CSCI 5625


None
Course Number:
CSCI 5625

Approved Starting Semester:
Fall 2025

Course Title:
Graduate Intrusion Detection and Prevention

Course Description (Bulletin Description):
This course covers an in-depth study of the theory and practice of intrusion detection and prevention in cyberspace. Topics include network security, monitoring, auditing, intrusion detection, intrusion prevention, and ethical penetration testing. Emphasis is on methods to identify threats and prevent attacks.

Prerequisite:
CSCI 5200

Co-requisite:
None

Pre/Co-requisite::
None

Dual-Listed:
CSCI 4625

Course Objectives (Course-level Student Learning Outcomes):
At the completion of the course, the student will be able to: 1. Explain network traffic fundamentals 2. Define components and types of intrusion detection 3. Compare intrusion detection vs. intrusion prevention systems (IDS & IPS) 4. Explain and implement network and host intrusion detection systems 5. Design and apply network traffic signatures 6. Define and discuss effective use of prevention/decoy systems. 7. Integrate IDS/IPS devices into network and firewall design 8. Analyze logging data to locate intrusion patterns 9. Classify and respond to network intrusion incidents 10. Develop and document appropriate response to intrusion and other management aspects.

Topics Covered (In Outline/Calendar):
• Deep Packet Inspection • Log File Analysis • Log Aggregation • Cross Log Comparison and Analysis • Anomaly Detection • Misuse Detection (Signature Detection) • Specification-based Detection • Host-based Intrusion Detection and Prevention • Network-based Intrusion Detection and Prevention • Distributed Intrusion Detection • Hierarchical IDSes • Honeynets/Honeypots

Student Learning Outcomes:
Not applicable for this course

Course Coordinator:
Dr. Yingbing Yu

Instructor-in-charge:
Dr. Yingbing Yu

Previous Professors:
Dr. Yingbing Yu, Mr. Barry Bruster

Technologies / Skills:
Intrusion detection and prevention in cyberspace

Textbook(s):
Spring 2026
---------------------------------
Title: Network Security, Firewalls, and VPNs, Fourth Edition
ISBN: 9781284302509
Edition: 4th
Author: Denise Kinsey
Publisher: Jones & Bartlett Learning
---------------------------------
Title: IDS and IPS with Snort 3: Get up and running with Snort 3 and discover effective solutions to your security issues
ISBN: 9781800566163
Edition: 1st
Author: Ashley Thomas
Publisher: Packt Publishing
========================================


Go back to choose another course