Unit of competency Outline
Date retreived
22/07/2026 1:15 PM AWST
22/07/2026 1:15 PM AWST
Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.
Design ICT system security controls
Design ICT system security controls
Unit of competency
National Code
ICTNWK520
ICTNWK520
State Code
AUV17
AUV17
TGA Status
Replaced
Replaced
DTWD Status
Replaced
Replaced
State Implementation and Classification
Approved Date
16/09/2015
Field of Education
020113 - Networks And Communications
Original Release Date
16/09/2015
Nominal Hours
30
Description
This unit describes the skills and knowledge required to design the security controls that ensure an information and communications technology (ICT) system is both physically and legally secure.It applies to individuals in a range of ICT areas who are required to guarantee the security of ICT systems.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Review organisational security policy and procedures
- 1.1 Review business environment to identify existing requirements
- 1.2 Determine organisational goals for legal and security requirements
- 1.3 Verify security needs in a policy document
- 1.4 Determine legislative impact on business domain
- 1.5 Gather and document objective evidence on current security threats
- 1.6 Identify options for using internal and external expertise
- 1.7 Establish and document a standard methodology for performing security tests
2. Develop security plan
- 2.1 Investigate theoretical attacks and threats on the business
- 2.2 Evaluate risks and threats associated with the investigation
- 2.3 Prioritise assessment results and write security policy
- 2.4 Document information related to attacks, threats, risks and controls in a security plan
- 2.5 Review the security strategy with security approved key stakeholders
- 2.6 Integrate approved changes into business plan and ensure compliance with statutory requirements
3. Design controls to be incorporated into system
- 3.1 Implement controls in a procedurally organised manner to ensure minimum risk of security breach in line with organisational guidelines
- 3.2 Monitor each phase of the implementation to determine the impact on the business
- 3.3 Take corrective action on system implementation breakdown
- 3.4 Record implementation process
- 3.5 Evaluate corrective actions for risk
- 3.6 Plan risk assessment review process
- 3.7 Take action to ensure confidentiality throughout all phases of design
No information
No information
Replaces
| State Code | National Code | Title | Type |
|---|---|---|---|
| D7970 | ICANWK520A | Design IT system security controls | Unit of competency |
Replaced By
| State Code | National Code | Title | Type |
|---|---|---|---|
| OBT52 | ICTNWK550 | Design ICT system security controls | Unit of competency |
| State Code | National Code | Title | Type |
|---|---|---|---|
| AWF1 | ICT50115 | Diploma of Information Technology | Qualification |
| BEH1 | ICT50118 | Diploma of Information Technology | Qualification |
| AZI7 | ICT60615 | Advanced Diploma of Telecommunications Network Engineering | Qualification |