| |
Sep 13, 2026
|
|
|
|
|
CIS 289 - Web Security5 Credits This course explores the architecture of web applications and the security protocols used to protect them, such as authentication and session management. Students will learn to identify and mitigate common risks, including injections and cross-site scripting, through hands-on analysis of application logic. The curriculum emphasizes the development and deployment of secure web services to defend against modern vulnerabilities and server-side threats.
Pre-requisite(s) CIS 230 or CIS 218 with a min 2.0 FeesAcademic Technology Fee
Quarters Typically Offered Spring Day, Online
Designed to Serve Students in the cybersecurity professional-technical programs. Active Date 20260408T14:58:14
Grading Basis Decimal Grade Class Limit 24 Contact Hours: Lecture 44 Lab 22 Total Contact Hours 66 Degree Distributions: ProfTech Course Yes Restricted Elective Yes Course Outline
- Web Application Technologies
- Server-Side Controls
- Authentication
- Session Management
- Access Controls
- Client-Side Controls
- Input-Based Vulnerabilities
- Function-Specific Input Vulnerabilities
- Attacking Application Logic
- Recent Attack Trends
- Shared Hosting Vulnerabilities
- Application Server Vulnerabilities
Student Learning Outcomes Examine concepts of web application technologies and associated security issues.
Describe approaches used in the development and deployment of secure web applications.
Explain how web applications are operated in a secure manner.
Assess web application workflows to identify and fix flaws in business logic and function-specific vulnerabilities.
Defend against security risks associated with shared hosting, application servers, and emerging trends in the modern attack landscape.
Detect and prevent common injection-based threats.
Design and evaluate robust mechanisms for authentication, session management, and access control to protect server-side and client-side operations.
Add to Portfolio (opens a new window)
|
|