Unit of competency Outline
Date retreived
22/07/2026 3:40 PM AWST
22/07/2026 3:40 PM AWST
Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.
Manage system security
Manage system security
Unit of competency
National Code
ICTNWK513
ICTNWK513
State Code
AUU98
AUU98
TGA Status
Replaced
Replaced
DTWD Status
Transition (Replaced)
Transition (Replaced)
State Implementation and Classification
Approved Date
16/09/2015
Field of Education
029901 - Security Science
Original Release Date
16/09/2015
Nominal Hours
45
Description
This unit describes the skills and knowledge required to implement and manage security on an operational system.It applies to individuals working in middle management in technical advice, guidance and leadership roles such as security managers and security analysts responsible for implementing and managing the organisations security management system.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Analyse threats to system
- 1.1 Evaluate the organisation’s system and verify that it meets enterprise guidelines and policies
- 1.2 Conduct risk analysis on system and document outcomes
- 1.3 Evaluate threats to the system and document findings
- 1.4 Compile and document human interactions with system
2. Determine risk category
- 2.1 Conduct a risk assessment on the system and categorise risks
- 2.2 Conduct a risk assessment on human operations and interactions with the system and categorise risks
- 2.3 Match risk plans to risk categories
- 2.4 Determine and plan resources by risk categories
3. Identify appropriate controls
- 3.1 Devise and put in place effective controls to manage risk
- 3.2 Design policies and procedures to cover user access of the system
- 3.3 Conduct training in the use of system-related policies and procedures
- 3.4 Monitor high-risk categories at specified periods
- 3.5 Categorise and record system breakdowns
4. Include controls in the system
- 4.1 Develop security plan and procedures to include in management system
- 4.2 Develop security recovery plan
- 4.3 Implement system controls to reduce risks in human interaction with the system
5. Monitor system tools and procedures
- 5.1 Review and monitor risks and controls, using a management review process
- 5.2 Review risk analysis process based on security benchmarks from vendors, security specialists and organisational reviews
- 5.3 Plan to re-evaluate system and identify new threats and risks
No information
No information
Replaces
| State Code | National Code | Title | Type |
|---|---|---|---|
| D7963 | ICANWK513A | Manage system security | Unit of competency |
Replaced By
| State Code | National Code | Title | Type |
|---|---|---|---|
| OBT53 | ICTNWK547 | Manage system security on operational systems | Unit of competency |
| State Code | National Code | Title | Type |
|---|---|---|---|
| BCZ09 | 22445VIC | Advanced Diploma of Cyber Security | Accredited course |
| AWF1 | ICT50115 | Diploma of Information Technology | Qualification |
| BEH1 | ICT50118 | Diploma of Information Technology | Qualification |
| BEH6 | ICT50418 | Diploma of Information Technology Networking | Qualification |
| AWD7 | ICT50415 | Diploma of Information Technology Networking | Qualification |
| AWE2 | ICT50315 | Diploma of Information Technology Systems Administration | Qualification |
| BEG9 | ICT50318 | Diploma of Information Technology Systems Administration | Qualification |