482 Vulnerability Assessment and Penetration Testing

4 credits

To properly secure any organization's information infrastructure and assets, a periodic assessment of its security posture at various levels of the organization is essential. One key area is the direct assessment of vulnerabilities in the IT infrastructure, systems and applications, followed by targeting and exploitation of the same. This course covers the theoretical bases for cyber threats and vulnerabilities, and delves into selection and application of penetration testing methodologies ranging from reconnaissance to the exploitation of vulnerabilities by probing infrastructure, services and applications. The course places a strong emphasis on the use of these methodologies to demonstrate, document, report on, and provide a clear roadmap for remediation of exposed security issues.

Full course description for Vulnerability Assessment and Penetration Testing

ICS 484 Cyber Operations

4 credits

Information is an asset that must be protected. Without adequate protection or network security, many individuals, businesses, and governments are at risk of losing that asset. It is imperative that all networks be protected from threats and vulnerabilities so that a business can achieve its fullest potential. Security risks cannot be eliminated or prevented completely; however, effective risk management and assessment can significantly minimize the existing security risks. In order to provide effective protection to the organization's critical infrastructure and services, continuous monitoring as well as various processes, procedures, and technology is required to detect and prevent cyber-attacks, breaches, and security violations. In addition, existence of a comprehensive incident response plan is vitally connected to the survivability of an organization after a severe security breach or compromise of critical business operations. This course focuses on the operational aspect of…

Full course description for Cyber Operations

Choose one

ICS 383 Networking Protocols and Analysis

4 credits

Networks are the backbone of information technology operations within an enterprise and are responsible for a significant portion of an organization¿s security posture. Cybersecurity professionals are often tasked with securing network operations and responding to network threats which demonstrates the importance to networking knowledge in the cybersecurity industry. As a cybersecurity practitioner, it is imperative that there is an understanding of network operations, protocols, and administration practices. This course focuses on developing skills and taking a deep dive into networking protocols including TCP, UDP, ICMP, and IP, network design and architecture, network administration automation, network analysis, and network protocol and design impacts on security and defense measures.

Full course description for Networking Protocols and Analysis

ICS 460 Networks and Security

4 credits

Principles and practices of the OSI and TCP/IP models of computer networks, with special emphasis on the security of these networks. Coverage of general issues of computer and data security. Introduction to the various layers of network protocols, including physical, data link, network, and transport layers, flow control, error checking, and congestion control. Computer system strengths and vulnerabilities, and protection techniques: Topics include applied cryptography, security threats, security management, operating systems, network firewall and security measures. Focus on secure programming techniques. Programming projects.

Full course description for Networks and Security

Electives (8 credits)

ICS 490 only counts as an elective with the permission of the cybersecurity coordinator or CSC department chair

CFS 380 Digital Evidence Analysis

4 credits

In this course, students continue not only to learn how to identify and collect digital evidence through forensics search tools, but also to study the emerging data mining techniques. The topics include how to design a plan for a computer crime investigation; how to select a computer software tool to perform the investigation; how to articulate the laws applying to the appropriation of computers for forensics analysis; how to verify the integrity of the evidence being obtained; how to prepare the evidence collected for the use in the court; and how to present the evidence as an expert eyewitness in court. Some hypothetical and real cases are also discussed in class.

Full course description for Digital Evidence Analysis

CFS 484 Computer Laws

4 credits

In this course, students will learn the law relating to computer software, hardware, and the Internet. The areas of the law include intellectual property, cyberspace privacy, copyright, software licensing, hardware patent, and antitrust laws. Legislation and public policies on cyberspace technology, cryptographic method export controls, essential infrastructure protection and economic development are also discussed in class.

Full course description for Computer Laws

CFS 485 Mobile Device Security and Forensics

4 credits

This course takes a hands-on approach to provide students with foundational concepts and practical skills in Mobile Device Forensics, which can be leveraged to perform forensically sound investigations against crimes involving the most complex mobile devices currently available in the market. Using modern tools and techniques, students will learn how to conduct a structured investigation process to determine the nature of the crime and to produce results that are useful in criminal proceedings. The course will provide walkthrough on various phases of the mobile forensics process for both Android and iOS based devices including forensically extracting, collecting, and analyzing, data and producing and disseminating reports. The course modules and labs will involve certain specialized hardware and software to perform data acquisition (including deleted data), and the analysis of extracted information.

Full course description for Mobile Device Security and Forensics

ICS 325 Internet Application Development

4 credits

This course focuses on how to design and establish information services over the Internet from the server side. Topics include advanced concepts and issues on Internet architecture, server-side design strategies, current technologies and Internet security. Through labs and programming projects, students learn how to use current scripting and markup languages to build nontrivial state-of-the-art applications.

Full course description for Internet Application Development

ICS 483 Cryptography for Cybersecurity Practitioners

4 credits

This course provides students with a thorough foundation of applied cryptography for cybersecurity practitioners. As encryption technologies continue to integrate into everyday culture, the importance of cryptography and encryption knowledge of cybersecurity practitioners continues to increase. Students will learn and be able to apply and analyze: the history of cryptography from the earliest ciphers to current encryption methodology, mathematical foundations for cryptography, symmetric and asymmetric algorithms, and applied cryptography pertaining to Virtual Private Networks (VPNs), SSL/TLS, strategies for defense utilizing encryption and cryptography, military applications, steganography, cryptanalysis, and more. Additionally, students will look to the future of cryptography and encryption including a look into quantum cryptography and encryption in cloud environments.

Full course description for Cryptography for Cybersecurity Practitioners

MIS 412 Administration of the Management Information Systems Function

4 credits

This is an alternate capstone course for MIS majors that emphasizes both the technical and strategic planning and as well as organization frameworks necessary to successfully select, deploy and manage information systems. Other areas of study include the roles of executive and staff, administrative structures, outsourcing decisions & outsourcing frameworks. Several IT management methodologies will be examined,including ITIL and COBIT. This course was formerly numbered MIS 312.

Full course description for Administration of the Management Information Systems Function