Unit of competency Outline

Date retreived
24/07/2026 6:19 AM AWST

Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.

Manage system security on operational systems

Manage system security on operational systems

Unit of competency
National Code
ICTNWK547
State Code
OBT53
TGA Status
Current
DTWD Status
Approved
Current Release Number
1.00
Current Release Date
21/07/2020
State Implementation and Classification
Approved Date
15/01/2021
Field of Education
029901 - Security Science
Original Release Date
15/01/2021
Nominal Hours
45
Description
This unit describes the skills and knowledge required to implement and manage security on an operational system.It applies to individuals working in middle management or leadership roles and are responsible for implementing and managing the organisations security management system. No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Analyse threats to system
  • 1.1 Evaluate network security system and determine the level of alignment to organisational requirements
  • 1.2 Conduct risk analysis on network security system and document outcomes
  • 1.3 Identify and evaluate system threats and document findings according to organisational requirements
  • 1.4 Identify and document system user interactions
2. Determine risk category
  • 2.1 Conduct risk assessment on network security system and categorise risks
  • 2.2 Conduct risk assessment on human operations and interactions with network security system and categorise risks
  • 2.3 Match risk plans to risk categories according to risk assessment levels
  • 2.4 Determine and plan resources by risk categories according to risk assessment levels
3. Identify required controls
  • 3.1 Devise and implement risk management controls according to system security requirements
  • 3.2 Plan and document required system-related user policies and procedures
  • 3.3 Identify high-risk categories at specified periods according to risk assessment levels
  • 3.4 Categorise and record system breakdowns according to organisational requirements
4. Implement controls in the system
  • 4.1 Develop a management system security plan according to risk assessment levels and system security requirements
  • 4.2 Develop security recovery plan according to risk assessment levels and system security requirements
  • 4.3 Implement system controls and reduce risks in human interaction with the system
5. Monitor system tools and procedures
  • 5.1 Conduct a management review process and monitor risks
  • 5.2 Review risk analysis process against security vendor benchmarks, security specialists and organisational requirements
  • 5.3 Determine and document re-evaluation system to identify new threats and risks
  • 5.4 Submit all documentation to required personnel, and seek and respond to feedback
No information
No information
Replaces
State Code National Code Title Type
AUU98 ICTNWK513 Manage system security Unit of competency
State Code National Code Title Type
BGT52 22610VIC Advanced Diploma of Cyber Security Accredited course
BFG0 ICT50120 Diploma of Information Technology Qualification
BGJ4 ICT50220 Diploma of Information Technology Qualification