Back close

Course Detail

Course Name Cybersecurity Governance
Course Code 26SN632
Program M. Tech. in Cyber Security Systems & Networks
Credits 3
Campus Amritapuri

Syllabus

Unit 1

Foundations of Cybersecurity Governance

Principles of cyber-security governance, Assessment of cyber security maturity, Theories of governance – introduction, governance – definitions and topologies, Governance vs Management vs Compliance, Cybersecurity Maturity Models, Cloud governance , Zero Trust governance , AI-driven security governance

Unit 2

Governance of Security Operations

Governance of Security Operations, Tools, methods, and processes – Vulnerability management, Threat management, Security incident management. Security operations center (SOC) and related concepts, Governance of SIEM and SOAR, Digital Forensics Governance, Governance of Cloud SOC and Hybrid SOC.

Unit 3

Cyber Risk Governance and Quantitative Risk Analytics

Information security risk management framework and methodologies, Risk Management Process, Risk Management Frameworks (NIST,ISO), Identifying and modelling information security risks, Qualitative and quantitative risk assessment methods, FAIR, Cyber Insurance and Governance, AI driven risk management in NIST, ISO frameworks.

Unit 4

Security analytics, Threat Intelligence

Basics of security analytics-Threat intelligence and governance- Data driven security governance- User and Entity Behavior Analytics (UEBA), Impact of cognitive security on security governance, Predictive Security Governance, AI-Driven Threat Intelligence and Governance

Unit 5

Compliance, Legal Governance, and Policy-as-Code

Compliance and governance- Industry specific security Policies and compliance-Cyber security Auditing and governance – HIPAA compliance for healthcare – ISO, COBITZ standards – NIST mandates for compliance-PCI-DSS for Finance – Digital Personal Data Protection (DPDP) Act, Intelligent Compliance Monitoring using AI.

Text Books / References
  1. The Cybersecurity Guide to Governance, Risk, and Compliance: Jason Edwards; Griffin Weaver, Wiley (John Wiley & Sons Ltd.), 2024
  2. Cyber Security Technology and Governance : Audun Josang, Springer Nature, 2025
  3. Governance, Risk, and Compliance in Cybersecurity: James Relington, Wiley,2023
  4. Cybersecurity Governance An Enterprise Risk Management Strategy for Cyber Risk Control:Kok Boon Oh , Giang Hoang , John Sturdy , Sarah Shuaiqi Guo, Springer, 2025.
  5. NIST CSF 2.0: Your Essential Introduction to Managing Cybersecurity Risks: Andrew Pattison, IT Governance Publishing, 2025

Introduction

The rapid advancement of digital technologies, cloud computing, artificial intelligence, and interconnected systems has significantly increased cyber risks faced by organizations and critical infrastructures. This course provides an advanced understanding of Cybersecurity Governance by integrating governance frameworks, cyber risk management, security operations, compliance, security analytics, and emerging technologies. It focuses on aligning cybersecurity strategies with organizational objectives, regulatory requirements, business resilience, and national cyber policies through frameworks such as NIST CSF, ISO/IEC 27001, and COBIT. The course also introduces modern concepts including Zero Trust governance, AI-driven security governance, cloud governance, AI-driven risk management, and Policy-as-Code to prepare students for research and industry roles in governance, risk, and compliance (GRC).

Objectives and Outcomes

Course Objectives 

  1. Understand the principles, frameworks, and models of cybersecurity governance and their role in securing modern enterprises and critical infrastructures.
  2. Analyze and apply cyber risk management, security metrics, compliance standards, and governance strategies for effective organizational security management.
  3. Develop knowledge of security operations governance, threat intelligence, security analytics, and SOC management for proactive cyber defense.
  4. Evaluate emerging cybersecurity governance paradigms including Zero Trust, cloud governance, AI-driven governance, and Policy-as-Code.
  5. Design and implement governance-oriented cybersecurity solutions aligned with business objectives, regulatory requirements, and resilience strategies.

Course Outcomes 

CO Description
CO1 Understand the different methods to assess cybersecurity maturity
CO2 Understand the Cyber Governance methodologies and Frameworks
CO3 Gain knowledge on the Security Operations Center (SOC)
CO4 Understand the cyber risk assessment and management techniques with frameworks
CO5 Understand the Compliance Standards for different types of Industries

Prerequisites:

Basic knowledge of cybersecurity fundamentals.

Evaluation Pattern

CO-PO Mapping

Correlation Levels: 3 = High, 2 = Moderate, 1 = Low 

COs POs  PO1  PO2  PO3 
CO1 3 1 3
CO2 2 2 3
CO3 3 3 3
CO4 3 2 2
CO5 2 2 3

Evaluation Pattern

Assessment Internal External
Mid Term Exam 20  
Assignments 15  
Project 25  
Final Exam   40

DISCLAIMER: The appearance of external links on this web site does not constitute endorsement by the School of Biotechnology/Amrita Vishwa Vidyapeetham or the information, products or services contained therein. For other than authorized activities, the Amrita Vishwa Vidyapeetham does not exercise any editorial control over the information you may find at these locations. These links are provided consistent with the stated purpose of this web site.

Admissions Apply Now