Unit of competency Outline
Date retreived
22/07/2026 1:54 PM AWST
22/07/2026 1:54 PM AWST
Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.
Evaluate threats and vulnerabilities of IoT devices
Evaluate threats and vulnerabilities of IoT devices
Unit of competency
National Code
ICTCYS609
ICTCYS609
State Code
OBV02
OBV02
TGA Status
Current
Current
DTWD Status
Approved
Approved
State Implementation and Classification
Approved Date
15/01/2021
Field of Education
029901 - Security Science
Original Release Date
15/01/2021
Nominal Hours
35
Description
This unit describes the skills and knowledge required to gather Internet of Things (IoT) devices and data from various sources and evaluate and identify threats and vulnerabilities.It applies to those who work as IoT developers or cyber security and risk analysts and are responsible for cyber security activities including the evaluating IoT devices for threats and vulnerabilities.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Develop evaluation strategy
- 1.1 Research and determine an organisation’s requirements for evaluation of IoT devices
- 1.2 Research organisational operations, environment and culture and determine perceived threats and vulnerabilities
- 1.3 Develop and document evaluation strategy according to organisational requirements, policies and procedures
- 1.4 Submit evaluation strategy to required personnel and seek and respond to feedback
2. Prepare to valuate IoT devices
- 2.1 Prepare devices for evaluation according to technical specifications
- 2.2 Secure data and networks according to technical specifications
3. Conduct evaluation
- 3.1 Run evaluation according to documented strategy and organisational policies and procedures
- 3.2 Confirm and document identified vulnerabilities and threats according to organisational policies and procedures
- 3.3 Document evaluation results according to organisational guidelines and requirements
4. Interpret and finalise findings
- 4.1 Analyse evaluation findings and determine completeness and accuracy
- 4.2 Categorise negative findings into threats and vulnerability and determine level of potential impact to operational activities
- 4.3 Develop and document recommendations to remediate threat potential and lessen vulnerabilities
- 4.4 Document finalised results and recommendations according to organisational requirements
- 4.5 Lodge documentation according to organisational policies and procedures
No information
No information
No information
| State Code | National Code | Title | Type |
|---|---|---|---|
| BGJ5 | ICT60220 | Advanced Diploma of Information Technology | Qualification |
| BFF8 | ICT60120 | Advanced Diploma of Information Technology | Qualification |
| AE201 | ICTSS00105 | Internet of Things Developer Skill Set | Skill set |