Unit of competency Outline

Date retreived
22/07/2026 6:48 AM AWST

Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.

Design and implement a security perimeter for ICT networks

Design and implement a security perimeter for ICT networks

Unit of competency
National Code
ICTNWK509
State Code
AUV04
TGA Status
Replaced
DTWD Status
Replaced
Current Release Number
1.00
Current Release Date
25/03/2015
State Implementation and Classification
Approved Date
16/09/2015
Field of Education
029901 - Security Science
Original Release Date
16/09/2015
Nominal Hours
60
Description
This unit describes the skills and knowledge required to build a high performance, high security, failure resistant security perimeter, for an enterprise information and communications technology (ICT) network.It applies to individuals with excellent ICT expertise who are working as middle managers, including information security managers, network engineers, network technicians and security analysts.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Plan and design firewall solution
  • 1.1 Determine level and nature of security needed to meet enterprise requirements
  • 1.2 Identify security threats
  • 1.3 Research available perimeter security options
  • 1.4 Design security perimeter to meet identified enterprise requirements
2. Configure perimeter to secure network
  • 2.1 Deploy perimeter devices according to design
  • 2.2 Configure perimeter topology
  • 2.3 Configure basic functionality of devices to allow access
  • 2.4 Configure advanced functions
3. Plan, design and configure network devices to provide secure fallover and redundancy
  • 3.1 Back up device configuration
  • 3.2 Design and configure perimeter to enable continuity of service during upgrade of devices
  • 3.3 Design and configure perimeter to enable continuity of service in the event of device failure
4. Plan, design and configure a VPN solution
  • 4.1 Configure perimeter for site-to-site virtual private networks (VPNs)
  • 4.2 Configure perimeter as a remote access VPN server
  • 4.3 Configure perimeter to allow VPN tunnel forwarding
  • 4.4 Diagnose and resolve VPN connectivity issues
5. Test and verify design performance
  • 5.1 Test functionality of basic features
  • 5.2 Test functionality of advanced features
  • 5.3 Perform penetration testing to verify that the perimeter meets security requirements
  • 5.4 Monitor perimeter device performance
  • 5.5 Monitor security breaches
  • 5.6 Document test results and report to appropriate person
No information
No information
Replaces
State Code National Code Title Type
D7960 ICANWK509A Design and implement a security perimeter for ICT networks Unit of competency
Replaced By
State Code National Code Title Type
OBT57 ICTNWK544 Design and implement a security perimeter for ICT networks Unit of competency