Module Outline
Date retreived
22/07/2026 11:57 AM AWST
22/07/2026 11:57 AM AWST
Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.
Plan and implement a cyber security project
Plan and implement a cyber security project
Module
National Code
VU23293
VU23293
State Code
AZ600
AZ600
DTWD Status
Approved
Approved
State Implementation and Classification
Approved Date
08/06/2023
Field of Education
029901 - Security Science
Nominal Hours
80
Description
This unit describes the performance outcomes, skills and knowledge required to plan and implement a cyber security project. The project can either be created and carried out in a simulated cyber security environment or be an actual workplace cyber security project.
It requires the ability to actively contribute to each stage of the project as a team member which includes receiving tasks, designing solutions, solving problems and ensuring delivery of the project within a given timeframe.
The project will include using a Cyber Security Operations Centre (CSOC) sandbox or equivalent laboratory environment to demonstrate configuring and testing of firewalls, implementing Intrusion Detection System (IDS) and evaluating and identifying any traffic anomalies. The use of Red and Blue teaming exercises to identify security breaches and apply mitigation strategies to minimise further risk should be included as part of the project.
The unit applies to cyber security practitioners who, as part of a team are responsible for the delivery of cyber security projects in an organisation.
No licensing or certification requirements apply to this unit at the time of accreditation.
It requires the ability to actively contribute to each stage of the project as a team member which includes receiving tasks, designing solutions, solving problems and ensuring delivery of the project within a given timeframe.
The project will include using a Cyber Security Operations Centre (CSOC) sandbox or equivalent laboratory environment to demonstrate configuring and testing of firewalls, implementing Intrusion Detection System (IDS) and evaluating and identifying any traffic anomalies. The use of Red and Blue teaming exercises to identify security breaches and apply mitigation strategies to minimise further risk should be included as part of the project.
The unit applies to cyber security practitioners who, as part of a team are responsible for the delivery of cyber security projects in an organisation.
No licensing or certification requirements apply to this unit at the time of accreditation.
No information
No information
Elements and Performance Criteria
Identify the strategic and operational needs for an organisation during the planning phase
- Strategic and operational needs of the cyber security project during the planning phase are identified
- Cyber security project's strategic context and requirements are identified
- Implications of the organisation's strategic and business plans and the projects’ output requirements are identified and considered
- Client requirements and the impact of legislation and industry standards and codes are examined
- Risk management analysis is conducted and a risk management plan is prepared and documented
Support the preparation of the project design plan
- Precise specifications and terms of reference for the cyber security project are defined and documented
- Physical and other resources required to support the cyber security project are defined, documented and secured
- Timelines, schedules and critical paths for the cyber security project, taking into consideration contingencies and planning for time slippages are developed and documented
- Project budget taking into consideration the cost of the primary project, management of a range of sub-tasks and contingencies is prepared
- Consultation strategies used to inform clients, contractors and other interested parties of the cyber security project's progress are defined and documented
Support the assembly of personnel for the project team
- Required skills needed for the successful completion of the cyber security project are identified
- Required skills for the cyber security project are mapped against the available personnel
- Effective communication processes to coordinate work are implemented
- Clear reporting processes are identified and communicated
- Modifications and improvements to the cyber security project are considered and implemented
Design the sub-task for the project
- Delegated tasks for the project are defined and communicated
- Action plan for each project sub-task is prepared and where possible tested for functionality
- Where possible outputs of the sub-task are tested for interconnectivity and functionality
Gather resources and test the system design
- Project resources are acquired according to organisational policy
- Vendor documentation for the equipment purchased is collated
- Operation and functionality of the acquired equipment to achieve the project outcomes is investigated
- Project sub-tasks are built, and where appropriate tested for functionality
Implement the project solution
- Each sub-task of the project is interconnected and tested for functionality
- Verification of end to end functionality of the project design is performed and changes are made if required to ensure the design brief is achieved
- Red and Blue teaming exercises are planned and applied
- Further testing and modification are undertaken to the system if required to ensure the design brief is achieved
Finalise the project and facilitate handover
- Cyber security project is completed in line with the requirements of the project design plan
- Project handover is undertaken in accordance with organisational procedures to staff responsible for ongoing implementation and maintenance
- Team members and relevant stakeholders are debriefed concerning the conduct of the project and outcomes achieved
- Report analysing the strengths and weaknesses of the project design plan and the conduct of the project is prepared
- If required training for the organisation’ staff is prepared and conducted
Replaces
| State Code | National Code | Title | Type |
|---|---|---|---|
| AX651 | VU22245 | Plan and implement a cyber security project | Unit of competency |
Associated Qual/Courses
| State Code | National Code | Title | Type |
|---|---|---|---|
| BGT52 | 22610VIC | Advanced Diploma of Cyber Security | Accredited course |